2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-21358HIGH7.8In UWB Google, there is a possible way for a malicious app to masquerade as system app com.android.uwb.resources due to ...
CVE-2023-21357MEDIUM4.4In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl...
CVE-2023-21356HIGH8.8In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal...
CVE-2023-21355HIGH7.8In libaudioclient, there is a possible out of bounds write due to a use after free. This could lead to local escalation ...
CVE-2023-21354MEDIUM5.5In Package Manager Service, there is a possible way to determine whether an app is installed, without query permissions,...
CVE-2023-21353HIGH7.5In NFA, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disc...
CVE-2023-21352MEDIUM5.5In NFA, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl...
CVE-2023-21351HIGH7.8In multiple locations, there is a possible background activity launch due to a logic error in the code. This could lead ...
CVE-2023-21350MEDIUM5.5In Media Projection, there is a possible way to determine whether an app is installed, without query permissions, due to...
CVE-2023-21349LOW3.3In Package Manager, there is a possible way to determine whether an app is installed, without query permissions, due to ...
CVE-2023-21348LOW3.3In Window Manager, there is a possible way to determine whether an app is installed, without query permissions, due to s...
CVE-2023-21347HIGH7.5In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informatio...
CVE-2023-21346LOW3.3In the Device Idle Controller, there is a possible way to determine whether an app is installed, without query permissio...
CVE-2023-21345LOW3.3In Game Manager Service, there is a possible way to determine whether an app is installed, without query permissions, du...
CVE-2023-21344MEDIUM5.5In Job Scheduler, there is a possible way to determine whether an app is installed, without query permissions, due to si...
CVE-2023-21343HIGH7.8In ActivityStarter, there is a possible background activity launch due to an unsafe PendingIntent. This could lead to lo...
CVE-2023-21342HIGH7.8In RemoteSpeechRecognitionService of RemoteSpeechRecognitionService.java, there is a possible way to launch an activity ...
CVE-2023-21341HIGH7.8In Permission Manager, there is a possible way to bypass required permissions due to a missing permission check. This co...
CVE-2023-21340MEDIUM5.5In Telecomm, there is a possible way to get the call state due to a missing permission check. This could lead to local i...
CVE-2023-21339HIGH7.5In Minikin, there is a possible way to trigger ANR by showing a malicious message due to resource exhaustion. This could...
CVE-2023-21338MEDIUM5.5In Input Method, there is a possible way to determine whether an app is installed, without query permissions, due to sid...
CVE-2023-21337HIGH7.8In InputMethod, there is a possible way to determine whether an app is installed, without query permissions, due to side...
CVE-2023-21336MEDIUM5.5In Input Method, there is a possible way to determine whether an app is installed, without query permissions, due to sid...
CVE-2023-21335MEDIUM5.5In Settings, there is a possible way to determine whether an app is installed, without query permissions, due to side ch...
CVE-2023-21334MEDIUM5.5In App Ops Service, there is a possible disclosure of information about installed packages due to a logic error in the c...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now