| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Memory corruption due to configuration weakness in modem wile sending command to write protected files. |
| Memory corruption due to buffer copy without checking size of input while running memory sharing tests with large scattered memory. |
| Memory corruption due to double free in core while initializing the encryption key. |
| Memory corruption in FM Host due to buffer copy without checking the size of input in FM Host |
| Information disclosure due to buffer over-read in Modem while using static array to process IPv4 packets. |
| Information disclosure sue to buffer over-read in modem while processing ipv6 packet with hop-by-hop or destination option in header. |
| Memory corruption in Linux android due to double free while calling unregister provider after register call. |
| Memory corruption due to buffer copy without checking the size of input in Core while processing ioctl commands from diag client applications. |
| Memory corruption due to use after free in trusted application environment. |
| Memory corruption in core due to buffer copy without check9ing the size of input while processing ioctl queries. |
| Transient DOS in Modem due to null pointer dereference while processing the incoming packet with http chunked encoding. |
| Information disclosure due to buffer over-read while parsing DNS response packets in Modem. |
| Information disclosure in Trusted Execution Environment due to buffer over-read while processing metadata verification requests. |
| Information disclosure in Automotive multimedia due to buffer over-read. |
| Transient Denial-of-service in Automotive due to improper input validation while parsing ELF file. |
| Memory corruption in modem due to buffer overflow while processing a PPP packet |
| memory corruption in modem due to improper check while calculating size of serialized CoAP message |
| Authentication bypass by capture-replay vulnerability exists in Machine automation controller NJ series all models V 1.48 and earlier, Machine automation controller NX7 series all models V1.28 and earlier, Machine automation controller NX1 series all models V1.48 and earlier, Automation software 'Sysmac Studio' all models V1.49 and earlier, and Programmable Terminal (PT) NA series NA5-15W/NA5-12W/NA5-9W/NA5-7W models Runtime V1.15 and earlier, which may allow a remote attacker who can analyze the communication between the affected controller and automation software 'Sysmac Studio' and/or a Programmable Terminal (PT) to access the controller. |
| In BIG-IP Versions 16.1.x before 16.1.3, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5, when a BIG-IP APM access policy with Service Connect agent is configured on a virtual server, undisclosed requests can cause an increase in memory resource utilization. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. |
| Authentication bypass vulnerability in the setup screen of L2Blocker(on-premise) Ver4.8.5 and earlier and L2Blocker(Cloud) Ver4.8.5 and earlier allows an adjacent attacker to perform an unauthorized login and obtain the stored information or cause a malfunction of the device by using alternative paths or channels for Sensor. |