CVE-2026-24075 — CVSS 7.8 (high): Memory Corruption when multiple threads issue concurrent IOCTL requests to the device control handler due to improper synchronization and…
CVE-2026-21373 — CVSS 7.8 (high): Memory Corruption when accessing an output buffer without validating its size during IOCTL processing.
CVE-2026-21374 — CVSS 7.8 (high): Memory Corruption when processing auxiliary sensor input/output control commands with insufficient buffer size validation.
CVE-2026-21376 — CVSS 7.8 (high): Memory Corruption when accessing an output buffer without validating its size during IOCTL processing in a camera sensor driver.
CVE-2026-25275 — CVSS 7.5 (high): Transient DOS when processing authentication frames with invalid FILS information element header lengths.
CVE-2026-24077 — CVSS 6.5 (medium): Information Disclosure when processing wireless network channel switch information with improperly formatted length fields.