2023 CVE Vulnerabilities
31,249 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21021 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In isTargetSdkLessThanQOrPrivileged of WifiServiceImpl.java, there is a possible way for the guest user to change admin ... |
| CVE-2023-21017 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In InstallStart of InstallStart.java, there is a possible way to change the installer package name due to an improper in... |
| CVE-2023-21015 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In getAvailabilityStatus of several Transcode Permission Controllers, there is a possible permission bypass due to a mis... |
| CVE-2023-21005 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In getAvailabilityStatus of several Transcode Permission Controllers, there is a possible permission bypass due to a mis... |
| CVE-2023-21004 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In getAvailabilityStatus of several Transcode Permission Controllers, there is a possible permission bypass due to a mis... |
| CVE-2023-21003 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In getAvailabilityStatus of several Transcode Permission Controllers, there is a possible permission bypass due to a mis... |
| CVE-2023-21002 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In getAvailabilityStatus of several Transcode Permission Controllers, there is a possible permission bypass due to a mis... |
| CVE-2023-21001 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In onContextItemSelected of NetworkProviderSettings.java, there is a possible way for users to change the Wi-Fi settings... |
| CVE-2023-21000 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In MediaCodec.cpp, there is a possible use after free due to improper locking. This could lead to local escalation of pr... |
| CVE-2023-20995 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In captureImage of CustomizedSensor.cpp, there is a possible way to bypass the fingerprint unlock due to a logic error i... |
| CVE-2023-20993 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In multiple functions of SnoozeHelper.java, there is a possible failure to persist settings due to an uncaught exception... |
| CVE-2023-20985 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In BTA_GATTS_HandleValueIndication of bta_gatts_api.cc, there is a possible out of bounds write due to improper input va... |
| CVE-2023-20976 | HIGH | 7.3 | 0.1% | Mar 24, 2023 | In getConfirmationMessage of DefaultAutofillPicker.java, there is a possible way to mislead the user to select default a... |
| CVE-2023-20975 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In getAvailabilityStatus of EnableContentCapturePreferenceController.java, there is a possible way to bypass DISALLOW_CO... |
| CVE-2023-20971 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In removePermission of PermissionManagerServiceImpl.java, there is a possible way to obtain dangerous permissions withou... |
| CVE-2023-20966 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In inflate of inflate.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local... |
| CVE-2023-20964 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In multiple functions of MediaSessionRecord.java, there is a possible Intent rebroadcast due to a confused deputy. This ... |
| CVE-2023-20963 | HIGH | 7.8 | 1.4% | Mar 24, 2023 | In WorkSource, there is a possible parcel mismatch. This could lead to local escalation of privilege with no additional ... |
| CVE-2023-20960 | HIGH | 8.8 | 0.2% | Mar 24, 2023 | In launchDeepLinkIntentToRight of SettingsHomepageActivity.java, there is a possible way to launch arbitrary activities ... |
| CVE-2023-20959 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In AddSupervisedUserActivity, guest users are not prevented from starting the activity due to missing permissions checks... |
| CVE-2023-20958 | HIGH | 7.1 | 0.1% | Mar 24, 2023 | In read_paint of ttcolr.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to loca... |
| CVE-2023-20957 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In onAttach of SettingsPreferenceFragment.java, there is a possible bypass of Factory Reset Protections due to a confuse... |
| CVE-2023-20955 | HIGH | 7.8 | 0.2% | Mar 24, 2023 | In onPrepareOptionsMenu of AppInfoDashboardFragment.java, there is a possible way to bypass admin restrictions and unins... |
| CVE-2023-20953 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In onPrimaryClipChanged of ClipboardListener.java, there is a possible way to bypass factory reset protection due to inc... |
| CVE-2023-20947 | HIGH | 7.8 | 0.1% | Mar 24, 2023 | In getGroupState of GrantPermissionsViewModel.kt, there is a possible way to keep a one-time permission granted due to a... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now