🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼ CVE-2022-38983 ‼

The BT Hfp Client module has a Use-After-Free (UAF) vulnerability.Successful exploitation of this vulnerability may result in arbitrary code execution.

📖 Read

via "National Vulnerability Database".
🕴 Concerns Over Fortinet Flaw Mount; PoC Released, Exploit Activity Grows 🕴

The authentication bypass flaw in FortiOS, FortiProxy, and FortiSwitch Manager is easy to find and exploit, security experts say.

📖 Read

via "Dark Reading".
🕴 Apple's Constant Battles Against Zero-Day Exploits 🕴

Such exploits sell for up to $10 million, making them the single most valuable commodity in the cybercrime underworld.

📖 Read

via "Dark Reading".
🕴 Concerns Over Fortinet Flaw Mount; PoC Released, Exploit Activity Grows 🕴

The authentication bypass flaw in FortiOS, FortiProxy and FortiSwitchManager is easy to find and exploit, security experts say.

📖 Read

via "Dark Reading".
‼ CVE-2022-39115 ‼

In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38698 ‼

In messaging service, there is a missing permission check. This could lead to elevation of privilege in contacts service with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-39123 ‼

In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-2850 ‼

A flaw was found In 389-ds-base. When the Content Synchronization plugin is enabled, an authenticated user can reach a NULL pointer dereference using a specially crafted query. This flaw allows an authenticated attacker to cause a denial of service. This CVE is assigned against an incomplete fix of CVE-2021-3514.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-39122 ‼

In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38679 ‼

In music service, there is a missing permission check. This could lead to local denial of service in music service with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38670 ‼

In soundrecorder service, there is a missing permission check. This could lead to elevation of privilege in contacts service with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38690 ‼

In camera driver, there is a possible memory corruption due to improper locking. This could lead to local denial of service in kernel.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-2963 ‼

A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or segmentation fault.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-39111 ‼

In Music service, there is a missing permission check. This could lead to elevation of privilege in Music service with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-39112 ‼

In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38677 ‼

In cell service, there is a missing permission check. This could lead to local denial of service in cell service with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-39105 ‼

In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-38673 ‼

In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-39110 ‼

In Music service, there is a missing permission check. This could lead to elevation of privilege in Music service with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-39126 ‼

In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-39117 ‼

In messaging service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

📖 Read

via "National Vulnerability Database".