2023 CVE Vulnerabilities

31,249 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-40082CRITICAL9.8In modify_for_next_stage of fdt.rs, there is a possible way to render KASLR ineffective due to improperly used crypto. T...
CVE-2023-40081MEDIUM5.5In loadMediaDataInBgForResumption of MediaDataManager.kt, there is a possible way to view another user's images due to ...
CVE-2023-40080HIGH7.8In multiple functions of btm_ble_gap.cc, there is a possible out of bounds write due to a logic error in the code. This ...
CVE-2023-40079HIGH7.8In injectSendIntentSender of ShortcutService.java, there is a possible background activity launch due to a permissions b...
CVE-2023-40078CRITICAL9.8In a2dp_vendor_opus_decoder_decode_packet of a2dp_vendor_opus_decoder.cc, there is a possible out of bounds write due to...
CVE-2023-40077HIGH8.1In multiple functions of MetaDataBase.cpp, there is a possible UAF write due to a race condition. This could lead to rem...
CVE-2023-40076MEDIUM5.5In createPendingIntent of CredentialManagerUi.java, there is a possible way to access credentials from other users due t...
CVE-2023-40075MEDIUM5.5In forceReplaceShortcutInner of ShortcutPackage.java, there is a possible way to register unlimited packages due to a mi...
CVE-2023-40074MEDIUM5.5In saveToXml of PersistableBundle.java, invalid data could lead to local persistent denial of service with no additional...
CVE-2023-40073MEDIUM5.5In visitUris of Notification.java, there is a possible cross-user media read due to Confused Deputy. This could lead to ...
CVE-2023-35690CRITICAL9.8 In RGXDestroyHWRTData of rgxta3d.c, there is a possible arbitrary code execution due to an uncaught exception. This cou...
CVE-2023-35668MEDIUM5.5In visitUris of Notification.java, there is a possible way to display images from another user due to a confused deputy....
CVE-2023-24052CRITICAL9.8An issue discovered in Connectize AC21000 G6 641.139.1.1256 allows attackers to gain control of the device via the chang...
CVE-2023-24051CRITICAL9.8A client side rate limit issue discovered in Connectize AC21000 G6 641.139.1.1256 allows attackers to gain escalated pri...
CVE-2023-24050MEDIUM5.4Cross Site Scripting (XSS) vulnerability in Connectize AC21000 G6 641.139.1.1256 allows attackers to run arbitrary code ...
CVE-2023-24049CRITICAL9.8An issue was discovered on Connectize AC21000 G6 641.139.1.1256 allows attackers to gain escalated privileges on the dev...
CVE-2023-24048HIGH8.8Cross Site Request Forgery (CSRF) vulnerability in Connectize AC21000 G6 641.139.1.1256 allows attackers to gain control...
CVE-2023-24047MEDIUM6.8An Insecure Credential Management issue discovered in Connectize AC21000 G6 641.139.1.1256 allows attackers to gain esca...
CVE-2023-24046MEDIUM6.8An issue was discovered on Connectize AC21000 G6 641.139.1.1256 allows attackers to run arbitrary commands via use of a ...
CVE-2023-21403CRITICAL9.8In RGXDestroyZSBufferKM of rgxta3d.c, there is a possible arbitrary code execution due to an uncaught exception. This co...
CVE-2023-21402CRITICAL9.8In MMU_UnmapPages of mmu_common.c, there is a possible out of bounds read due to improper input validation. This could l...
CVE-2023-21401CRITICAL9.8In DevmemIntChangeSparse of devicemem_server.c, there is a possible out of bounds write due to an integer overflow. This...
CVE-2023-21263CRITICAL9.8 In OSMMapPMRGeneric of pmr_os.c, there is a possible out of bounds write due to an uncaught exception. This could lea...
CVE-2023-21228CRITICAL9.8In PMRChangeSparseMemOSMem of physmem_osmem_linux.c, there is a possible out of bounds write due to an incorrect bounds ...
CVE-2023-21227HIGH7.5In HTBLogKM of htbserver.c, there is a possible information disclosure due to log information disclosure. This could lea...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now