CVE-2026-21384
Published Jul 6, 2026Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits.
- evidence mentions
- 1
- Buzz score
- 11.9
Vendor/product archive
8 CVEs tagged to qualcomm / lemansau — 0 Critical, 6 High, 2 Medium, 0 Low, 0 Unrated.
Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits.
Cryptographic Issue when using a static initialization vector for AES-GCM key wrapping, which requires a unique value for each call to ensure security.
Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values.
Memory Corruption while processing IOCTL calls when concurrent access to shared buffer occurs.
Cryptographic Issue when a shared VM reference allows HLOS to boot loader and access cert chain.
Memory Corruption when accessing a buffer after it has been freed while processing IOCTL calls.
Memory Corruption when accessing buffers with invalid length during TA invocation.
Memory Corruption when initiating GPU memory mapping using scatter-gather lists due to unchecked IOMMU mapping errors.