CVE-2026-25302
- EPSS 0.09%
- Veröffentlicht 06.10.2026 06:29:54
- Zuletzt bearbeitet 09.10.2026 14:11:52
Cryptographic Issue when processing non-ELF partitions, authentication and signature checks are bypassed, allowing unsigned or corrupted images to be mounted and processed.
- EPSS 0.09%
- Veröffentlicht 17.09.2026 04:11:38
- Zuletzt bearbeitet 22.09.2026 19:21:05
Memory Corruption when processing I2C transfer requests due to a race condition between memory allocation and data copying.
CVE-2026-24080
- EPSS 0.11%
- Veröffentlicht 04.08.2026 15:07:18
- Zuletzt bearbeitet 06.08.2026 18:32:54
Memory Corruption when handling malformed request parameters in the fingerprint TA.
CVE-2026-21366
- EPSS 0.11%
- Veröffentlicht 04.08.2026 15:07:12
- Zuletzt bearbeitet 06.08.2026 18:33:50
Memory corruption while processing a packet with a size close to the maximum allowed value.
CVE-2025-59606
- EPSS 0.08%
- Veröffentlicht 01.06.2026 22:05:26
- Zuletzt bearbeitet 22.07.2026 18:10:00
Memory Corruption when writing to invalid memory locations occurs due to heap memory exhaustion during secure data initialization.
CVE-2025-59605
- EPSS 0.08%
- Veröffentlicht 01.06.2026 22:05:25
- Zuletzt bearbeitet 22.07.2026 18:10:00
Memory Corruption when processing device identifier strings that exceed the expected maximum length.
CVE-2025-59604
- EPSS 0.08%
- Veröffentlicht 01.06.2026 22:05:24
- Zuletzt bearbeitet 22.07.2026 18:10:00
Memory Corruption when running a memory copy operation due to invalid writes caused by a null pointer.
CVE-2025-47389
- EPSS 0.1%
- Veröffentlicht 06.04.2026 15:33:40
- Zuletzt bearbeitet 07.10.2026 09:10:00
Memory corruption when buffer copy operation fails due to integer overflow during attestation report generation.
CVE-2025-47373
- EPSS 0.07%
- Veröffentlicht 02.03.2026 16:53:44
- Zuletzt bearbeitet 04.03.2026 18:28:26
Memory Corruption when accessing buffers with invalid length during TA invocation.
CVE-2025-47366
- EPSS 0.09%
- Veröffentlicht 02.02.2026 16:16:19
- Zuletzt bearbeitet 11.02.2026 19:28:40
Cryptographic issue when a Trusted Zone with outdated code is triggered by a HLOS providing incorrect input.