CVE-2025-31719
- EPSS 0.02%
- Veröffentlicht 11.11.2025 00:33:24
- Zuletzt bearbeitet 12.11.2025 16:19:59
In TEE EcDSA algorithm, there is a possible memory consistency issue. This could lead to generated incorrect signature results with low probability.
CVE-2025-31718
- EPSS 0.27%
- Veröffentlicht 11.10.2025 00:26:52
- Zuletzt bearbeitet 15.10.2025 01:15:31
In modem, there is a possible system crash due to improper input validation. This could lead to remote escalation of privilege with no additional execution privileges needed.
CVE-2025-31717
- EPSS 0.27%
- Veröffentlicht 11.10.2025 00:26:51
- Zuletzt bearbeitet 15.10.2025 01:15:30
In modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed.
CVE-2022-38696
- EPSS 0.09%
- Veröffentlicht 01.09.2025 07:28:15
- Zuletzt bearbeitet 02.09.2025 15:55:25
In BootRom, there's a possible missing payload size check. This could lead to memory buffer overflow without requiring additional execution privileges.
CVE-2022-38693
- EPSS 0.09%
- Veröffentlicht 01.09.2025 07:28:12
- Zuletzt bearbeitet 02.09.2025 15:55:25
In FDL1, there is a possible missing payload size check. This could lead to memory buffer overflow without requiring additional execution privileges.
CVE-2025-31716
- EPSS 0.04%
- Veröffentlicht 01.08.2025 05:55:00
- Zuletzt bearbeitet 04.08.2025 15:06:15
In bootloader, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed.
CVE-2025-31712
- EPSS 0.01%
- Veröffentlicht 03.06.2025 05:50:53
- Zuletzt bearbeitet 10.06.2025 15:15:48
In cplog service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed.
CVE-2025-31711
- EPSS 0.01%
- Veröffentlicht 03.06.2025 05:50:52
- Zuletzt bearbeitet 10.06.2025 15:15:41
In cplog service, there is a possible system crash due to null pointer dereference. This could lead to local denial of service with no additional execution privileges needed.
CVE-2025-31710
- EPSS 0.01%
- Veröffentlicht 03.06.2025 05:50:51
- Zuletzt bearbeitet 10.06.2025 15:15:23
In engineermode service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed.