Vulnerabilities (CVE)

Filtered by CWE-1262
Total 10 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-54509 2026-06-17 N/A N/A
Improper access control for register interface in the input-output memory management unit (IOMMU) could allow a privileged attacker to cause non-coherent accesses by the AMD secure processor (ASP) potentially resulting in loss of integrity.
CVE-2025-47385 1 Qualcomm 188 Fastconnect 6200, Fastconnect 6200 Firmware, Fastconnect 6700 and 185 more 2026-06-17 N/A 7.8 HIGH
Memory Corruption when accessing trusted execution environment without proper privilege check.
CVE-2025-36194 1 Ibm 1 Powervm Hypervisor 2026-06-17 N/A 2.8 LOW
IBM PowerVM Hypervisor FW1110.00 through FW1110.03, FW1060.00 through FW1060.51, and FW950.00 through FW950.F0 may expose a limited amount of data to a peer partition in specific shared processor configurations during certain operations.
CVE-2025-20788 2 Google, Mediatek 3 Android, Mt6991, Mt8196 2026-06-17 N/A 4.4 MEDIUM
In GPU pdma, there is a possible memory corruption due to a missing permission check. This could lead to local denial of service with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS10117735; Issue ID: MSV-4539.
CVE-2025-1882 1 I-drive 4 I11, I11 Firmware, I12 and 1 more 2026-06-17 4.3 MEDIUM 5.0 MEDIUM
A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been rated as critical. Affected by this issue is some unknown functionality of the component Device Setting Handler. The manipulation leads to improper access control for register interface. The attack needs to be done within the local network. The complexity of an attack is rather high. The exploitation is known to be difficult. It was not possible to identify the current maintainer of the product. It must be assumed that the product is end-of-life.
CVE-2024-6354 1 Devolutions 1 Remote Desktop Manager 2026-06-17 N/A 7.2 HIGH
Improper access control in PAM dashboard in Devolutions Remote Desktop Manager 2024.2.11 and earlier on Windows allows an authenticated user to bypass the execute permission via the use of the PAM dashboard.
CVE-2024-57492 1 Redox-os 1 Redox 2026-06-17 N/A 5.5 MEDIUM
An issue in redoxOS relibc before commit 98aa4ea5 allows a local attacker to cause a denial of service via the round_up_to_page funciton.
CVE-2024-45556 1 Qualcomm 120 Fastconnect 6900, Fastconnect 6900 Firmware, Fastconnect 7800 and 117 more 2026-06-17 N/A 6.5 MEDIUM
Cryptographic issue may arise because the access control configuration permits Linux to read key registers in TCSR.
CVE-2023-20599 2026-06-17 N/A 7.9 HIGH
Improper register access control in ASP may allow a privileged attacker to perform unauthorized access to ASP’s Crypto Co-Processor (CCP) registers from x86 resulting in potential loss of control of cryptographic key pointer/index leading to loss of integrity or confidentiality.
CVE-2015-8325 3 Canonical, Debian, Openbsd 5 Ubuntu Core, Ubuntu Linux, Ubuntu Touch and 2 more 2026-06-17 7.2 HIGH 7.8 HIGH
The do_setup_env function in session.c in sshd in OpenSSH through 7.2p2, when the UseLogin feature is enabled and PAM is configured to read .pam_environment files in user home directories, allows local users to gain privileges by triggering a crafted environment for the /bin/login program, as demonstrated by an LD_PRELOAD environment variable.