🛡 Cybersecurity & Privacy 🛡 - News
25.9K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
CVE-2023-38574

Open redirect vulnerability in VI Web Client prior to 7.9.6 allows a remote unauthenticated attacker to redirect users to arbitrary web sites and conduct phishing attacks via a specially crafted URL.

📖 Read

via "National Vulnerability Database".
CVE-2023-28557

Memory corruption in WLAN HAL while processing command parameters from untrusted WMI payload.

📖 Read

via "National Vulnerability Database".
CVE-2023-28573

Memory corruption in WLAN HAL while parsing WMI command parameters.

📖 Read

via "National Vulnerability Database".
👍1
CVE-2023-33016

Transient DOS in WLAN firmware while parsing MLO (multi-link operation).

📖 Read

via "National Vulnerability Database".
CVE-2023-21646

Transient DOS in Modem while processing invalid System Information Block 1.

📖 Read

via "National Vulnerability Database".
CVE-2023-33021

Memory corruption in Graphics while processing user packets for command submission.

📖 Read

via "National Vulnerability Database".
CVE-2023-33015

Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame.

📖 Read

via "National Vulnerability Database".
CVE-2023-21655

Memory corruption in Audio while validating and mapping metadata.

📖 Read

via "National Vulnerability Database".
CVE-2023-28560

Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.

📖 Read

via "National Vulnerability Database".
CVE-2023-28564

Memory corruption in WLAN HAL while passing command parameters through WMI interfaces.

📖 Read

via "National Vulnerability Database".
CVE-2023-4540

Improper Handling of Exceptional Conditions vulnerability in Daurnimator HTTP Library for Lua allows Excessive Allocation.This issue affects HTTP Library for Lua: before commit ddab283.

📖 Read

via "National Vulnerability Database".
CVE-2023-40535

Stored cross-site scripting vulnerability in View setting page of VI Web Client prior to 7.9.6 allows a remote authenticated attacker to inject an arbitrary script.

📖 Read

via "National Vulnerability Database".
CVE-2023-39938

Reflected cross-site scripting vulnerability in VI Web Client prior to 7.9.6 allows a remote unauthenticated attacker to inject an arbitrary script.

📖 Read

via "National Vulnerability Database".
CVE-2023-28548

Memory corruption in WLAN HAL while processing Tx/Rx commands from QDART.

📖 Read

via "National Vulnerability Database".
CVE-2023-21644

Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request.

📖 Read

via "National Vulnerability Database".
CVE-2023-39448

Path traversal vulnerability in SHIRASAGI prior to v1.18.0 allows a remote authenticated attacker to alter or create arbitrary files on the server, resulting in arbitrary code execution.

📖 Read

via "National Vulnerability Database".
CVE-2023-21663

Memory Corruption while accessing metadata in Display.

📖 Read

via "National Vulnerability Database".
CVE-2023-21667

Transient DOS in Bluetooth HOST while passing descriptor to validate the blacklisted BT keyboard.

📖 Read

via "National Vulnerability Database".
CVE-2022-40524

Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service.

📖 Read

via "National Vulnerability Database".
CVE-2023-21654

Memory corruption in Audio during playback session with audio effects enabled.

📖 Read

via "National Vulnerability Database".
CVE-2023-28567

Memory corruption in WLAN HAL while handling command through WMI interfaces.

📖 Read

via "National Vulnerability Database".