| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Memory corruption when Alternative Frequency offset value is set to 255. |
| Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls, |
| Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message. |
| Memory corruption in WLAN Firmware while doing a memory copy of pmk cache. |
| Memory corruption in Audio while processing RT proxy port register driver. |
| Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points. |
| Memory Corruption in Data Modem while making a MO call or MT VOLTE call. |
| Memory corruption when resource manager sends the host kernel a reply message with multiple fragments. |
| Memory Corruption in camera while installing a fd for a particular DMA buffer. |
| Memory corruption in SPS Application while requesting for public key in sorter TA. |
| Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware. |
| Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. |
| Memory corruption when preparing a shared memory notification for a memparcel in Resource Manager. |
| Memory corruption in video while parsing invalid mp2 clip. |
| Memory Corruption in Core due to secure memory access by user while loading modem image. |
| Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation. |
| Memory corruption in Modem while processing security related configuration before AS Security Exchange. |
| The web application allows user input to pass unfiltered to a command executed on the underlying operating system. The vulnerable component is bound to the network stack and the set of possible attackers extends up to and including the entire Internet.
An attacker with low privileged access to the application has the potential to execute commands on the operating system under the context of the webserver. |
| The web application allows user input to pass unfiltered to a command executed on the underlying operating system. An attacker with high privileged access (administrator) to the application has the potential execute commands on the operating system under the context of the webserver.
The vulnerable component is bound to the network stack and the set of possible attackers extends up to and including the entire Internet. Has the potential to inject command while creating a new User from User Management. |
| Luxion KeyShot DAE File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Luxion KeyShot. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specific flaw exists within the parsing of dae files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23704. |