CVE-2024-45555
- EPSS 0.04%
- Veröffentlicht 06.01.2025 11:15:10
- Zuletzt bearbeitet 13.01.2025 21:51:26
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tampered IFS2 system image.
CVE-2024-45558
- EPSS 0.19%
- Veröffentlicht 06.01.2025 11:15:10
- Zuletzt bearbeitet 11.08.2025 15:06:17
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
CVE-2024-33041
- EPSS 0.03%
- Veröffentlicht 06.01.2025 11:15:08
- Zuletzt bearbeitet 11.08.2025 15:06:17
Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls,
CVE-2024-33055
- EPSS 0.03%
- Veröffentlicht 06.01.2025 11:15:08
- Zuletzt bearbeitet 11.08.2025 15:06:17
Memory corruption while invoking IOCTL calls to unmap the DMA buffers.
CVE-2024-33067
- EPSS 0.03%
- Veröffentlicht 06.01.2025 11:15:08
- Zuletzt bearbeitet 11.08.2025 15:06:17
Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.
CVE-2024-33044
- EPSS 0.04%
- Veröffentlicht 02.12.2024 11:15:08
- Zuletzt bearbeitet 12.12.2024 15:23:26
Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
CVE-2024-33053
- EPSS 0.03%
- Veröffentlicht 02.12.2024 11:15:08
- Zuletzt bearbeitet 12.12.2024 15:23:57
Memory corruption when multiple threads try to unregister the CVP buffer at the same time.
CVE-2024-33056
- EPSS 0.04%
- Veröffentlicht 02.12.2024 11:15:08
- Zuletzt bearbeitet 12.12.2024 15:25:15
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
CVE-2024-33063
- EPSS 0.24%
- Veröffentlicht 02.12.2024 11:15:08
- Zuletzt bearbeitet 12.12.2024 15:26:19
Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside which this element is present.
CVE-2024-33037
- EPSS 0.03%
- Veröffentlicht 02.12.2024 11:15:07
- Zuletzt bearbeitet 11.12.2024 16:15:14
Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.