Memory corruption in core services when Diag handler receives a command to configure event listeners.
Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.
Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
Memory Corruption in Core due to secure memory access by user while loading modem image.
Memory corruption in TZ Secure OS while loading an app ELF.
Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to execute arbitrary code via the c…
Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. An out-of-bounds write wa…
In dpe, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System e…
In dpe, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System e…
In modem CCCI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System ex…
In video, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional executio…
In display, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System executio…
In video, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional …
In International Color Consortium DemoIccMAX 79ecb74, a CIccXmlArrayType:::ParseText function (for unsigned short) in IccUtilXml.cpp in libIccXML.a h…
An SMM memory corruption vulnerability in the SMM driver (SMRAM write) in CsmInt10HookSmm in Insyde InsydeH2O with kernel 5.0 through 5.5 allows atta…
A vulnerability was found in PHP where setting the environment variable PHP_CLI_SERVER_WORKERS to a large value leads to a heap buffer overflow.
A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw all…
A stack buffer overflow vulnerability discovered in AsfSecureBootDxe in Insyde InsydeH2O with kernel 5.0 through 5.5 allows attackers to run arbitrar…
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in gf_isom_use_compact_size gpac/src/isomedia/isom_write.c:3403:3 in gpac/MP4Bo…
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_media_change_pl /afltest/gpac/src/media_tools/isom_tools.c:3293:42.
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_isom_find_od_id_for_track /afltest/gpac/src/isomedia/media_odf.c:522:14.
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in ffdmx_parse_side_data /afltest/gpac/src/filters/ff_dmx.c:202:14 in gpac/MP4B…
In faceid service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no addition…
In wifi service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional…
In wifi service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional…
PX4-Autopilot provides PX4 flight control solution for drones. In versions 1.14.0-rc1 and prior, PX4-Autopilot has a heap buffer overflow vulnerabili…
TOTOLINK LR1200GB V9.1.0u.6619_B20230130 was discovered to contain a stack overflow via the password parameter in the function loginAuth.
In Bluetooth, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with System exe…
In Whitechapel, there is a possible out of bounds read due to memory corruption. This could lead to local information disclosure with no additional e…