Security Vulnerabilities
- CVEs Published In April 2025
Information disclosure may occur during a video call if a device resets due to a non-conforming RTCP packet that doesn`t adhere to RFC standards.
Cryptographic issue may arise because the access control configuration permits Linux to read key registers in TCSR.
Memory corruption while processing IOCTL calls.
Cryptographic issues while generating an asymmetric key pair for RKP use cases.
Memory corruption while handling file descriptor during listener registration/de-registration.
Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shared memory.
Memory corruption while invoking IOCTL map buffer request from userspace.
Memory corruption while accessing MSM channel map and mixer functions.
Memory corruption while assigning memory from the source DDR memory(HLOS) to ADSP.
There may be information disclosure during memory re-allocation in TZ Secure OS.