🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼ CVE-2021-22685 ‼

An attacker may be able to use minify route with a relative path to view any file on the Cassia Networks Access Controller prior to 2.0.1.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41594 ‼

The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of this vulnerability may affect the fingerprint service.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41578 ‼

The MPTCP module has an out-of-bounds write vulnerability.Successful exploitation of this vulnerability may cause root privilege escalation attacks implemented by modifying program information.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-20397 ‼

In SitRilClient_OnResponse of SitRilSe.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-223086933References: N/A

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41583 ‼

The storage maintenance and debugging module has an array out-of-bounds read vulnerability.Successful exploitation of this vulnerability will cause incorrect statistics of this module.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41580 ‼

The HW_KEYMASTER module has a vulnerability of not verifying the data read.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41593 ‼

The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of this vulnerability may affect the fingerprint service.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41592 ‼

The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of this vulnerability may affect the fingerprint service.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41584 ‼

The kernel module has an out-of-bounds read vulnerability.Successful exploitation of this vulnerability may cause memory overwriting.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38986 ‼

The HIPP module has a vulnerability of bypassing the check of the data transferred in the kernel space.Successful exploitation of this vulnerability may cause out-of-bounds access to the HIPP module and page table tampering, affecting device confidentiality and availability.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-42234 ‼

There is a file inclusion vulnerability in the template management module in UCMS 1.6

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41603 ‼

The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of this vulnerability may affect the fingerprint service.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-42067 ‼

Online Birth Certificate Management System version 1.0 suffers from an Insecure Direct Object Reference (IDOR) vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41601 ‼

The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of this vulnerability may affect the fingerprint service.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-42232 ‼

Simple Cold Storage Management System v1.0 is vulnerable to SQL Injection via /csms/classes/Master.php?f=delete_storage.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38977 ‼

The HwAirlink module has a heap overflow vulnerability.Successful exploitation of this vulnerability may cause out-of-bounds writes, resulting in modification of sensitive data.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-46840 ‼

The HW_KEYMASTER module has an out-of-bounds access vulnerability in parameter set verification.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-3479 ‼

A vulnerability found in nss. By this security vulnerability, nss client auth crash without a user certificate in the database and this can lead us to a segmentation fault or crash.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41602 ‼

The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of this vulnerability may affect the fingerprint service.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-41598 ‼

The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of this vulnerability may affect the fingerprint service.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-37603 ‼

A Regular expression denial of service (ReDoS) flaw was found in Function interpolateName in interpolateName.js in webpack loader-utils 2.0.0 via the url variable in interpolateName.js.

📖 Read

via "National Vulnerability Database".