‼ CVE-2023-33015 ‼
📖 Read
via "National Vulnerability Database".
Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-21655 ‼
📖 Read
via "National Vulnerability Database".
Memory corruption in Audio while validating and mapping metadata.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-28560 ‼
📖 Read
via "National Vulnerability Database".
Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-28564 ‼
📖 Read
via "National Vulnerability Database".
Memory corruption in WLAN HAL while passing command parameters through WMI interfaces.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-4540 ‼
📖 Read
via "National Vulnerability Database".
Improper Handling of Exceptional Conditions vulnerability in Daurnimator HTTP Library for Lua allows Excessive Allocation.This issue affects HTTP Library for Lua: before commit ddab283.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-40535 ‼
📖 Read
via "National Vulnerability Database".
Stored cross-site scripting vulnerability in View setting page of VI Web Client prior to 7.9.6 allows a remote authenticated attacker to inject an arbitrary script.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-39938 ‼
📖 Read
via "National Vulnerability Database".
Reflected cross-site scripting vulnerability in VI Web Client prior to 7.9.6 allows a remote unauthenticated attacker to inject an arbitrary script.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-28548 ‼
📖 Read
via "National Vulnerability Database".
Memory corruption in WLAN HAL while processing Tx/Rx commands from QDART.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-21644 ‼
📖 Read
via "National Vulnerability Database".
Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-39448 ‼
📖 Read
via "National Vulnerability Database".
Path traversal vulnerability in SHIRASAGI prior to v1.18.0 allows a remote authenticated attacker to alter or create arbitrary files on the server, resulting in arbitrary code execution.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-21663 ‼
📖 Read
via "National Vulnerability Database".
Memory Corruption while accessing metadata in Display.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-21667 ‼
📖 Read
via "National Vulnerability Database".
Transient DOS in Bluetooth HOST while passing descriptor to validate the blacklisted BT keyboard.📖 Read
via "National Vulnerability Database".
‼ CVE-2022-40524 ‼
📖 Read
via "National Vulnerability Database".
Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-21654 ‼
📖 Read
via "National Vulnerability Database".
Memory corruption in Audio during playback session with audio effects enabled.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-28567 ‼
📖 Read
via "National Vulnerability Database".
Memory corruption in WLAN HAL while handling command through WMI interfaces.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-28544 ‼
📖 Read
via "National Vulnerability Database".
Memory corruption in WLAN while sending transmit command from HLOS to UTF handlers.📖 Read
via "National Vulnerability Database".
‼ CVE-2022-40534 ‼
📖 Read
via "National Vulnerability Database".
Memory corruption due to improper validation of array index in Audio.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-36492 ‼
📖 Read
via "National Vulnerability Database".
Reflected cross-site scripting vulnerability in SHIRASAGI prior to v1.18.0 allows a remote unauthenticated attacker to execute an arbitrary script on the web browser of the user who is logging in to the product.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-20897 ‼
📖 Read
via "National Vulnerability Database".
Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the request server equal to the number of worker threads, the master will become unresponsive to return requests until restarted.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-38569 ‼
📖 Read
via "National Vulnerability Database".
Stored cross-site scripting vulnerability in SHIRASAGI prior to v1.18.0 allows a remote authenticated attacker to execute an arbitrary script on the web browser of the user who is logging in to the product.📖 Read
via "National Vulnerability Database".
‼ CVE-2023-20898 ‼
📖 Read
via "National Vulnerability Database".
Git Providers can read from the wrong environment because they get the same cache directory base name in Salt masters prior to 3005.2 or 3006.2. Anything that uses Git Providers with different environments can get garbage data or the wrong data, which can lead to wrongful data disclosure, wrongful executions, data corruption and/or crash.📖 Read
via "National Vulnerability Database".