CVE-2025-20660
- EPSS 0.01%
- Published 07.04.2025 03:14:55
- Last modified 18.04.2025 16:12:26
In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. P...
- EPSS 0.01%
- Published 07.04.2025 03:14:52
- Last modified 09.04.2025 15:20:15
In DA, there is a possible permission bypass due to a logic error. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for ...
CVE-2025-20657
- EPSS 0.01%
- Published 07.04.2025 03:14:50
- Last modified 18.04.2025 16:11:52
In vdec, there is a possible permission bypass due to improper input validation. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch I...
CVE-2025-20656
- EPSS 0.01%
- Published 07.04.2025 03:14:49
- Last modified 09.04.2025 15:29:43
In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not ...
CVE-2025-20655
- EPSS 0.01%
- Published 07.04.2025 03:14:47
- Last modified 09.04.2025 15:37:20
In keymaster, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch...
CVE-2024-56191
- EPSS 0.01%
- Published 10.03.2025 20:50:38
- Last modified 27.06.2025 16:12:14
In dhd_process_full_gscan_result of dhd_pno.c, there is a possible EoP due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2024-56192
- EPSS 0.01%
- Published 10.03.2025 20:50:38
- Last modified 27.06.2025 16:12:02
In wl_notify_gscan_event of wl_cfgscan.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for explo...
CVE-2024-56186
- EPSS 0.01%
- Published 10.03.2025 18:19:49
- Last modified 27.06.2025 16:21:02
In closeChannel of secureelementimpl.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for expl...
CVE-2024-56187
- EPSS 0.01%
- Published 10.03.2025 18:19:49
- Last modified 27.06.2025 16:20:41
In ppcfw_deny_sec_dram_access of ppcfw.c, there is a possible arbitrary read from TEE memory due to a logic error in the code. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for...
CVE-2024-56188
- EPSS 0.02%
- Published 10.03.2025 18:19:49
- Last modified 27.06.2025 16:12:37
there is a possible way to crash the modem due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.