Google Security Advisories · April 2023 — Google Security Advisories
395 advisories 249 CVEs 27 EXPLOITED

GCVE / Google Cloud / Chrome / Android / Project Zero / OSS for 2023-04. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 27 are already weaponised in the wild.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

CVE-2023-28252

GoogleExploitedCISA KEV listedCRITICAL2023-04-11

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVEs:CVE-2023-28252

Affected products

ProductStatusVendorPackageEcosystem
windows_10_1507 affected microsoft
windows_10_1607 affected microsoft
windows_10_1809 affected microsoft
windows_10_20h2 affected microsoft
windows_10_21h2 affected microsoft
windows_10_22h2 affected microsoft
windows_11_21h2 affected microsoft
windows_11_22h2 affected microsoft
windows_server_2008 affected microsoft
windows_server_2012 affected microsoft
windows_server_2016 affected microsoft
windows_server_2019 affected microsoft
windows_server_2022 affected microsoft
Upstream advisory

openSUSE-SU-2023:0092-1

Open SourceExploitedCISA KEV listedCRITICAL2023-04-19

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected SUSE:Package Hub 15 SP4 chromium
chromium affected openSUSE:Leap 15.4 chromium
Upstream advisory

DSA-5390-1

Open SourceExploitedCISA KEV listed2023-04-16

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
Upstream advisory

CVE-2023-2033

GoogleExploitedCISA KEV listedHIGH2023-04-14

Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2023-2033

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
couchbase_server affected couchbase
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2023-2033

Open SourceExploitedCISA KEV listedHIGH2023-04-14

DEBIAN-CVE-2023-2033

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-2033

Project ZeroExploitedCISA KEV listed2023-04-14

Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2023-2033

Upstream advisory

CVE-2023-28205

GoogleExploitedCISA KEV listed2023-04-10

A use after free issue was addressed with improved memory management. This issue is fixed in Safari 16.4.1, iOS 15.7.5 and iPadOS 15.7.5, iOS 16.4.1 and iPadOS 16.4.1, macOS Ventura 13.3.1. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.

CVEs:CVE-2023-28205

Upstream advisory

CVE-2023-28205

Project ZeroExploitedCISA KEV listed2023-04-10

A use after free issue was addressed with improved memory management. This issue is fixed in Safari 16.4.1, iOS 15.7.5 and iPadOS 15.7.5, iOS 16.4.1 and iPadOS 16.4.1, macOS Ventura 13.3.1. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.

CVEs:CVE-2023-28205

Upstream advisory

CVE-2023-28205

GoogleExploitedCISA KEV listedCRITICAL2023-04-10

A use after free issue was addressed with improved memory management. This issue is fixed in Safari 16.4.1, iOS 15.7.5 and iPadOS 15.7.5, iOS 16.4.1 and iPadOS 16.4.1, macOS Ventura 13.3.1. Processing maliciously crafted web content may lead to arbitra...

CVEs:CVE-2023-28205

Affected products

ProductStatusVendorPackageEcosystem
ipados affected apple
iphone_os affected apple
macos affected apple
safari affected apple
Upstream advisory

CVE-2023-28206

GoogleExploitedCISA KEV listedCRITICAL2023-04-10

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.6.5, iOS 16.4.1 and iPadOS 16.4.1, macOS Ventura 13.3.1, iOS 15.7.5 and iPadOS 15.7.5, macOS Big Sur 11.7.6. An app may be able to execu...

CVEs:CVE-2023-28206

Affected products

ProductStatusVendorPackageEcosystem
ipados affected apple
iphone_os affected apple
macos affected apple
Upstream advisory

CVE-2023-28206

Project ZeroExploitedCISA KEV listed2023-04-10

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.6.5, iOS 16.4.1 and iPadOS 16.4.1, macOS Ventura 13.3.1, iOS 15.7.5 and iPadOS 15.7.5, macOS Big Sur 11.7.6. An app may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.

CVEs:CVE-2023-28206

Upstream advisory

ASB-A-259695958

GoogleExploitedCISA KEV listedHIGH2023-04-01

ASB-A-259695958

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

openSUSE-SU-2023:0093-1

Open SourceExploitedCISA KEV listedCRITICAL2023-04-24

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected SUSE:Package Hub 15 SP4 chromium
chromium affected openSUSE:Leap 15.4 chromium
Upstream advisory

DSA-5393-1

Open SourceExploitedCISA KEV listed2023-04-22

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
Upstream advisory

DEBIAN-CVE-2023-2136

Open SourceExploitedCISA KEV listedCRITICAL2023-04-19

DEBIAN-CVE-2023-2136

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-2136

Project ZeroExploitedCISA KEV listed2023-04-18

Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2023-2136

Upstream advisory

CVE-2023-2136

GoogleExploitedCISA KEV listed2023-04-18

Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2023-2136

Upstream advisory

CVE-2023-2136

GoogleExploitedCISA KEV listedCRITICAL2023-04-18

Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2023-2136

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

PUB-A-265303544

GoogleExploitedCISA KEV listedHIGH2023-04-01

PUB-A-265303544

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2023-26083

GoogleExploitedCISA KEV listedLOW2023-04-06

Memory leak vulnerability in Mali GPU Kernel Driver in Midgard GPU Kernel Driver all versions from r6p0 - r32p0, Bifrost GPU Kernel Driver all versions from r0p0 - r42p0, Valhall GPU Kernel Driver all versions from r19p0 - r42p0, and Avalon GPU Kernel ...

CVEs:CVE-2023-26083

Affected products

ProductStatusVendorPackageEcosystem
5th_gen_gpu_architecture_kernel_driver affected arm
bifrost_gpu_kernel_driver affected arm
midgard_gpu_kernel_driver affected arm
valhall_gpu_kernel_driver affected arm
Upstream advisory

CVE-2023-26083

Project ZeroExploitedCISA KEV listed2023-04-06

Memory leak vulnerability in Mali GPU Kernel Driver in Midgard GPU Kernel Driver all versions from r6p0 - r32p0, Bifrost GPU Kernel Driver all versions from r0p0 - r42p0, Valhall GPU Kernel Driver all versions from r19p0 - r42p0, and Avalon GPU Kernel Driver all versions from r41p0 - r42p0 allows a non-privileged user to make valid GPU processing operations that expose sensitive kernel metadata.

CVEs:CVE-2023-26083

Upstream advisory

PUB-A-269655868

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269655868

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-269655871

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269655871

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-269656813

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269656813

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

DSA-5386-1

Open SourceActive exploitation (sightings)2023-04-12

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
Upstream advisory

DEBIAN-CVE-2023-2133

Open SourceActive exploitation (sightings)HIGH2023-04-19

DEBIAN-CVE-2023-2133

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2023-2134

Open SourceActive exploitation (sightings)HIGH2023-04-19

DEBIAN-CVE-2023-2134

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-2133

GoogleActive exploitation (sightings)HIGH2023-04-18

Out of bounds memory access in Service Worker API in Google Chrome prior to 112.0.5615.137 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2023-2133

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2023-2134

GoogleActive exploitation (sightings)HIGH2023-04-18

Out of bounds memory access in Service Worker API in Google Chrome prior to 112.0.5615.137 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2023-2134

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

PUB-A-269656636

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269656636

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

DEBIAN-CVE-2023-2135

Open SourceActive exploitation (sightings)CRITICAL2023-04-19

DEBIAN-CVE-2023-2135

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-2135

GoogleActive exploitation (sightings)CRITICAL2023-04-18

Use after free in DevTools in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who convinced a user to enable specific preconditions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2023-2135

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

PUB-A-269656722

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269656722

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-269656642

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269656642

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

DEBIAN-CVE-2023-1814

Open SourceActive exploitation (sightings)MEDIUM2023-04-04

DEBIAN-CVE-2023-1814

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1814

GoogleActive exploitation (sightings)MEDIUM2023-04-04

Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to bypass download checking via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2023-1814

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

PUB-A-269655866

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269655866

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-269657006

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269657006

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-269657253

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269657253

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-269657344

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269657344

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-269656827

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269656827

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-269657041

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269657041

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-269657452

GoogleActive exploitation (sightings)HIGH2023-04-01

PUB-A-269657452

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

GHSA-v5hq-cqqr-6w4g

Open SourceActive exploitation (sightings)MEDIUM2023-04-12

Jenkins Kubernetes Plugin does not properly mask credentials

Affected products

ProductStatusVendorPackageEcosystem
org.csanchez.jenkins.plugins:kubernetes affected Maven org.csanchez.jenkins.plugins:kubernetes
Upstream advisory

GHSA-v5hq-cqqr-6w4g

Open SourceActive exploitation (sightings)MEDIUM2023-04-12

Jenkins Kubernetes Plugin does not properly mask credentials

Affected products

ProductStatusVendorPackageEcosystem
org.csanchez.jenkins.plugins:kubernetes affected Maven org.csanchez.jenkins.plugins:kubernetes
Upstream advisory

CVE-2023-30513

Open SourceActive exploitation (sightings)MEDIUM2023-04-12

Jenkins Kubernetes Plugin does not properly mask credentials

CVEs:CVE-2023-30513

Affected products

ProductStatusVendorPackageEcosystem
org.csanchez.jenkins.plugins:kubernetes affected Maven org.csanchez.jenkins.plugins:kubernetes
Upstream advisory

CVE-2023-30513

Open SourceActive exploitation (sightings)HIGH2023-04-12

Jenkins Kubernetes Plugin 3909.v1f2c633e8590 and earlier does not properly mask (i.e., replace with asterisks) credentials in the build log when push mode for durable task logging is enabled.

CVEs:CVE-2023-30513

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected jenkins
Upstream advisory

CVE-2023-30513

GoogleActive exploitation (sightings)2023-04-12

Jenkins Kubernetes Plugin 3909.v1f2c633e8590 and earlier does not properly mask (i.e., replace with asterisks) credentials in the build log when push mode for durable task logging is enabled.

CVEs:CVE-2023-30513

Upstream advisory

CVE-2023-25712

GoogleActive exploitation (sightings)CRITICAL2023-04-07

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WP-Buddy Google Analytics Opt-Out plugin <= 2.3.4 versions.

CVEs:CVE-2023-25712

Affected products

ProductStatusVendorPackageEcosystem
google_analytics_opt-out affected wp-buddy
Upstream advisory

CVE-2023-21475

Open SourceActive exploitation (sightings)HIGH2023-04-03

Out-of-bounds Write vulnerability in libaudiosaplus_sec.so library prior to SMR Apr-2023 Release 1 allows local attacker to execute arbitrary code.

CVEs:CVE-2023-21475

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2023-21476

Open SourceActive exploitation (sightings)HIGH2023-04-03

Out-of-bounds Write vulnerability in libaudiosaplus_sec.so library prior to SMR Apr-2023 Release 1 allows local attacker to execute arbitrary code.

CVEs:CVE-2023-21476

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2022-32599

Open SourceActive exploitation (sightings)HIGH2023-04-03

In rpmb, there is a possible out of bounds write due to a logic error. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07460390; Issue ID: ALPS0746...

CVEs:CVE-2022-32599

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-267957662

GoogleActive exploitation (sightings)2023-04-01

ASB-A-267957662

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2023-21480

Open SourceActive exploitation (sightings)HIGH2023-04-03

Improper input validation vulnerability in CertByte prior to SMR Apr-2023 Release 1 allows local attackers to launch privileged activities.

CVEs:CVE-2023-21480

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2023-21471

Open SourceActive exploitation (sightings)HIGH2023-04-03

Improper access control vulnerability in SemClipboard prior to SMR Apr-2023 Release 1 allows attackers to read arbitrary files with system permission.

CVEs:CVE-2023-21471

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2022-47338

Open SourceActive exploitation (sightings)HIGH2023-04-03

In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.

CVEs:CVE-2022-47338

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-268412170

GoogleActive exploitation (sightings)2023-04-01

ASB-A-268412170

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2022-47335

Open SourceActive exploitation (sightings)HIGH2023-04-03

In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.

CVEs:CVE-2022-47335

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-47336

Open SourceActive exploitation (sightings)HIGH2023-04-03

In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.

CVEs:CVE-2022-47336

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-47337

Open SourceActive exploitation (sightings)HIGH2023-04-03

In media service, there is a missing permission check. This could lead to local denial of service in media service.

CVEs:CVE-2022-47337

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-268377608

GoogleActive exploitation (sightings)2023-04-01

ASB-A-268377608

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-268377609

GoogleActive exploitation (sightings)2023-04-01

ASB-A-268377609

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-268410193

GoogleActive exploitation (sightings)2023-04-01

ASB-A-268410193

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

DLA-3395-1

Open SourcePoC exploit2023-04-19

golang-1.11 - security update

Affected products

ProductStatusVendorPackageEcosystem
golang-1.11 affected Debian:10 golang-1.11
Upstream advisory

DLA-3393-1

Open SourcePoC exploit2023-04-18

protobuf - security update

Affected products

ProductStatusVendorPackageEcosystem
protobuf affected Debian:10 protobuf
Upstream advisory

OESA-2023-1237

Open SourcePoC exploitCRITICAL2023-04-21

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler
golang affected openEuler:20.03-LTS-SP1 golang
golang affected openEuler:20.03-LTS-SP3 golang
golang affected openEuler:22.03-LTS golang
golang affected openEuler:22.03-LTS-SP1 golang
Upstream advisory

MGASA-2023-0145

Open SourcePoC exploitCRITICAL2023-04-15

Updated golang packages fix security vulnerability

Affected products

ProductStatusVendorPackageEcosystem
golang affected Mageia:8 golang
Upstream advisory

AZL-25992

Open SourcePoC exploitCRITICAL2023-04-06

CVE-2023-24538 affecting package golang for versions less than 1.19.8-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

AZL-25993

Open SourcePoC exploitCRITICAL2023-04-06

CVE-2023-24538 affecting package msft-golang for versions less than 1.20.11-1

Affected products

ProductStatusVendorPackageEcosystem
msft-golang affected Azure Linux:2 msft-golang
Upstream advisory

AZL-34751

Open SourcePoC exploitCRITICAL2023-04-06

CVE-2023-24538 affecting package golang for versions less than 1.19.8-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

AZL-37296

Open SourcePoC exploitCRITICAL2023-04-06

CVE-2023-24538 affecting package golang for versions less than 1.21.6-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

AZL-37411

Open SourcePoC exploitCRITICAL2023-04-06

CVE-2023-24538 affecting package golang for versions less than 1.21.6-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

AZL-78990

Open SourcePoC exploitCRITICAL2023-04-06

CVE-2023-24538 affecting package golang 1.25.7-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

DEBIAN-CVE-2023-24538

Open SourcePoC exploitCRITICAL2023-04-06

DEBIAN-CVE-2023-24538

Affected products

ProductStatusVendorPackageEcosystem
golang-1.15 affected Debian:11 golang-1.15
golang-1.19 affected Debian:12 golang-1.19
Upstream advisory

CVE-2023-24538

GooglePoC exploitCRITICAL2023-04-05

Templates do not properly consider backticks (`) as Javascript string delimiters, and do not escape them as expected. Backticks are used, since ES6, for JS template literals. If a template contains a Go template action within a Javascript template lite...

CVEs:CVE-2023-24538

Affected products

ProductStatusVendorPackageEcosystem
go affected golang
Upstream advisory

CVE-2023-24538

GooglePoC exploit2023-04-05

Templates do not properly consider backticks (`) as Javascript string delimiters, and do not escape them as expected. Backticks are used, since ES6, for JS template literals. If a template contains a Go template action within a Javascript template literal, the contents of the action can be used to terminate the literal, injecting arbitrary Javascript code into the Go template. As ES6 template literals are rather complex, and themselves can do string interpolation, the decision was made to simply disallow Go template actions from being used inside of them (e.g. "var a = {{.}}"), since there is no obviously safe way to allow this behavior. This takes the same approach as github.com/google/safehtml. With fix, Template.Parse returns an Error when it encounters templates like this, with an ErrorCode of value 12. This ErrorCode is currently unexported, but will be exported in the release of Go 1.21. Users who rely on the previous behavior can re-enable it using the GODEBUG flag jstmpllitinterp=1, with the caveat that backticks will now be escaped. This should be used with caution.

CVEs:CVE-2023-24538

Upstream advisory

GO-2023-1703

Open SourcePoC exploitNONE2023-04-05

Backticks not treated as string delimiters in html/template

Affected products

ProductStatusVendorPackageEcosystem
go-1.20 affected wolfi go-1.20
go-1.20 affected chainguard go-1.20
kubeflow-katib affected wolfi kubeflow-katib
kubeflow-katib affected chainguard kubeflow-katib
stdlib affected Go stdlib
Upstream advisory

AZL-25990

Open SourcePoC exploitHIGH2023-04-06

CVE-2023-24534 affecting package golang for versions less than 1.20.7-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

AZL-26027

Open SourcePoC exploitHIGH2023-04-06

CVE-2023-24534 affecting package msft-golang for versions less than 1.20.7-1

Affected products

ProductStatusVendorPackageEcosystem
msft-golang affected Azure Linux:2 msft-golang
Upstream advisory

AZL-37414

Open SourcePoC exploitHIGH2023-04-06

CVE-2023-24534 affecting package golang for versions less than 1.21.6-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

AZL-37484

Open SourcePoC exploitHIGH2023-04-06

CVE-2023-24534 affecting package golang for versions less than 1.21.6-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

AZL-52878

Open SourcePoC exploitHIGH2023-04-06

CVE-2023-24534 affecting package golang for versions less than 1.20.7-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

AZL-79066

Open SourcePoC exploitHIGH2023-04-06

CVE-2023-24534 affecting package golang 1.25.7-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

DEBIAN-CVE-2023-24534

Open SourcePoC exploitHIGH2023-04-06

DEBIAN-CVE-2023-24534

Affected products

ProductStatusVendorPackageEcosystem
golang-1.15 affected Debian:11 golang-1.15
golang-1.19 affected Debian:12 golang-1.19
Upstream advisory

CVE-2023-24534

GooglePoC exploitHIGH2023-04-05

HTTP and MIME header parsing can allocate large amounts of memory, even when parsing small inputs, potentially leading to a denial of service. Certain unusual patterns of input data can cause the common function used to parse HTTP and MIME headers to a...

CVEs:CVE-2023-24534

Affected products

ProductStatusVendorPackageEcosystem
go affected golang
Upstream advisory

CVE-2023-24534

GooglePoC exploit2023-04-05

HTTP and MIME header parsing can allocate large amounts of memory, even when parsing small inputs, potentially leading to a denial of service. Certain unusual patterns of input data can cause the common function used to parse HTTP and MIME headers to allocate substantially more memory than required to hold the parsed headers. An attacker can exploit this behavior to cause an HTTP server to allocate large amounts of memory from a small request, potentially leading to memory exhaustion and a denial of service. With fix, header parsing now correctly allocates only the memory required to hold parsed headers.

CVEs:CVE-2023-24534

Upstream advisory

GO-2023-1704

Open SourcePoC exploitHIGH2023-04-05

Excessive memory allocation in net/http and net/textproto

Affected products

ProductStatusVendorPackageEcosystem
go-1.20 affected wolfi go-1.20
go-1.20 affected chainguard go-1.20
kubeflow-katib affected wolfi kubeflow-katib
kubeflow-katib affected chainguard kubeflow-katib
stdlib affected Go stdlib
Upstream advisory

AZL-26028

Open SourcePoC exploitHIGH2023-04-06

CVE-2023-24536 affecting package msft-golang for versions less than 1.20.7-1

Affected products

ProductStatusVendorPackageEcosystem
msft-golang affected Azure Linux:2 msft-golang
Upstream advisory

AZL-37340

Open SourcePoC exploitHIGH2023-04-06

CVE-2023-24536 affecting package golang for versions less than 1.21.6-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

AZL-37431

Open SourcePoC exploitHIGH2023-04-06

CVE-2023-24536 affecting package golang for versions less than 1.21.6-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

AZL-79062

Open SourcePoC exploitHIGH2023-04-06

CVE-2023-24536 affecting package golang 1.25.7-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

DEBIAN-CVE-2023-24536

Open SourcePoC exploitHIGH2023-04-06

DEBIAN-CVE-2023-24536

Affected products

ProductStatusVendorPackageEcosystem
golang-1.15 affected Debian:11 golang-1.15
golang-1.19 affected Debian:12 golang-1.19
Upstream advisory

CVE-2023-24536

GooglePoC exploit2023-04-05

Multipart form parsing can consume large amounts of CPU and memory when processing form inputs containing very large numbers of parts. This stems from several causes: 1. mime/multipart.Reader.ReadForm limits the total memory a parsed multipart form can consume. ReadForm can undercount the amount of memory consumed, leading it to accept larger inputs than intended. 2. Limiting total memory does not account for increased pressure on the garbage collector from large numbers of small allocations in forms with many parts. 3. ReadForm can allocate a large number of short-lived buffers, further increasing pressure on the garbage collector. The combination of these factors can permit an attacker to cause an program that parses multipart forms to consume large amounts of CPU and memory, potentially resulting in a denial of service. This affects programs that use mime/multipart.Reader.ReadForm, as well as form parsing in the net/http package with the Request methods FormFile, FormValue, ParseMultipartForm, and PostFormValue. With fix, ReadForm now does a better job of estimating the memory consumption of parsed forms, and performs many fewer short-lived allocations. In addition, the fixed mime/multipart.Reader imposes the following limits on the size of parsed forms: 1. Forms parsed with ReadForm may contain no more than 1000 parts. This limit may be adjusted with the environment variable GODEBUG=multipartmaxparts=. 2. Form parts parsed with NextPart and NextRawPart may contain no more than 10,000 header fields. In addition, forms parsed with ReadForm may contain no more than 10,000 header fields across all parts. This limit may be adjusted with the environment variable GODEBUG=multipartmaxheaders=.

CVEs:CVE-2023-24536

Upstream advisory

CVE-2023-24536

GooglePoC exploitHIGH2023-04-05

Multipart form parsing can consume large amounts of CPU and memory when processing form inputs containing very large numbers of parts. This stems from several causes: 1. mime/multipart.Reader.ReadForm limits the total memory a parsed multipart form can...

CVEs:CVE-2023-24536

Affected products

ProductStatusVendorPackageEcosystem
go affected golang
Upstream advisory

GO-2023-1705

Open SourcePoC exploitCRITICAL2023-04-05

Excessive resource consumption in net/http, net/textproto and mime/multipart

Affected products

ProductStatusVendorPackageEcosystem
go-1.20 affected chainguard go-1.20
go-1.20 affected wolfi go-1.20
kubeflow-katib affected chainguard kubeflow-katib
kubeflow-katib affected wolfi kubeflow-katib
stdlib affected Go stdlib
Upstream advisory

AZL-26026

Open SourcePoC exploitCRITICAL2023-04-06

CVE-2023-24537 affecting package golang for versions less than 1.20.7-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

AZL-26029

Open SourcePoC exploitCRITICAL2023-04-06

CVE-2023-24537 affecting package msft-golang for versions less than 1.20.11-1

Affected products

ProductStatusVendorPackageEcosystem
msft-golang affected Azure Linux:2 msft-golang
Upstream advisory

AZL-37319

Open SourcePoC exploitCRITICAL2023-04-06

CVE-2023-24537 affecting package golang for versions less than 1.21.6-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

AZL-37352

Open SourcePoC exploitCRITICAL2023-04-06

CVE-2023-24537 affecting package golang for versions less than 1.21.6-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

AZL-52676

Open SourcePoC exploitCRITICAL2023-04-06

CVE-2023-24537 affecting package golang for versions less than 1.20.7-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

AZL-79120

Open SourcePoC exploitCRITICAL2023-04-06

CVE-2023-24537 affecting package golang 1.25.7-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

DEBIAN-CVE-2023-24537

Open SourcePoC exploitCRITICAL2023-04-06

DEBIAN-CVE-2023-24537

Affected products

ProductStatusVendorPackageEcosystem
golang-1.15 affected Debian:11 golang-1.15
golang-1.19 affected Debian:12 golang-1.19
Upstream advisory

CVE-2023-24537

GooglePoC exploitCRITICAL2023-04-05

Calling any of the Parse functions on Go source code which contains //line directives with very large line numbers can cause an infinite loop due to integer overflow.

CVEs:CVE-2023-24537

Affected products

ProductStatusVendorPackageEcosystem
go affected golang
Upstream advisory

CVE-2023-24537

GooglePoC exploit2023-04-05

Calling any of the Parse functions on Go source code which contains //line directives with very large line numbers can cause an infinite loop due to integer overflow.

CVEs:CVE-2023-24537

Upstream advisory

GO-2023-1702

Open SourcePoC exploitCRITICAL2023-04-05

Infinite loop in parsing in go/scanner

Affected products

ProductStatusVendorPackageEcosystem
go-1.20 affected wolfi go-1.20
go-1.20 affected chainguard go-1.20
kubeflow-katib affected wolfi kubeflow-katib
kubeflow-katib affected chainguard kubeflow-katib
stdlib affected Go stdlib
Upstream advisory

SUSE-SU-2023:1859-1

Open SourcePoC exploitCRITICAL2023-04-14

Security update for golang-github-prometheus-prometheus

Affected products

ProductStatusVendorPackageEcosystem
golang-github-prometheus-prometheus affected SUSE:Manager Proxy Module 4.2 golang-github-prometheus-prometheus
golang-github-prometheus-prometheus affected SUSE:Manager Proxy Module 4.3 golang-github-prometheus-prometheus
golang-github-prometheus-prometheus affected openSUSE:Leap 15.4 golang-github-prometheus-prometheus
Upstream advisory

SUSE-SU-2023:1858-1

Open SourcePoC exploitCRITICAL2023-04-14

Security update for golang-github-prometheus-prometheus

Affected products

ProductStatusVendorPackageEcosystem
golang-github-prometheus-prometheus affected SUSE:Manager Client Tools 12 golang-github-prometheus-prometheus
Upstream advisory

SUSE-SU-2023:1857-1

Open SourcePoC exploitCRITICAL2023-04-14

Security update for golang-github-prometheus-prometheus

Affected products

ProductStatusVendorPackageEcosystem
golang-github-prometheus-prometheus affected SUSE:Manager Client Tools 15 golang-github-prometheus-prometheus
Upstream advisory

DEBIAN-CVE-2023-1810

Open SourcePoC exploitCRITICAL2023-04-04

DEBIAN-CVE-2023-1810

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1810

GooglePoC exploitCRITICAL2023-04-04

Heap buffer overflow in Visuals in Google Chrome prior to 112.0.5615.49 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2023-1810

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2023-1820

Open SourcePoC exploitCRITICAL2023-04-04

DEBIAN-CVE-2023-1820

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1820

GooglePoC exploitCRITICAL2023-04-04

Heap buffer overflow in Browser History in Google Chrome prior to 112.0.5615.49 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via a crafted HTML page. (Chromium security sever...

CVEs:CVE-2023-1820

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2023-1817

Open SourcePoC exploitCRITICAL2023-04-04

DEBIAN-CVE-2023-1817

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1817

GooglePoC exploitCRITICAL2023-04-04

Insufficient policy enforcement in Intents in Google Chrome on Android prior to 112.0.5615.49 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2023-1817

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2023-1811

Open SourcePoC exploitCRITICAL2023-04-04

DEBIAN-CVE-2023-1811

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1811

GooglePoC exploitCRITICAL2023-04-04

Use after free in Frames in Google Chrome prior to 112.0.5615.49 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2023-1811

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2023-24935

Open SourcePoC exploitMEDIUM2023-04-07

Microsoft Edge (Chromium-based) Spoofing Vulnerability

CVEs:CVE-2023-24935

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

DEBIAN-CVE-2023-1812

Open SourcePoC exploitHIGH2023-04-04

DEBIAN-CVE-2023-1812

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1812

GooglePoC exploitHIGH2023-04-04

Out of bounds memory access in DOM Bindings in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2023-1812

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2023-1822

Open SourcePoC exploitMEDIUM2023-04-04

DEBIAN-CVE-2023-1822

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1822

GooglePoC exploitMEDIUM2023-04-04

Incorrect security UI in Navigation in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to perform domain spoofing via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2023-1822

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2023-1815

Open SourcePoC exploitCRITICAL2023-04-04

DEBIAN-CVE-2023-1815

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1815

GooglePoC exploitCRITICAL2023-04-04

Use after free in Networking APIs in Google Chrome prior to 112.0.5615.49 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: M...

CVEs:CVE-2023-1815

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2023-1823

Open SourcePoC exploitMEDIUM2023-04-04

DEBIAN-CVE-2023-1823

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1823

GooglePoC exploitMEDIUM2023-04-04

Inappropriate implementation in FedCM in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2023-1823

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2023-1819

Open SourcePoC exploitMEDIUM2023-04-04

DEBIAN-CVE-2023-1819

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1819

GooglePoC exploitMEDIUM2023-04-04

Out of bounds read in Accessibility in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2023-1819

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2023-1818

Open SourcePoC exploitCRITICAL2023-04-04

DEBIAN-CVE-2023-1818

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1818

GooglePoC exploitCRITICAL2023-04-04

Use after free in Vulkan in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2023-1818

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2023-1816

Open SourcePoC exploitMEDIUM2023-04-04

DEBIAN-CVE-2023-1816

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2023-1821

Open SourcePoC exploitMEDIUM2023-04-04

DEBIAN-CVE-2023-1821

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1816

GooglePoC exploitMEDIUM2023-04-04

Incorrect security UI in Picture In Picture in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to potentially perform navigation spoofing via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2023-1816

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2023-1821

GooglePoC exploitMEDIUM2023-04-04

Inappropriate implementation in WebShare in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to potentially hide the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2023-1821

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2023-1813

Open SourcePoC exploitMEDIUM2023-04-04

DEBIAN-CVE-2023-1813

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-1813

GooglePoC exploitMEDIUM2023-04-04

Inappropriate implementation in Extensions in Google Chrome prior to 112.0.5615.49 allowed an attacker who convinced a user to install a malicious extension to bypass file access restrictions via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2023-1813

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2023-30845

GooglePoC exploitCRITICAL2023-04-26

ESPv2 is a service proxy that provides API management capabilities using Google Service Infrastructure. ESPv2 2.20.0 through 2.42.0 contains an authentication bypass vulnerability. API clients can craft a malicious `X-HTTP-Method-Override` header value...

CVEs:CVE-2023-30845

Affected products

ProductStatusVendorPackageEcosystem
espv2 affected google
Upstream advisory

CVE-2023-21097

Open SourcePoC exploitHIGH2023-04-03

In toUriInner of Intent.java, there is a possible way to launch an arbitrary activity due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploita...

CVEs:CVE-2023-21097

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20909

Open SourcePoC exploitHIGH2023-04-03

In multiple functions of RunningTasks.java, there is a possible privilege escalation due to a missing privilege check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for ex...

CVEs:CVE-2023-20909

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21086

Open SourcePoC exploitHIGH2023-04-03

In isToggleable of SecureNfcEnabler.java and SecureNfcPreferenceController.java, there is a possible way to enable NFC from a secondary account due to a permissions bypass. This could lead to local escalation of privilege from the Guest account with no...

CVEs:CVE-2023-21086

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21094

Open SourcePoC exploitHIGH2023-04-03

In sanitize of LayerState.cpp, there is a possible way to take over the screen display and swap the display content due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User...

CVEs:CVE-2023-21094

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-260148146

GoogleCoalition ESS < 30%2023-04-01

ASB-A-260148146

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-259983537

GoogleCoalition ESS < 30%2023-04-01

ASB-A-259983537

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

DEBIAN-CVE-2023-2137

Open SourceCoalition ESS < 30%CRITICAL2023-04-19

DEBIAN-CVE-2023-2137

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2023-2137

GoogleCoalition ESS < 30%CRITICAL2023-04-18

Heap buffer overflow in sqlite in Google Chrome prior to 112.0.5615.137 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2023-2137

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

ASB-A-254445909

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-254445909

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2023-21096

Open SourceCoalition ESS < 30%CRITICAL2023-04-03

In OnWakelockReleased of attribution_processor.cc, there is a use after free that could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12 A...

CVEs:CVE-2023-21096

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-264692298

GoogleCoalition ESS < 30%NONE2023-04-01

ASB-A-264692298

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

ASB-A-259984559

GoogleCoalition ESS < 30%2023-04-01

ASB-A-259984559

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2023-1913

GoogleCoalition ESS < 30%HIGH2023-04-06

The Maps Widget for Google Maps for WordPress is vulnerable to Stored Cross-Site Scripting via widget settings in versions up to, and including, 4.24 due to insufficient input sanitization and output escaping. This makes it possible for authenticated a...

CVEs:CVE-2023-1913

Affected products

ProductStatusVendorPackageEcosystem
maps_widget_for_google_maps affected webfactoryltd
Upstream advisory

CVE-2023-21479

Open SourceCoalition ESS < 30%MEDIUM2023-04-03

Improper authorization in Smart suggestions prior to SMR Apr-2023 Release 1 in Android 13 and 4.1.01.0 in Android 12 allows remote attackers to register a schedule.

CVEs:CVE-2023-21479

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
smart_suggestions affected samsung
Upstream advisory

OESA-2023-1255

Open SourceCoalition ESS < 30%CRITICAL2023-04-26

protobuf-c security update

Affected products

ProductStatusVendorPackageEcosystem
protobuf-c affected openEuler:20.03-LTS-SP1 protobuf-c
Upstream advisory

OESA-2023-1256

Open SourceCoalition ESS < 30%CRITICAL2023-04-26

protobuf-c security update

Affected products

ProductStatusVendorPackageEcosystem
protobuf-c affected openEuler:20.03-LTS-SP3 protobuf-c
Upstream advisory

SUSE-SU-2023:1979-1

Open SourceCoalition ESS < 30%CRITICAL2023-04-25

Security update for protobuf-c

Affected products

ProductStatusVendorPackageEcosystem
protobuf-c affected SUSE:Linux Enterprise High Performance Computing 15 SP1-LTSS protobuf-c
protobuf-c affected SUSE:Linux Enterprise Server 15 SP1-LTSS protobuf-c
protobuf-c affected SUSE:Linux Enterprise Server for SAP Applications 15 SP1 protobuf-c
Upstream advisory

AZL-26159

Open SourceCoalition ESS < 30%CRITICAL2023-04-13

CVE-2022-48468 affecting package protobuf-c for versions less than 1.4.1-1

Affected products

ProductStatusVendorPackageEcosystem
protobuf-c affected Azure Linux:2 protobuf-c
Upstream advisory

DEBIAN-CVE-2022-48468

Open SourceCoalition ESS < 30%CRITICAL2023-04-13

DEBIAN-CVE-2022-48468

Affected products

ProductStatusVendorPackageEcosystem
libsignal-protocol-c affected Debian:11 libsignal-protocol-c
libsignal-protocol-c affected Debian:12 libsignal-protocol-c
libsignal-protocol-c affected Debian:13 libsignal-protocol-c
libsignal-protocol-c affected Debian:14 libsignal-protocol-c
protobuf-c affected Debian:11 protobuf-c
protobuf-c affected Debian:12 protobuf-c
protobuf-c affected Debian:13 protobuf-c
protobuf-c affected Debian:14 protobuf-c
Upstream advisory

CVE-2022-48468

Open SourceCoalition ESS < 30%CRITICAL2023-04-13

protobuf-c before 1.4.1 has an unsigned integer overflow in parse_required_member.

CVEs:CVE-2022-48468

Affected products

ProductStatusVendorPackageEcosystem
protobuf-c affected protobuf-c_project
Upstream advisory

CVE-2023-21472

Open SourceCoalition ESS < 30%CRITICAL2023-04-03

Improper input validation with Exynos Fastboot USB Interface prior to SMR Apr-2023 Release 1 allows a physical attacker to execute arbitrary code in bootloader.

CVEs:CVE-2023-21472

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2023-21473

Open SourceCoalition ESS < 30%CRITICAL2023-04-03

Improper input validation with Exynos Fastboot USB Interface prior to SMR Apr-2023 Release 1 allows a physical attacker to execute arbitrary code in bootloader.

CVEs:CVE-2023-21473

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2023-20941

Open SourceCoalition ESS < 30%HIGH2023-04-03

In acc_ctrlrequest_composite of f_accessory.c, there is a possible out of bounds write due to a missing bounds check. This could lead to physical escalation of privilege with no additional execution privileges needed. User interaction is needed for exp...

CVEs:CVE-2023-20941

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-264029575

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-264029575

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2023-21085

Open SourceCoalition ESS < 30%HIGH2023-04-03

In nci_snd_set_routing_cmd of nci_hmsgs.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not need...

CVEs:CVE-2023-21085

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21477

Open SourceCoalition ESS < 30%HIGH2023-04-03

Access of Memory Location After End of Buffer vulnerability in TIGERF trustlet prior to SMR Apr-2023 Release 1 allows local attackers to access protected data.

CVEs:CVE-2023-21477

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2023-21468

Open SourceCoalition ESS < 30%HIGH2023-04-03

Improper access control vulnerability in Telephony prior to SMR Apr-2023 Release 1 allows attackers to access files with escalated permission.

CVEs:CVE-2023-21468

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2023-21478

Open SourceCoalition ESS < 30%MEDIUM2023-04-03

Improper input validation vulnerability in TIGERF trustlet prior to SMR Apr-2023 Release 1 allows local attackers to access protected data.

CVEs:CVE-2023-21478

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2023-21469

Open SourceCoalition ESS < 30%MEDIUM2023-04-03

Improper access control vulnerability in SLocation prior to SMR Apr-2022 Release 1 allows local attackers to get device location information using com.samsung.android.wifi.GEOFENCE action.

CVEs:CVE-2023-21469

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2023-21470

Open SourceCoalition ESS < 30%MEDIUM2023-04-03

Improper access control vulnerability in SLocation prior to SMR Apr-2022 Release 1 allows local attackers to get device location information using com.samsung.android.wifi.NETWORK_LOCATION action.

CVEs:CVE-2023-21470

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2023-21474

Open SourceCoalition ESS < 30%HIGH2023-04-03

Intent redirection vulnerability in SecSettings prior to SMR Apr-2022 Release 1 allows attackers to access arbitrary file with system privilege.

CVEs:CVE-2023-21474

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2023-21093

Open SourceCoalition ESS < 30%HIGH2023-04-03

In extractRelativePath of FileUtils.java, there is a possible way to access files in a directory belonging to other applications due to a path traversal error. This could lead to local escalation of privilege with no additional execution privileges nee...

CVEs:CVE-2023-21093

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21098

Open SourceCoalition ESS < 30%HIGH2023-04-03

In multiple functions of AccountManagerService.java, there is a possible loading of arbitrary code into the System Settings app due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. U...

CVEs:CVE-2023-21098

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21088

Open SourceCoalition ESS < 30%HIGH2023-04-03

In deliverOnFlushComplete of LocationProviderManager.java, there is a possible way to bypass background activity launch restrictions due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privile...

CVEs:CVE-2023-21088

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21081

Open SourceCoalition ESS < 30%HIGH2023-04-03

In multiple functions of PackageInstallerService.java and related files, there is a possible way to bypass background activity launch restrictions due to a logic error in the code. This could lead to local escalation of privilege with no additional exe...

CVEs:CVE-2023-21081

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20666

Open SourceCoalition ESS < 30%HIGH2023-04-06

In display drm, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07310651; Is...

CVEs:CVE-2023-20666

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20670

Open SourceCoalition ESS < 30%HIGH2023-04-06

In audio, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07648710; Issue ID...

CVEs:CVE-2023-20670

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20682

Open SourceCoalition ESS < 30%HIGH2023-04-06

In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07441605; Issue ID: AL...

CVEs:CVE-2023-20682

Affected products

ProductStatusVendorPackageEcosystem
android affected google
linux_kernel affected linux
yocto affected yoctoproject
Upstream advisory

CVE-2023-20659

Open SourceCoalition ESS < 30%HIGH2023-04-06

In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588413; Issue ID:...

CVEs:CVE-2023-20659

Affected products

ProductStatusVendorPackageEcosystem
android affected google
linux_kernel affected linux
yocto affected yoctoproject
Upstream advisory

CVE-2023-20661

Open SourceCoalition ESS < 30%HIGH2023-04-06

In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07560782; Issue ID: AL...

CVEs:CVE-2023-20661

Affected products

ProductStatusVendorPackageEcosystem
android affected google
linux_kernel affected linux
yocto affected yoctoproject
Upstream advisory

CVE-2023-20662

Open SourceCoalition ESS < 30%HIGH2023-04-06

In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07560765; Issue ID: AL...

CVEs:CVE-2023-20662

Affected products

ProductStatusVendorPackageEcosystem
android affected google
linux_kernel affected linux
yocto affected yoctoproject
Upstream advisory

CVE-2023-20663

Open SourceCoalition ESS < 30%HIGH2023-04-06

In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07560741; Issue ID: AL...

CVEs:CVE-2023-20663

Affected products

ProductStatusVendorPackageEcosystem
android affected google
linux_kernel affected linux
yocto affected yoctoproject
Upstream advisory

CVE-2023-20656

Open SourceCoalition ESS < 30%HIGH2023-04-03

In geniezone, there is a possible out of bounds write due to a logic error. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07571494; Issue ID: ALP...

CVEs:CVE-2023-20656

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21099

Open SourceCoalition ESS < 30%HIGH2023-04-03

In multiple methods of PackageInstallerSession.java, there is a possible way to start foreground services from the background due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges nee...

CVEs:CVE-2023-21099

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21100

Open SourceCoalition ESS < 30%HIGH2023-04-03

In inflate of inflate.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: An...

CVEs:CVE-2023-21100

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-267957665

GoogleCoalition ESS < 30%2023-04-01

ASB-A-267957665

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2023-20665

Open SourceCoalition ESS < 30%MEDIUM2023-04-06

In ril, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628604; Issue ID: AL...

CVEs:CVE-2023-20665

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20674

Open SourceCoalition ESS < 30%MEDIUM2023-04-06

In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588569; Issue ID: A...

CVEs:CVE-2023-20674

Affected products

ProductStatusVendorPackageEcosystem
android affected google
linux_kernel affected linux
yocto affected yoctoproject
Upstream advisory

CVE-2023-20675

Open SourceCoalition ESS < 30%MEDIUM2023-04-06

In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588569; Issue ID: A...

CVEs:CVE-2023-20675

Affected products

ProductStatusVendorPackageEcosystem
android affected google
linux_kernel affected linux
yocto affected yoctoproject
Upstream advisory

CVE-2023-20676

Open SourceCoalition ESS < 30%MEDIUM2023-04-06

In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588569; Issue ID: A...

CVEs:CVE-2023-20676

Affected products

ProductStatusVendorPackageEcosystem
android affected google
linux_kernel affected linux
yocto affected yoctoproject
Upstream advisory

CVE-2023-20677

Open SourceCoalition ESS < 30%MEDIUM2023-04-06

In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588413; Issue ID: A...

CVEs:CVE-2023-20677

Affected products

ProductStatusVendorPackageEcosystem
android affected google
linux_kernel affected linux
yocto affected yoctoproject
Upstream advisory

CVE-2023-20679

Open SourceCoalition ESS < 30%MEDIUM2023-04-06

In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588413; Issue ID: ...

CVEs:CVE-2023-20679

Affected products

ProductStatusVendorPackageEcosystem
android affected google
linux_kernel affected linux
yocto affected yoctoproject
Upstream advisory

CVE-2023-20681

Open SourceCoalition ESS < 30%HIGH2023-04-06

In adsp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07696134; Issue ...

CVEs:CVE-2023-20681

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20688

Open SourceCoalition ESS < 30%MEDIUM2023-04-06

In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07441821; Issue ID: ...

CVEs:CVE-2023-20688

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20658

Open SourceCoalition ESS < 30%HIGH2023-04-06

In isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07537393; Issue ID: ...

CVEs:CVE-2023-20658

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20660

Open SourceCoalition ESS < 30%HIGH2023-04-06

In wlan, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588383; Issue ID: ALPS...

CVEs:CVE-2023-20660

Affected products

ProductStatusVendorPackageEcosystem
android affected google
linux_kernel affected linux
yocto affected yoctoproject
Upstream advisory

CVE-2021-0872

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgeRGXKickVRDM of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privilege...

CVEs:CVE-2021-0872

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0873

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgeRGXKickRS of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privileges ...

CVEs:CVE-2021-0873

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0874

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgeDevicememHistorySparseChange of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional ex...

CVEs:CVE-2021-0874

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0875

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgeChangeSparseMem of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privi...

CVEs:CVE-2021-0875

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0878

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgeServerSyncGetStatus of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution p...

CVEs:CVE-2021-0878

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0879

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgeRGXTDMSubmitTransfer of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution ...

CVEs:CVE-2021-0879

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0880

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgeRGXKickTA3D of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privilege...

CVEs:CVE-2021-0880

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0881

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgeRGXKickCDM of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privileges...

CVEs:CVE-2021-0881

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0882

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgeRGXKickSync of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privilege...

CVEs:CVE-2021-0882

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0883

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgeCacheOpQueue of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privileg...

CVEs:CVE-2021-0883

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0884

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgePhysmemImportSparseDmaBuf of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execu...

CVEs:CVE-2021-0884

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0885

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgeSyncPrimOpTake of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privil...

CVEs:CVE-2021-0885

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20652

Open SourceCoalition ESS < 30%HIGH2023-04-03

In keyinstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628168; Iss...

CVEs:CVE-2023-20652

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20653

Open SourceCoalition ESS < 30%HIGH2023-04-03

In keyinstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628168; Iss...

CVEs:CVE-2023-20653

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20654

Open SourceCoalition ESS < 30%HIGH2023-04-03

In keyinstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628168; Iss...

CVEs:CVE-2023-20654

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20657

Open SourceCoalition ESS < 30%HIGH2023-04-03

In mtee, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07571485; Issue ID:...

CVEs:CVE-2023-20657

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-267955234

GoogleCoalition ESS < 30%2023-04-01

ASB-A-267955234

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-267955236

GoogleCoalition ESS < 30%2023-04-01

ASB-A-267955236

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-267959360

GoogleCoalition ESS < 30%2023-04-01

ASB-A-267959360

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-267959361

GoogleCoalition ESS < 30%2023-04-01

ASB-A-267959361

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-270392711

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270392711

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-270393454

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270393454

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-270395013

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270395013

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-270395803

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270395803

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-270396350

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270396350

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-270396792

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270396792

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-270397970

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270397970

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-270399153

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270399153

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-270399633

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270399633

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-270400061

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270400061

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-270401229

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270401229

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-270401914

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270401914

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2023-20664

Open SourceCoalition ESS < 30%HIGH2023-04-06

In gz, there is a possible double free due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07505952; Issue ID: ALPS07505952.

CVEs:CVE-2023-20664

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21083

Open SourceCoalition ESS < 30%HIGH2023-04-03

In onNullBinding of CallScreeningServiceHelper.java, there is a possible way to record audio without showing a privacy indicator due to a permissions bypass. This could lead to local escalation of privilege with User execution privileges needed. User i...

CVEs:CVE-2023-21083

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21090

Open SourceCoalition ESS < 30%HIGH2023-04-03

In parseUsesPermission of ParsingPackageUtils.java, there is a possible boot loop due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is needed for exploitation.Product...

CVEs:CVE-2023-21090

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0876

Open SourceCoalition ESS < 30%HIGH2023-04-03

In PVRSRVBridgePhysmemNewRamBackedLockedPMR of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional ex...

CVEs:CVE-2021-0876

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20967

Open SourceCoalition ESS < 30%HIGH2023-04-03

In avdt_scb_hdl_pkt_no_frag of avdt_scb_act.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed fo...

CVEs:CVE-2023-20967

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21089

Open SourceCoalition ESS < 30%HIGH2023-04-03

In startInstrumentation of ActivityManagerService.java, there is a possible way to keep the foreground service alive while the app is in the background. This could lead to local escalation of privilege with no additional execution privileges needed. Us...

CVEs:CVE-2023-21089

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21092

Open SourceCoalition ESS < 30%HIGH2023-04-03

In retrieveServiceLocked of ActiveServices.java, there is a possible way to dynamically register a BroadcastReceiver using permissions of System App due to improper input validation. This could lead to local escalation of privilege with no additional e...

CVEs:CVE-2023-21092

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-270400229

GoogleCoalition ESS < 30%HIGH2023-04-01

ASB-A-270400229

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2023-21084

Open SourceCoalition ESS < 30%MEDIUM2023-04-03

In buildPropFile of filesystem.go, there is a possible insecure hash due to an improperly used crypto. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: An...

CVEs:CVE-2023-21084

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21087

Open SourceCoalition ESS < 30%MEDIUM2023-04-03

In PreferencesHelper.java, an uncaught exception may cause the device to get stuck in a boot loop. This could lead to local persistent denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Pro...

CVEs:CVE-2023-21087

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20680

Open SourceCoalition ESS < 30%HIGH2023-04-06

In adsp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07664785; Issue ...

CVEs:CVE-2023-20680

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20935

Open SourceCoalition ESS < 30%MEDIUM2023-04-03

In deserialize of multiple files, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Prod...

CVEs:CVE-2023-20935

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21080

Open SourceCoalition ESS < 30%MEDIUM2023-04-03

In register_notification_rsp of btif_rc.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploit...

CVEs:CVE-2023-21080

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20655

Open SourceCoalition ESS < 30%HIGH2023-04-03

In mmsdk, there is a possible escalation of privilege due to a parcel format mismatch. This could lead to local code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07203022; Issu...

CVEs:CVE-2023-20655

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-267959364

GoogleCoalition ESS < 30%2023-04-01

ASB-A-267959364

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2022-47362

Open SourceCoalition ESS < 30%HIGH2023-04-11

In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.

CVEs:CVE-2022-47362

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-47463

Open SourceCoalition ESS < 30%HIGH2023-04-11

In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.

CVEs:CVE-2022-47463

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-47464

Open SourceCoalition ESS < 30%HIGH2023-04-11

In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.

CVEs:CVE-2022-47464

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-47465

Open SourceCoalition ESS < 30%HIGH2023-04-11

In vdsp service, there is a missing permission check. This could lead to local denial of service in vdsp service.

CVEs:CVE-2022-47465

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-47466

Open SourceCoalition ESS < 30%HIGH2023-04-11

In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.

CVEs:CVE-2022-47466

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-47467

Open SourceCoalition ESS < 30%HIGH2023-04-11

In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.

CVEs:CVE-2022-47467

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-47468

Open SourceCoalition ESS < 30%HIGH2023-04-11

In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.

CVEs:CVE-2022-47468

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20950

Open SourceCoalition ESS < 30%HIGH2023-04-03

In AlarmManagerActivity of AlarmManagerActivity.java, there is a possible way to bypass background activity launch restrictions via a pendingIntent. This could lead to local escalation of privilege with no additional execution privileges needed. User i...

CVEs:CVE-2023-20950

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21091

Open SourceCoalition ESS < 30%MEDIUM2023-04-03

In canDisplayLocalUi of AppLocalePickerActivity.java, there is a possible way to change system app locales due to a missing permission check. This could lead to local denial of service across user boundaries with no additional execution privileges need...

CVEs:CVE-2023-21091

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21082

Open SourceCoalition ESS < 30%MEDIUM2023-04-03

In getNumberFromCallIntent of NewOutgoingCallIntentBroadcaster.java, there is a possible way to enumerate other user's contact phone number due to a confused deputy. This could lead to local information disclosure with User execution privileges needed....

CVEs:CVE-2023-21082

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-21466

Open SourceCoalition ESS < 30%MEDIUM2023-04-03

PendingIntent hijacking vulnerability in CertificatePolicy in framework prior to SMR Apr-2023 Release 1 allows local attackers to access contentProvider without proper permission.

CVEs:CVE-2023-21466

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2023-20684

Open SourceCoalition ESS < 30%HIGH2023-04-06

In vdec, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07671069; Issue ID: ALPS07671069.

CVEs:CVE-2023-20684

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20685

Open SourceCoalition ESS < 30%HIGH2023-04-06

In vdec, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07608575; Issue ID: ALPS07608575.

CVEs:CVE-2023-20685

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20686

Open SourceCoalition ESS < 30%HIGH2023-04-06

In display drm, there is a possible double free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07570826; Issue ID: ALPS07...

CVEs:CVE-2023-20686

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-20687

Open SourceCoalition ESS < 30%HIGH2023-04-06

In display drm, there is a possible double free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07570772; Issue ID: ALPS07...

CVEs:CVE-2023-20687

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2023-29334

Open SourceEPSS <= 49%MEDIUM2023-04-11

Microsoft Edge (Chromium-based) Spoofing Vulnerability

CVEs:CVE-2023-29334

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

CVE-2015-10101

GoogleEPSS <= 49%CRITICAL2023-04-15

A vulnerability classified as problematic was found in Google Analytics Top Content Widget Plugin up to 1.5.6 on WordPress. Affected by this vulnerability is an unknown functionality of the file class-tgm-plugin-activation.php. The manipulation leads t...

CVEs:CVE-2015-10101

Affected products

ProductStatusVendorPackageEcosystem
google_analytics_top_content_widget affected google_analytics_top_content_widget_project
Upstream advisory

CVE-2023-22698

GoogleEPSS <= 49%CRITICAL2023-04-23

Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in Jason Bobich Theme Blvd Responsive Google Maps plugin <= 1.0.2 versions.

CVEs:CVE-2023-22698

Affected products

ProductStatusVendorPackageEcosystem
theme_blvd_responsive_google_maps affected theme_blvd_responsive_google_maps_project
Upstream advisory

CVE-2023-23827

GoogleEPSS <= 49%CRITICAL2023-04-23

Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in Google Maps v3 Shortcode plugin <= 1.2.1 versions.

CVEs:CVE-2023-23827

Affected products

ProductStatusVendorPackageEcosystem
google_maps_v3_shortcode affected google_maps_v3_shortcode_project
Upstream advisory

CVE-2023-23710

GoogleEPSS <= 49%CRITICAL2023-04-25

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) plugin <= 7.5.14 versions.

CVEs:CVE-2023-23710

Affected products

ProductStatusVendorPackageEcosystem
wordpress_social_login_and_register_\(discord\,_google\,_twitter\,_linkedin\) affected miniorange
Upstream advisory

CVE-2023-23801

GoogleEPSS <= 49%HIGH2023-04-06

Cross-Site Request Forgery (CSRF) vulnerability in HasThemes Really Simple Google Tag Manager plugin <= 1.0.6 versions.

CVEs:CVE-2023-23801

Affected products

ProductStatusVendorPackageEcosystem
really_simple_google_tag_manager affected hasthemes
Upstream advisory

PUB-A-269657712

GoogleEPSS <= 49%MEDIUM2023-04-01

PUB-A-269657712

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2023-22808

Open SourceEPSS <= 49%LOW2023-04-11

An issue was discovered in the Arm Android Gralloc Module. A non-privileged user can read a small portion of the allocator process memory. This affects Bifrost r24p0 through r41p0 before r42p0, Valhall r24p0 through r41p0 before r42p0, and Avalon r41p0...

CVEs:CVE-2023-22808

Affected products

ProductStatusVendorPackageEcosystem
avalon_android_gralloc_module affected arm
bifrost_android_gralloc_module affected arm
valhall_android_gralloc_module affected arm
Upstream advisory

DLA-3395-2

Open SourceAll remaining2023-04-20

golang-1.11 - regression update

Affected products

ProductStatusVendorPackageEcosystem
golang-1.11 affected Debian:10 golang-1.11
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.