Show filters
1,864 Total Results
Displaying 31-40 of 1,864
Sort by:
Attacker Value
Unknown

CVE-2023-21260

Disclosure Date: July 13, 2023 (last updated October 08, 2023)
In notification access permission dialog box, malicious application can embedded a very long service label that overflow the original user prompt and possibly contains mis-leading information to be appeared as a system message for user confirmation.
Attacker Value
Unknown

CVE-2023-21400

Disclosure Date: July 13, 2023 (last updated February 14, 2025)
In multiple functions of io_uring.c, there is a possible kernel memory corruption due to improper locking. This could lead to local escalation of privilege in the kernel with System execution privileges needed. User interaction is not needed for exploitation.
Attacker Value
Unknown

CVE-2023-21255

Disclosure Date: July 13, 2023 (last updated February 14, 2025)
In multiple functions of binder.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Attacker Value
Unknown

CVE-2023-33905

Disclosure Date: July 12, 2023 (last updated October 08, 2023)
In iwnpi server, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.
Attacker Value
Unknown

CVE-2023-33904

Disclosure Date: July 12, 2023 (last updated October 08, 2023)
In hci_server, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.
Attacker Value
Unknown

CVE-2023-33903

Disclosure Date: July 12, 2023 (last updated October 08, 2023)
In FM service, there is a possible missing params check. This could lead to local denial of service with System execution privileges needed.
Attacker Value
Unknown

CVE-2023-33902

Disclosure Date: July 12, 2023 (last updated October 08, 2023)
In bluetooth service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
Attacker Value
Unknown

CVE-2023-33901

Disclosure Date: July 12, 2023 (last updated October 08, 2023)
In bluetooth service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
Attacker Value
Unknown

CVE-2023-33900

Disclosure Date: July 12, 2023 (last updated October 08, 2023)
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
Attacker Value
Unknown

CVE-2023-33899

Disclosure Date: July 12, 2023 (last updated October 08, 2023)
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.