121173+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause multimedia audio crash through modify a released pointer.
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause multimedia player crash through modify a released pointer.
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause multimedia player crash through modify a released pointer.
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause multimedia camera crash through modify a released pointer.
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause DOS through occupy all resources
A vulnerability was found in Perl. This security issue occurs while Perl for Windows relies on the system path environment variable to find the shell …
Memory corruption while invoking IOCTLs calls from user space for internal mem MAP and internal mem UNMAP.
Transient DOS while parsing GATT service data when the total amount of memory that is required by the multiple services is greater than the actual …
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.
Memory corruption in Audio when memory map command is executed consecutively in ADSP.
Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL.
Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVCS_LOAD_MODULE command.
Transient DOS while parsing ieee80211_parse_mscs_ie in WIN WLAN driver.
Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the same time.
Memory corruption when resource manager sends the host kernel a reply message with multiple fragments.
Transient DOS when WLAN firmware receives "reassoc response" frame including RIC_DATA element.
The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close …
Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.
Memory corruption in Graphics Driver when destroying a context with KGSL_GPU_AUX_COMMAND_TIMELINE objects queued.
Memory corruption while running VK synchronization with KASAN enabled.
Memory corruption in wearables while processing data from AON.
Transient DOS in WLAN Firmware while parsing a BTM request.
Transient DOS in Data Modem during DTLS handshake.
Memory corruption while receiving a message in Bus Socket Transport Server.
Cryptographic issue in Automotive while unwrapping the key secs2d and verifying with RPMB data.
Permanent DOS in Hypervisor while untrusted VM without PSCI support makes a PSCI call.
Memory corruption in Audio during playback with speaker protection.
Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.
Memory corruption in HLOS while running playready use-case.
Memory corruption in Data Modem when a non-standard SDP body, during a VOLTE call.
Information disclosure in Core services while processing a Diag command.
Memory corruption when IPv6 prefix timer object`s lifetime expires which are created while Netmgr daemon gets an IPv6 address.
Versions of the package follow-redirects before 1.15.4 are vulnerable to Improper Input Validation due to the improper handling of URLs by the url.parse() function. When …
Versions of the package libredwg before 0.12.5.6384 are vulnerable to Denial of Service (DoS) due to an out-of-bounds read involving section->num_pages in decode_r2007.c.
In bluetooth service, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with …
In modem EMM, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional …
In Modem IMS Call UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial …
In Modem IMS Call UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial …
In Modem IMS Stack, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service with …
In Modem IMS SMS UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial …
In display drm, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege with System …
In netdagent, there is a possible information disclosure due to an incorrect bounds check. This could lead to local escalation of privilege with System execution …
In Engineer Mode, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege …
In battery, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege with System execution …
In battery, there is a possible information disclosure due to an integer overflow. This could lead to local information disclosure with System execution privileges needed. …
In battery, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges …
In battery, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …
In battery, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges …
In battery, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …
In keyInstall, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges …
Free website and port scanning — find vulnerabilities before attackers do.