2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-20973MEDIUM5.5In btm_create_conn_cancel_complete of btm_sec.cc, there is a possible out of bounds read due to a missing bounds check. ...
CVE-2023-20972MEDIUM5.5In btm_vendor_specific_evt of btm_devctl.cc, there is a possible out of bounds read due to a missing bounds check. This ...
CVE-2023-20971HIGH7.8In removePermission of PermissionManagerServiceImpl.java, there is a possible way to obtain dangerous permissions withou...
CVE-2023-20970MEDIUM4.4In multiple locations of p2p_iface.cpp, there is a possible out of bounds read due to a missing bounds check. This could...
CVE-2023-20969MEDIUM4.4In multiple locations of p2p_iface.cpp, there is a possible out of bounds read due to a missing bounds check. This could...
CVE-2023-20968MEDIUM4.4In multiple functions of p2p_iface.cpp, there is a possible out of bounds read due to a missing bounds check. This could...
CVE-2023-20966HIGH7.8In inflate of inflate.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local...
CVE-2023-20964HIGH7.8In multiple functions of MediaSessionRecord.java, there is a possible Intent rebroadcast due to a confused deputy. This ...
CVE-2023-20963HIGH7.8In WorkSource, there is a possible parcel mismatch. This could lead to local escalation of privilege with no additional ...
CVE-2023-20962MEDIUM5.5In getSliceEndItem of MediaVolumePreferenceController.java, there is a possible way to start foreground activity from th...
CVE-2023-20960HIGH8.8In launchDeepLinkIntentToRight of SettingsHomepageActivity.java, there is a possible way to launch arbitrary activities ...
CVE-2023-20959HIGH7.8In AddSupervisedUserActivity, guest users are not prevented from starting the activity due to missing permissions checks...
CVE-2023-20958HIGH7.1In read_paint of ttcolr.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to loca...
CVE-2023-20957HIGH7.8In onAttach of SettingsPreferenceFragment.java, there is a possible bypass of Factory Reset Protections due to a confuse...
CVE-2023-20956MEDIUM4.4In Import of C2SurfaceSyncObj.cpp, there is a possible out of bounds write due to a missing bounds check. This could lea...
CVE-2023-20955HIGH7.8In onPrepareOptionsMenu of AppInfoDashboardFragment.java, there is a possible way to bypass admin restrictions and unins...
CVE-2023-20954CRITICAL9.8In SDP_AddAttribute of sdp_db.cc, there is a possible out of bounds write due to an incorrect bounds check. This could l...
CVE-2023-20953HIGH7.8In onPrimaryClipChanged of ClipboardListener.java, there is a possible way to bypass factory reset protection due to inc...
CVE-2023-20952MEDIUM5.5In A2DP_BuildCodecHeaderSbc of a2dp_sbc.cc, there is a possible out of bounds write due to a missing bounds check. This ...
CVE-2023-20951CRITICAL9.8In gatt_process_prep_write_rsp of gatt_cl.cc, there is a possible out of bounds write due to a missing bounds check. Thi...
CVE-2023-20947HIGH7.8In getGroupState of GrantPermissionsViewModel.kt, there is a possible way to keep a one-time permission granted due to a...
CVE-2023-20936HIGH7.8In bta_av_rc_disc_done of bta_av_act.cc, there is a possible out of bounds write due to a missing bounds check. This cou...
CVE-2023-20931HIGH7.8In avdt_scb_hdl_write_req of avdt_scb_act.cc, there is a possible out of bounds write due to a heap buffer overflow. Thi...
CVE-2023-20929MEDIUM5.5In sendHalfSheetCancelBroadcast of HalfSheetActivity.java, there is a possible way to learn nearby BT MAC addresses due ...
CVE-2023-20926MEDIUM6.8In onParentVisible of HeaderPrivacyIconsController.kt, there is a possible way to bypass factory reset protections due t...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now