2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21358 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In UWB Google, there is a possible way for a malicious app to masquerade as system app com.android.uwb.resources due to ... |
| CVE-2023-21357 | MEDIUM | 4.4 | 0.1% | Oct 30, 2023 | In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl... |
| CVE-2023-21356 | HIGH | 8.8 | 0.1% | Oct 30, 2023 | In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal... |
| CVE-2023-21355 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In libaudioclient, there is a possible out of bounds write due to a use after free. This could lead to local escalation ... |
| CVE-2023-21354 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Package Manager Service, there is a possible way to determine whether an app is installed, without query permissions,... |
| CVE-2023-21353 | HIGH | 7.5 | 0.4% | Oct 30, 2023 | In NFA, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disc... |
| CVE-2023-21352 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In NFA, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl... |
| CVE-2023-21351 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In multiple locations, there is a possible background activity launch due to a logic error in the code. This could lead ... |
| CVE-2023-21350 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Media Projection, there is a possible way to determine whether an app is installed, without query permissions, due to... |
| CVE-2023-21349 | LOW | 3.3 | 0.1% | Oct 30, 2023 | In Package Manager, there is a possible way to determine whether an app is installed, without query permissions, due to ... |
| CVE-2023-21348 | LOW | 3.3 | 0.1% | Oct 30, 2023 | In Window Manager, there is a possible way to determine whether an app is installed, without query permissions, due to s... |
| CVE-2023-21347 | HIGH | 7.5 | 0.4% | Oct 30, 2023 | In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informatio... |
| CVE-2023-21346 | LOW | 3.3 | 0.1% | Oct 30, 2023 | In the Device Idle Controller, there is a possible way to determine whether an app is installed, without query permissio... |
| CVE-2023-21345 | LOW | 3.3 | 0.1% | Oct 30, 2023 | In Game Manager Service, there is a possible way to determine whether an app is installed, without query permissions, du... |
| CVE-2023-21344 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Job Scheduler, there is a possible way to determine whether an app is installed, without query permissions, due to si... |
| CVE-2023-21343 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In ActivityStarter, there is a possible background activity launch due to an unsafe PendingIntent. This could lead to lo... |
| CVE-2023-21342 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In RemoteSpeechRecognitionService of RemoteSpeechRecognitionService.java, there is a possible way to launch an activity ... |
| CVE-2023-21341 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In Permission Manager, there is a possible way to bypass required permissions due to a missing permission check. This co... |
| CVE-2023-21340 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Telecomm, there is a possible way to get the call state due to a missing permission check. This could lead to local i... |
| CVE-2023-21339 | HIGH | 7.5 | 0.4% | Oct 30, 2023 | In Minikin, there is a possible way to trigger ANR by showing a malicious message due to resource exhaustion. This could... |
| CVE-2023-21338 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Input Method, there is a possible way to determine whether an app is installed, without query permissions, due to sid... |
| CVE-2023-21337 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In InputMethod, there is a possible way to determine whether an app is installed, without query permissions, due to side... |
| CVE-2023-21336 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Input Method, there is a possible way to determine whether an app is installed, without query permissions, due to sid... |
| CVE-2023-21335 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Settings, there is a possible way to determine whether an app is installed, without query permissions, due to side ch... |
| CVE-2023-21334 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In App Ops Service, there is a possible disclosure of information about installed packages due to a logic error in the c... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now