CVE-2023-28549
- EPSS 0.03%
- Published 05.09.2023 07:15:13
- Last modified 21.11.2024 07:55:24
Memory corruption in WLAN HAL while parsing Rx buffer in processing TLV payload.
CVE-2023-28557
- EPSS 0.05%
- Published 05.09.2023 07:15:13
- Last modified 21.11.2024 07:55:27
Memory corruption in WLAN HAL while processing command parameters from untrusted WMI payload.
CVE-2023-28558
- EPSS 0.03%
- Published 05.09.2023 07:15:13
- Last modified 21.11.2024 07:55:28
Memory corruption in WLAN handler while processing PhyID in Tx status handler.
CVE-2023-28559
- EPSS 0.05%
- Published 05.09.2023 07:15:13
- Last modified 21.11.2024 07:55:28
Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload.
CVE-2023-28564
- EPSS 0.03%
- Published 05.09.2023 07:15:13
- Last modified 21.11.2024 07:55:30
Memory corruption in WLAN HAL while passing command parameters through WMI interfaces.
CVE-2023-28575
- EPSS 0.04%
- Published 08.08.2023 10:15:14
- Last modified 21.11.2024 07:55:33
The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.
- EPSS 0.02%
- Published 08.08.2023 10:15:14
- Last modified 21.11.2024 07:55:34
The buffer obtained from kernel APIs such as cam_mem_get_cpu_buf() may be readable/writable in userspace after kernel accesses it. In other words, user mode may race and modify the packet header (e.g. header.count), causing checks (e.g. size checks) ...
CVE-2023-28577
- EPSS 0.03%
- Published 08.08.2023 10:15:14
- Last modified 21.11.2024 07:55:34
In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a function called cam_mem_get_cpu_buf to get the kernel va to use, another thread can call CAM_REQ_MGR_RELEASE_BUF to unmap the kernel va w...
CVE-2023-21629
- EPSS 0.07%
- Published 04.07.2023 05:15:10
- Last modified 11.08.2025 15:06:17
Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.
CVE-2023-21631
- EPSS 0.07%
- Published 04.07.2023 05:15:10
- Last modified 11.08.2025 15:06:17
Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network.