| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Memory Corruption in Core due to incorrect type conversion or cast in secure_io_read/write function in TEE. |
| Memory Corruption in GPS HLOS Driver when injectFdclData receives data with invalid data length. |
| Memory corruption in WLAN while running doDriverCmd for an unspecific command. |
| Memory corruption in RIL while trying to send apdu packet. |
| Memory corruption due to untrusted pointer dereference in automotive during system call. |
| Memory corruption in Audio while processing sva_model_serializer using memory size passed by HIDL client. |
| Memory corruption in Video while calling APIs with different instance ID than the one received in initialization. |
| Memory corruption in Linux while calling system configuration APIs. |
| Memory Corruption in Data Network Stack & Connectivity when sim gets detected on telephony. |
| Memory Corruption in Radio Interface Layer while sending an SMS or writing an SMS to SIM. |
| Memory corruption in Automotive GPU while querying a gsl memory node. |
| Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command. |
| Memory corruption in Trusted Execution Environment while calling service API with invalid address. |
| FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
| FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
| Photoshop version 23.5.3 (and earlier), 24.1 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
| Photoshop version 23.5.3 (and earlier), 24.1 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
|
A Stored Cross-site Scripting (XSS) vulnerability in the Management Console (User Management and Alerts) of BlackBerry AtHoc version 7.15 could allow an attacker to execute script commands in the context of the affected user account.
|
|
A Reflected Cross-site Scripting (XSS) vulnerability in the Management Console (Reports) of BlackBerry AtHoc version 7.15 could allow an attacker to potentially control a script that is executed in the victim's browser then they can execute script commands in the context of the affected user account. |
| User provided input is not sanitized in the “Settings > Access Control” configuration interface allowing for
arbitrary code execution. |