2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-28588HIGH7.5Transient DOS in Bluetooth Host while rfc slot allocation.
CVE-2023-28587HIGH7.8Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.
CVE-2023-28585HIGH8.8Memory corruption while loading an ELF segment in TEE Kernel.
CVE-2023-28580HIGH7.8Memory corruption in WLAN Host while setting the PMK length in PMK length in internal cache.
CVE-2023-28579HIGH7.8Memory Corruption in WLAN Host while deserializing the input PMK bytes without checking the input PMK length.
CVE-2023-28551HIGH7.8Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input a...
CVE-2023-28550HIGH7.8Memory corruption in MPP performance while accessing DSM watermark using external memory address.
CVE-2023-28546HIGH7.8Memory Corruption in SPS Application while exporting public key in sorter TA.
CVE-2023-22668HIGH7.8Memory Corruption in Audio while invoking IOCTLs calls from the user-space.
CVE-2023-22383HIGH7.8Memory Corruption in camera while installing a fd for a particular DMA buffer.
CVE-2023-21634HIGH7.8Memory Corruption in Radio Interface Layer while sending an SMS or writing an SMS to SIM.
CVE-2023-5944HIGH7.8 Delta Electronics DOPSoft is vulnerable to a stack-based buffer overflow, which may allow for arbitrary code execution ...
CVE-2023-49288HIGH7.5Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a ...
CVE-2023-49286HIGH7.5Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Incorrect Check of Function Return...
CVE-2023-49285HIGH7.5Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to a Buffer Overread bug Squid is vulner...
CVE-2023-45779HIGH7.8In the APEX module framework of AOSP, there is a possible malicious update to platform components due to improperly used...
CVE-2023-45777HIGH7.8In checkKeyIntentParceledCorrectly of AccountManagerService.java, there is a possible way to launch arbitrary activities...
CVE-2023-45776HIGH7.8In CreateAudioBroadcast of broadcaster.cc, there is a possible out of bounds write due to a missing bounds check. This c...
CVE-2023-45775HIGH7.8In CreateAudioBroadcast of broadcaster.cc, there is a possible out of bounds write due to a missing bounds check. This c...
CVE-2023-45774HIGH7.8In fixUpIncomingShortcutInfo of ShortcutService.java, there is a possible way to view another user's image due to a conf...
CVE-2023-45773HIGH7.8In multiple functions of btm_ble_gap.cc, there is a possible out of bounds write due to a missing bounds check. This cou...
CVE-2023-40463HIGH7.2 When configured in debugging mode by an authenticated user with administrative privileges, ALEOS 4.16 and e...
CVE-2023-40462HIGH7.5The ACEManager component of ALEOS 4.16 and earlier does not perform input sanitization during authentication, which c...
CVE-2023-40459HIGH7.5 The ACEManager component of ALEOS 4.16 and earlier does not adequately perform input sanitization during authen...
CVE-2023-40103HIGH7.8In multiple locations, there is a possible way to corrupt memory due to a double free. This could lead to local escalati...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now