Show filters
7,909 Total Results
Displaying 31-40 of 7,909
Sort by:
Attacker Value
Unknown

CVE-2025-20881

Disclosure Date: February 04, 2025 (last updated February 27, 2025)
Out-of-bounds write in accessing buffer storing the decoded video frames in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2025-20643

Disclosure Date: February 03, 2025 (last updated February 27, 2025)
In DA, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure, if an attacker has physical access to the device, if a malicious actor has already obtained the System privilege. User interaction is needed for exploitation. Patch ID: ALPS09291146; Issue ID: MSV-2056.
Attacker Value
Unknown

CVE-2025-20642

Disclosure Date: February 03, 2025 (last updated February 27, 2025)
In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291146; Issue ID: MSV-2057.
Attacker Value
Unknown

CVE-2025-20641

Disclosure Date: February 03, 2025 (last updated February 27, 2025)
In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291146; Issue ID: MSV-2058.
Attacker Value
Unknown

CVE-2025-20640

Disclosure Date: February 03, 2025 (last updated February 27, 2025)
In DA, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291146; Issue ID: MSV-2059.
Attacker Value
Unknown

CVE-2025-20639

Disclosure Date: February 03, 2025 (last updated February 27, 2025)
In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291146; Issue ID: MSV-2060.
Attacker Value
Unknown

CVE-2025-20638

Disclosure Date: February 03, 2025 (last updated February 27, 2025)
In DA, there is a possible read of uninitialized heap data due to uninitialized data. This could lead to local information disclosure, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291449; Issue ID: MSV-2066.
Attacker Value
Unknown

CVE-2025-20636

Disclosure Date: February 03, 2025 (last updated February 27, 2025)
In secmem, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS09403554; Issue ID: MSV-2431.
Attacker Value
Unknown

CVE-2025-20635

Disclosure Date: February 03, 2025 (last updated February 27, 2025)
In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09403752; Issue ID: MSV-2434.
Attacker Value
Unknown

CVE-2024-20142

Disclosure Date: February 03, 2025 (last updated February 27, 2025)
In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291406; Issue ID: MSV-2070.