Total
7205 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-33060 | 1 Qualcomm | 94 Ar8035, Ar8035 Firmware, Fastconnect 6700 and 91 more | 2024-11-21 | N/A | 7.1 HIGH |
Transient DOS in Core when DDR memory check is called while DDR is not initialized. | |||||
CVE-2023-33058 | 1 Qualcomm | 94 Ar8035, Ar8035 Firmware, Fastconnect 6700 and 91 more | 2024-11-21 | N/A | 8.2 HIGH |
Information disclosure in Modem while processing SIB5. | |||||
CVE-2023-33048 | 1 Qualcomm | 230 Ar8035, Ar8035 Firmware, Csr8811 and 227 more | 2024-11-21 | N/A | 7.5 HIGH |
Transient DOS in WLAN Firmware while parsing t2lm buffers. | |||||
CVE-2023-33047 | 1 Qualcomm | 356 Ar8035, Ar8035 Firmware, Ar9380 and 353 more | 2024-11-21 | N/A | 7.5 HIGH |
Transient DOS in WLAN Firmware while parsing no-inherit IES. | |||||
CVE-2023-33027 | 1 Qualcomm | 656 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8098 and 653 more | 2024-11-21 | N/A | 7.5 HIGH |
Transient DOS in WLAN Firmware while parsing rsn ies. | |||||
CVE-2023-33016 | 1 Qualcomm | 132 Csr8811, Csr8811 Firmware, Fastconnect 6900 and 129 more | 2024-11-21 | N/A | 7.5 HIGH |
Transient DOS in WLAN firmware while parsing MLO (multi-link operation). | |||||
CVE-2023-33015 | 1 Qualcomm | 388 315 5g, 315 5g Firmware, Aqt1000 and 385 more | 2024-11-21 | N/A | 7.5 HIGH |
Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame. | |||||
CVE-2023-32870 | 2 Google, Mediatek | 29 Android, Mt6761, Mt6765 and 26 more | 2024-11-21 | N/A | 6.7 MEDIUM |
In display drm, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07363740; Issue ID: ALPS07363740. | |||||
CVE-2023-32862 | 2 Google, Mediatek | 27 Android, Mt6761, Mt6765 and 24 more | 2024-11-21 | N/A | 6.7 MEDIUM |
In display, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07388762; Issue ID: ALPS07388762. | |||||
CVE-2023-32861 | 2 Google, Mediatek | 28 Android, Mt6761, Mt6765 and 25 more | 2024-11-21 | N/A | 6.7 MEDIUM |
In display, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08059081; Issue ID: ALPS08059081. | |||||
CVE-2023-32857 | 2 Google, Mediatek | 15 Android, Mt6765, Mt6768 and 12 more | 2024-11-21 | N/A | 4.4 MEDIUM |
In display, there is a possible out of bounds read due to an incorrect status check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07993705; Issue ID: ALPS07993710. | |||||
CVE-2023-32856 | 2 Google, Mediatek | 15 Android, Mt6765, Mt6768 and 12 more | 2024-11-21 | N/A | 4.4 MEDIUM |
In display, there is a possible out of bounds read due to an incorrect status check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07993705; Issue ID: ALPS07993705. | |||||
CVE-2023-32825 | 2 Google, Mediatek | 45 Android, Mt2713, Mt6580 and 42 more | 2024-11-21 | N/A | 5.5 MEDIUM |
In bluethooth service, there is a possible out of bounds reads due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07884130; Issue ID: ALPS07884130. | |||||
CVE-2023-32817 | 2 Google, Mediatek | 35 Android, Mt2713, Mt6580 and 32 more | 2024-11-21 | N/A | 4.4 MEDIUM |
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08044040; Issue ID: ALPS08044035. | |||||
CVE-2023-32816 | 2 Google, Mediatek | 35 Android, Mt2713, Mt6580 and 32 more | 2024-11-21 | N/A | 4.4 MEDIUM |
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08044040; Issue ID: ALPS08044032. | |||||
CVE-2023-32815 | 4 Google, Linuxfoundation, Mediatek and 1 more | 40 Android, Yocto, Mt2713 and 37 more | 2024-11-21 | N/A | 4.4 MEDIUM |
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08037801; Issue ID: ALPS08037801. | |||||
CVE-2023-32814 | 2 Google, Mediatek | 40 Android, Mt2713, Mt2735 and 37 more | 2024-11-21 | N/A | 4.4 MEDIUM |
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08031947; Issue ID: ALPS08031947. | |||||
CVE-2023-32810 | 4 Google, Linux, Linuxfoundation and 1 more | 42 Android, Linux Kernel, Yocto and 39 more | 2024-11-21 | N/A | 4.4 MEDIUM |
In bluetooth driver, there is a possible out of bounds read due to improper input validation. This could lead to local information leak with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07867212; Issue ID: ALPS07867212. | |||||
CVE-2023-32807 | 3 Google, Linuxfoundation, Mediatek | 27 Android, Yocto, Iot Yocto and 24 more | 2024-11-21 | N/A | 4.4 MEDIUM |
In wlan service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588360; Issue ID: ALPS07588360. | |||||
CVE-2023-32545 | 1 Hornerautomation | 2 Cscape, Cscape Envisionrv | 2024-11-21 | N/A | 7.8 HIGH |
The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to an out-of-bounds read in Cscape!CANPortMigration. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process. |