https://security-tracker.debian.org/tracker/DSA-5860-1
In the MDSS driver in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel, a data structure may be used without being initialized correctly.
In an audio driver in all Qualcomm products with Android releases from CAF using the Linux kernel, if a function is called with a very large length, an integer overflow could occur followed by a heap buffer overflow.
Use after free in PDFium in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.