Vulnerabilities (CVE)

Filtered by CWE-787
Total 10958 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-30686 1 Samsung 1 Android 2024-11-21 N/A 6.7 MEDIUM
Out-of-bounds Write in ReqDataRaw of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
CVE-2023-30681 1 Samsung 1 Android 2024-11-21 N/A 4.4 MEDIUM
An improper input validation vulnerability within initialize function in HAL VaultKeeper prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.
CVE-2023-30670 1 Samsung 1 Android 2024-11-21 N/A 6.7 MEDIUM
Out-of-bounds Write in BuildIpcFactoryDeviceTestEvent of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.
CVE-2023-30669 1 Samsung 1 Android 2024-11-21 N/A 6.7 MEDIUM
Out-of-bounds Write in DoOemFactorySendFactoryTestResult of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.
CVE-2023-30668 1 Samsung 1 Android 2024-11-21 N/A 6.7 MEDIUM
Out-of-bounds Write in BuildOemSecureSimLockResponse of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.
CVE-2023-30666 1 Samsung 1 Android 2024-11-21 N/A 5.3 MEDIUM
Improper input validation vulnerability in DoOemImeiSetPreconfig in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds write.
CVE-2023-30653 1 Samsung 1 Android 2024-11-21 N/A 6.7 MEDIUM
Out of bounds read and write in enableTspDevice of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local attackers to execute arbitrary code.
CVE-2023-30652 1 Samsung 1 Android 2024-11-21 N/A 6.7 MEDIUM
Out of bounds read and write in callrunTspCmdNoRead of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local attackers to execute arbitrary code.
CVE-2023-30651 1 Samsung 1 Android 2024-11-21 N/A 6.7 MEDIUM
Out of bounds read and write in callgetTspsysfs of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local attackers to execute arbitrary code.
CVE-2023-30650 1 Samsung 1 Android 2024-11-21 N/A 6.7 MEDIUM
Out of bounds read and write in callrunTspCmd of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local attackers to execute arbitrary code.
CVE-2023-30649 1 Samsung 1 Android 2024-11-21 N/A 7.8 HIGH
Heap out of bound write vulnerability in RmtUimNeedApdu of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary code.
CVE-2023-30648 1 Samsung 1 Android 2024-11-21 N/A 3.3 LOW
Stack out-of-bounds write vulnerability in IpcRxImeiUpdateImeiNoti of RILD priro to SMR Jul-2023 Release 1 cause a denial of service on the system.
CVE-2023-30647 1 Samsung 1 Android 2024-11-21 N/A 7.8 HIGH
Heap out of bound write vulnerability in IpcRxUsimPhoneBookCapa of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary code.
CVE-2023-30646 1 Samsung 1 Android 2024-11-21 N/A 7.8 HIGH
Heap out of bound write vulnerability in BroadcastSmsConfig of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary code.
CVE-2023-30645 1 Samsung 1 Android 2024-11-21 N/A 7.8 HIGH
Heap out of bound write vulnerability in IpcRxIncomingCBMsg of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary code.
CVE-2023-30644 1 Samsung 1 Android 2024-11-21 N/A 7.8 HIGH
Stack out of bound write vulnerability in CdmaSmsParser of RILD prior to SMR Jul-2023 Release 1 allows attackers to execute arbitrary code.
CVE-2023-30414 1 Jerryscript 1 Jerryscript 2024-11-21 N/A 5.5 MEDIUM
Jerryscript commit 1a2c047 was discovered to contain a stack overflow via the component vm_loop at /jerry-core/vm/vm.c.
CVE-2023-30410 1 Jerryscript 1 Jerryscript 2024-11-21 N/A 5.5 MEDIUM
Jerryscript commit 1a2c047 was discovered to contain a stack overflow via the component ecma_op_function_construct at /operations/ecma-function-object.c.
CVE-2023-30402 1 Yasm Project 1 Yasm 2024-11-21 N/A 5.5 MEDIUM
YASM v1.3.0 was discovered to contain a heap overflow via the function handle_dot_label at /nasm/nasm-token.re. Note: This has been disputed by third parties who argue this is a bug and not a security issue because yasm is a standalone program not designed to run untrusted code.
CVE-2023-30382 1 Valvesoftware 1 Half-life 2024-11-21 N/A 7.3 HIGH
A buffer overflow in the component hl.exe of Valve Half-Life up to 5433873 allows attackers to execute arbitrary code and escalate privileges by supplying crafted parameters.