2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-43550HIGH7.8Memory corruption while processing a QMI request for allocating memory from a DHMS supported subsystem.
CVE-2023-43549HIGH7.8Memory corruption while processing TPC target power table in FTM TPC.
CVE-2023-43548CRITICAL9.8Memory corruption while parsing qcp clip with invalid chunk data size.
CVE-2023-43547HIGH7.8Memory corruption while invoking IOCTLs calls in Automotive Multimedia.
CVE-2023-43546HIGH7.8Memory corruption while invoking HGSL IOCTL context create.
CVE-2023-43541HIGH7.8Memory corruption while invoking the SubmitCommands call on Gfx engine during the graphics render.
CVE-2023-43540HIGH7.8Memory corruption while processing the IOCTL FM HCI WRITE request.
CVE-2023-43539HIGH7.5Transient DOS while processing an improperly formatted 802.11az Fine Time Measurement protocol frame.
CVE-2023-33105HIGH7.5Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transac...
CVE-2023-33104HIGH7.5Transient DOS while processing PDU Release command with a parameter PDU ID out of range.
CVE-2023-33103HIGH7.5Transient DOS while processing CAG info IE received from NW.
CVE-2023-33096HIGH7.5Transient DOS while processing DL NAS Transport message, as specified in 3GPP 24.501 v16.
CVE-2023-33095HIGH7.5Transient DOS while processing multiple payload container type with incorrect container length received in DL NAS transp...
CVE-2023-33090MEDIUM5.5Transient DOS while processing channel information for speaker protection v2 module in ADSP.
CVE-2023-33086HIGH7.5Transient DOS while processing multiple IKEV2 Informational Request to device from IPSEC server with different identifie...
CVE-2023-33084HIGH7.5Transient DOS while processing IE fragments from server during DTLS handshake.
CVE-2023-33078MEDIUM5.5Information Disclosure while processing IOCTL request in FastRPC.
CVE-2023-33066HIGH7.8Memory corruption in Audio while processing RT proxy port register driver.
CVE-2023-28582CRITICAL9.8Memory corruption in Data Modem while verifying hello-verify message during the DTLS handshake.
CVE-2023-28578HIGH7.8Memory corruption in Core Services while executing the command for removing a single event listener.
CVE-2023-6143HIGH8.4Use After Free vulnerability in Arm Ltd Midgard GPU Kernel Driver, Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GP...
CVE-2023-4479MEDIUM5.4Stored XSS Vulnerability in M-Files Web versions before 23.8 allows attacker to execute script on users browser via stor...
CVE-2023-49602MEDIUM5.5in OpenHarmony v3.2.4 and prior versions allow a local attacker cause apps crash through type confusion.
CVE-2023-46708HIGH7.8in OpenHarmony v3.2.4 and prior versions allow a local attacker arbitrary code execution in any apps through use after f...
CVE-2023-25176MEDIUM5.5in OpenHarmony v3.2.4 and prior versions allow a local attacker cause information leak through out-of-bounds Read.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now