Platform Hardware St Nfc vulnerabilities

4 known vulnerabilities affecting platform/hardware_st_nfc.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
UNKNOWN4

Vulnerabilities

Page 1 of 1
CVE-2025-48641UNKNOWN≥ 16-qpr2-next:0, < 16-qpr2-next:2026-03-01≥ 15:0, < 15:2026-03-01+3 more2026-03-01
CVE-2025-48641 CVE-2025-48641: In multiple functions of Nfc In multiple functions of Nfc.h, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2025-0096UNKNOWN≥ 15-next:0, < 15-next:2025-02-01≥ 15:0, < 15:2025-02-012025-02-01
CVE-2025-0096 CVE-2025-0096: In handlePollingLoopData of hal_fwlog In handlePollingLoopData of hal_fwlog.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2022-20527UNKNOWN≥ 13:0, < 13:2022-12-012022-12-01
CVE-2022-20527 CVE-2022-20527: In HalCoreCallback of halcore In HalCoreCallback of halcore.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure from the NFC firmware with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2021-0540UNKNOWN≥ 11:0, < 11:2021-06-012021-06-01
CVE-2021-0540 CVE-2021-0540: In halWrapperDataCallback of hal_wrapper In halWrapperDataCallback of hal_wrapper.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
osv