Security Vulnerabilities
- CVEs Published In April 2025
Memory corruption may occur while initiating two IOCTL calls simultaneously to create processes from two different threads.
Memory corruption can occur when TME processes addresses from TZ and MPSS requests without proper validation.
Memory corruption while processing multiple IOCTL calls from HLOS to DSP.
Memory corruption while processing escape code in API.
Memory corruption occurs when handling client calls to EnableTestMode through an Escape call.
Memory corruption may occur due top improper access control in HAB process.
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request from the AP to establish a TSpec session.
Memory corruption while processing IOCTL calls to add route entry in the HW.
Information disclosure while creating MQ channels.
Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verification failure, potentially leading to a user throttling bypass.