CVE-2026-21384
Published Jul 6, 2026Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits.
- evidence mentions
- 1
- Buzz score
- 11.9
Vendor/product archive
9 CVEs tagged to qualcomm / lemans_au_lgit — 0 Critical, 7 High, 2 Medium, 0 Low, 0 Unrated.
Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits.
Cryptographic Issue when using a static initialization vector for AES-GCM key wrapping, which requires a unique value for each call to ensure security.
Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values.
Memory Corruption when adding user-supplied data without checking available buffer space.
Memory Corruption while processing IOCTL calls when concurrent access to shared buffer occurs.
Cryptographic Issue when a shared VM reference allows HLOS to boot loader and access cert chain.
Memory Corruption when accessing a buffer after it has been freed while processing IOCTL calls.
Memory Corruption when accessing buffers with invalid length during TA invocation.
Memory Corruption when initiating GPU memory mapping using scatter-gather lists due to unchecked IOMMU mapping errors.