Security Vulnerabilities
- CVEs Published In April 2025
Cryptographic issue may arise because the access control configuration permits Linux to read key registers in TCSR.
Memory corruption while processing IOCTL calls.
Cryptographic issues while generating an asymmetric key pair for RKP use cases.
Memory corruption while handling file descriptor during listener registration/de-registration.
Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shared memory.
Memory corruption while invoking IOCTL map buffer request from userspace.
Memory corruption while accessing MSM channel map and mixer functions.
Memory corruption while assigning memory from the source DDR memory(HLOS) to ADSP.
There may be information disclosure during memory re-allocation in TZ Secure OS.
A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. This affects an unknown part of the file /dental_pending.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.