2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-33117HIGH7.8Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVC...
CVE-2023-33116HIGH7.5Transient DOS while parsing ieee80211_parse_mscs_ie in WIN WLAN driver.
CVE-2023-33114HIGH7.8Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitt...
CVE-2023-33113HIGH7.8Memory corruption when resource manager sends the host kernel a reply message with multiple fragments.
CVE-2023-33112HIGH7.5Transient DOS when WLAN firmware receives "reassoc response" frame including RIC_DATA element.
CVE-2023-33110HIGH7The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback fr...
CVE-2023-33109HIGH7.5Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.
CVE-2023-33108HIGH7.8Memory corruption in Graphics Driver when destroying a context with KGSL_GPU_AUX_COMMAND_TIMELINE objects queued.
CVE-2023-33094HIGH7.8Memory corruption while running VK synchronization with KASAN enabled.
CVE-2023-33085HIGH7.8Memory corruption in wearables while processing data from AON.
CVE-2023-33062HIGH7.5Transient DOS in WLAN Firmware while parsing a BTM request.
CVE-2023-33040HIGH7.5Transient DOS in Data Modem during DTLS handshake.
CVE-2023-33038HIGH7.8Memory corruption while receiving a message in Bus Socket Transport Server.
CVE-2023-33033HIGH7.8Memory corruption in Audio during playback with speaker protection.
CVE-2023-33032HIGH7.8Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.
CVE-2023-33030HIGH7.8Memory corruption in HLOS while running playready use-case.
CVE-2023-28583HIGH7.8Memory corruption when IPv6 prefix timer object`s lifetime expires which are created while Netmgr daemon gets an IPv6 ad...
CVE-2023-26157HIGH7.5Versions of the package libredwg before 0.12.5.6384 are vulnerable to Denial of Service (DoS) due to an out-of-bounds re...
CVE-2023-32890HIGH7.5In modem EMM, there is a possible system crash due to improper input validation. This could lead to remote denial of ser...
CVE-2023-32889HIGH7.5In Modem IMS Call UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote d...
CVE-2023-32888HIGH7.5In Modem IMS Call UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote d...
CVE-2023-32887HIGH7.5In Modem IMS Stack, there is a possible system crash due to a missing bounds check. This could lead to remote denial of ...
CVE-2023-32886HIGH7.5In Modem IMS SMS UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote de...
CVE-2023-50096HIGH7.5STMicroelectronics STSAFE-A1xx middleware before 3.3.7 allows MCU code execution if an adversary has the ability to read...
CVE-2023-50094HIGH8.8reNgine before 2.1.2 allows OS Command Injection if an adversary has a valid session ID. The attack places shell metacha...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now