2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-53153HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: Fix use after free for wext Key in...
CVE-2023-53152MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix calltrace warning in amddrm_buddy_f...
CVE-2023-53151MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: md/raid10: prevent soft lockup while flush writes ...
CVE-2023-53150MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Pointer may be dereferenced Klocwor...
CVE-2023-53149MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ext4: avoid deadlock in fs reclaim with page writeb...
CVE-2023-53148HIGH7.8In the Linux kernel, the following vulnerability has been resolved: igb: Fix igb_down hung on surprise removal In a se...
CVE-2023-53147MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: xfrm: add NULL check in xfrm_update_ae_params Norm...
CVE-2023-31365LOW3.9An integer overflow in the SMU could allow a privileged attacker to potentially write memory beyond the end of the reser...
CVE-2023-31351MEDIUM5.3Improper restriction of operations in the IOMMU could allow a malicious hypervisor to access guest private memory result...
CVE-2023-31330LOW2.5An out-of-bounds read in the ASP could allow a privileged attacker with access to a malicious bootloader to potentially ...
CVE-2023-31326LOW2.8Use of an uninitialized variable in the ASP could allow an attacker to access leftover data from a trusted execution env...
CVE-2023-31325HIGH7.2Improper isolation of shared resources on System-on-a-chip (SOC) could a privileged attacker to tamper with the contents...
CVE-2023-31322HIGH8.7Type confusion in the ASP could allow an attacker to pass a malformed argument to the Reliability, Availability, and Ser...
CVE-2023-31306LOW3.3Improper validation of an array index in the AMD graphics driver software could allow an attacker to pass malformed argu...
CVE-2023-20516LOW3.3Improper handling of insufficiency privileges in the ASP could allow a privileged attacker to modify Translation Map Reg...
CVE-2023-35657MEDIUM4In bta_av_config_ind of bta_av_aact.cc, there is a possible out of bounds read due to type confusion. This could lead to...
CVE-2023-3666LOW3.3The Sticky Side Buttons WordPress plugin before 2.0.0 does not sanitise and escape some of its settings, which could all...
CVE-2023-21483MEDIUM5.5Improper Access Control vulnerability in Galaxy Store prior to version 4.5.53.6 allows local attacker to access protecte...
CVE-2023-21482MEDIUM4.6Missing authorization vulnerability in Camera prior to versions 11.1.02.18 in Android 11, 12.1.03.8 in Android 12 and 13...
CVE-2023-21481HIGH7.5Improper URL input validation vulnerability in Samsung Account application prior to version 14.1.0.0 allows remote attac...
CVE-2023-21480HIGH7.8Improper input validation vulnerability in CertByte prior to SMR Apr-2023 Release 1 allows local attackers to launch pri...
CVE-2023-21479MEDIUM5.3Improper authorization in Smart suggestions prior to SMR Apr-2023 Release 1 in Android 13 and 4.1.01.0 in Android 12 all...
CVE-2023-21478MEDIUM5.5Improper input validation vulnerability in TIGERF trustlet prior to SMR Apr-2023 Release 1 allows local attackers to acc...
CVE-2023-21477MEDIUM5.5Access of Memory Location After End of Buffer vulnerability in TIGERF trustlet prior to SMR Apr-2023 Release 1 allows lo...
CVE-2023-21476HIGH7.8Out-of-bounds Write vulnerability in libaudiosaplus_sec.so library prior to SMR Apr-2023 Release 1 allows local attacker...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now