Количество 26 091
Количество 26 091
CVE-2023-2136
Chromium: CVE-2023-2136 Integer overflow in Skia
CVE-2023-2135
Chromium: CVE-2023-2135 Use after free in DevTools
CVE-2023-2134
Chromium: CVE-2023-2134 Out of bounds memory access in Service Worker API
CVE-2023-2133
Chromium: CVE-2023-2133 Out of bounds memory access in Service Worker API
CVE-2023-2124
An out-of-bounds memory access flaw was found in the Linux kernel’s XFS file system in how a user restores an XFS image after failure (with a dirty log journal). This flaw allows a local user to crash or potentially escalate their privileges on the system.
CVE-2023-21102
In __efi_rt_asm_wrapper of efi-rt-wrapper.S there is a possible bypass of shadow stack protection due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-260821414References: Upstream kernel
CVE-2023-21100
In inflate of inflate.c there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12 Android-12L Android-13Android ID: A-242544249
CVE-2023-20958
CVE-2023-20588
AMD: CVE-2023-20588 AMD Speculative Leaks Security Notice
CVE-2023-20585
AMD: CVE-2023-20585 IOMMU Write Buffer Vulnerability
CVE-2023-20569
AMD: CVE-2023-20569 Return Address Predictor
CVE-2023-2033
Chromium: CVE-2023-2033 Type Confusion in V8
CVE-2023-2019
CVE-2023-2008
CVE-2023-2007
The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel.
CVE-2023-2006
CVE-2023-20052
CVE-2023-2004
CVE-2023-20032
CVE-2023-2002
A vulnerability was found in the HCI sockets implementation due to a missing capability check in net/bluetooth/hci_sock.c in the Linux Kernel. This flaw allows an attacker to unauthorized execution of management commands compromising the confidentiality integrity and availability of Bluetooth communication.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-2136 Chromium: CVE-2023-2136 Integer overflow in Skia | 6% Низкий | больше 3 лет назад | ||
CVE-2023-2135 Chromium: CVE-2023-2135 Use after free in DevTools | 1% Низкий | больше 3 лет назад | ||
CVE-2023-2134 Chromium: CVE-2023-2134 Out of bounds memory access in Service Worker API | 1% Низкий | больше 3 лет назад | ||
CVE-2023-2133 Chromium: CVE-2023-2133 Out of bounds memory access in Service Worker API | 1% Низкий | больше 3 лет назад | ||
CVE-2023-2124 An out-of-bounds memory access flaw was found in the Linux kernel’s XFS file system in how a user restores an XFS image after failure (with a dirty log journal). This flaw allows a local user to crash or potentially escalate their privileges on the system. | CVSS3: 7.8 | 0% Низкий | около 3 лет назад | |
CVE-2023-21102 In __efi_rt_asm_wrapper of efi-rt-wrapper.S there is a possible bypass of shadow stack protection due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-260821414References: Upstream kernel | CVSS3: 7.8 | 0% Низкий | около 3 лет назад | |
CVE-2023-21100 In inflate of inflate.c there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12 Android-12L Android-13Android ID: A-242544249 | CVSS3: 7.8 | 0% Низкий | больше 3 лет назад | |
CVSS3: 7.1 | 0% Низкий | около 3 лет назад | ||
CVE-2023-20588 AMD: CVE-2023-20588 AMD Speculative Leaks Security Notice | 11% Средний | больше 2 лет назад | ||
CVE-2023-20585 AMD: CVE-2023-20585 IOMMU Write Buffer Vulnerability | CVSS3: 5.3 | 0% Низкий | 4 месяца назад | |
CVE-2023-20569 AMD: CVE-2023-20569 Return Address Predictor | 7% Низкий | около 3 лет назад | ||
CVE-2023-2033 Chromium: CVE-2023-2033 Type Confusion in V8 | 41% Средний | больше 3 лет назад | ||
CVSS3: 4.4 | 0% Низкий | больше 3 лет назад | ||
CVSS3: 7.8 | 1% Низкий | больше 3 лет назад | ||
CVE-2023-2007 The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel. | CVSS3: 7.8 | 0% Низкий | больше 3 лет назад | |
CVSS3: 7 | 0% Низкий | больше 3 лет назад | ||
CVSS3: 5.3 | 7% Низкий | больше 3 лет назад | ||
CVSS3: 7.5 | больше 3 лет назад | |||
CVSS3: 9.8 | 29% Средний | больше 3 лет назад | ||
CVE-2023-2002 A vulnerability was found in the HCI sockets implementation due to a missing capability check in net/bluetooth/hci_sock.c in the Linux Kernel. This flaw allows an attacker to unauthorized execution of management commands compromising the confidentiality integrity and availability of Bluetooth communication. | CVSS3: 6.8 | 1% Низкий | около 3 лет назад |
Уязвимостей на страницу