mirror of
https://github.com/netbirdio/advisory-database.git
synced 2026-05-22 18:04:22 -07:00
Advisory Database Sync
This commit is contained in:
@@ -45,6 +45,10 @@
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/7LSPIOMIJYTLZB6QKPQVVAYSUETUWKPF/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LBVHM4LGMFIHBN4UBESYRFMYX3WUICV5/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lore.kernel.org/netdev/20231211083758.1082853-1-jiri@resnulli.us/"
|
||||
|
||||
@@ -25,6 +25,10 @@
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7LSPIOMIJYTLZB6QKPQVVAYSUETUWKPF/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LBVHM4LGMFIHBN4UBESYRFMYX3WUICV5/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lore.kernel.org/netdev/1705715319-19199-1-git-send-email-sharath.srinivasan%40oracle.com/"
|
||||
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-292c-8vv7-pg3v",
|
||||
"modified": "2024-02-06T06:30:31Z",
|
||||
"published": "2024-02-06T06:30:31Z",
|
||||
"aliases": [
|
||||
"CVE-2023-33067"
|
||||
],
|
||||
"details": "Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-33067"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:16:00Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-2vc7-qfwp-f3cw",
|
||||
"modified": "2024-02-06T06:30:32Z",
|
||||
"published": "2024-02-06T06:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2023-43523"
|
||||
],
|
||||
"details": "Transient DOS while processing 11AZ RTT management action frame received through OTA.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-43523"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:16:02Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-33fg-vcj3-g326",
|
||||
"modified": "2024-02-06T06:30:30Z",
|
||||
"published": "2024-02-06T06:30:30Z",
|
||||
"aliases": [
|
||||
"CVE-2023-33049"
|
||||
],
|
||||
"details": "Transient DOS in Multi-Mode Call Processor due to UE failure because of heap leakage.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-33049"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:15:59Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-3mj6-hq84-85g9",
|
||||
"modified": "2024-02-06T06:30:31Z",
|
||||
"published": "2024-02-06T06:30:31Z",
|
||||
"aliases": [
|
||||
"CVE-2023-33076"
|
||||
],
|
||||
"details": "Memory corruption in Core when updating rollback version for TA and OTA feature is enabled.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-33076"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:16:00Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-3wh9-2fg7-9h5g",
|
||||
"modified": "2024-02-06T06:30:31Z",
|
||||
"published": "2024-02-06T06:30:31Z",
|
||||
"aliases": [
|
||||
"CVE-2023-33065"
|
||||
],
|
||||
"details": "Information disclosure in Audio while accessing AVCS services from ADSP payload.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-33065"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:15:59Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-3xhr-vwcx-8p3c",
|
||||
"modified": "2024-02-06T06:30:32Z",
|
||||
"published": "2024-02-06T06:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2023-43533"
|
||||
],
|
||||
"details": "Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-43533"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:16:02Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-4683-q5fv-6j3x",
|
||||
"modified": "2024-02-06T06:30:31Z",
|
||||
"published": "2024-02-06T06:30:31Z",
|
||||
"aliases": [
|
||||
"CVE-2023-33077"
|
||||
],
|
||||
"details": "Memory corruption in HLOS while converting from authorization token to HIDL vector.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-33077"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:16:00Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-52vv-5jc5-5gmv",
|
||||
"modified": "2024-02-06T06:30:31Z",
|
||||
"published": "2024-02-06T06:30:31Z",
|
||||
"aliases": [
|
||||
"CVE-2023-43516"
|
||||
],
|
||||
"details": "Memory corruption when malformed message payload is received from firmware.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-43516"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:16:01Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-7jgr-v7qj-qqxj",
|
||||
"modified": "2024-02-06T06:30:31Z",
|
||||
"published": "2024-02-06T06:30:31Z",
|
||||
"aliases": [
|
||||
"CVE-2023-33068"
|
||||
],
|
||||
"details": "Memory corruption in Audio while processing IIR config data from AFE calibration block.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-33068"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:16:00Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,39 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-7vw2-84h4-6844",
|
||||
"modified": "2024-02-06T06:30:30Z",
|
||||
"published": "2024-02-06T06:30:30Z",
|
||||
"aliases": [
|
||||
"CVE-2024-23304"
|
||||
],
|
||||
"details": "Cybozu KUNAI for Android 3.0.20 to 3.0.21 allows a remote unauthenticated attacker to cause a denial-of-service (DoS) condition by performing certain operations.",
|
||||
"severity": [
|
||||
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-23304"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://cs.cybozu.co.jp/2024/010691.html"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://jvn.jp/en/jp/JVN18743512/"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": null,
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T05:15:10Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-859v-mr3m-wgxq",
|
||||
"modified": "2024-02-06T06:30:31Z",
|
||||
"published": "2024-02-06T06:30:31Z",
|
||||
"aliases": [
|
||||
"CVE-2023-33072"
|
||||
],
|
||||
"details": "Memory corruption in Core while processing control functions.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-33072"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "CRITICAL",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:16:00Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-997r-3g6v-ph4j",
|
||||
"modified": "2024-02-06T06:30:31Z",
|
||||
"published": "2024-02-06T06:30:31Z",
|
||||
"aliases": [
|
||||
"CVE-2023-43517"
|
||||
],
|
||||
"details": "Memory corruption in Automotive Multimedia due to improper access control in HAB.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-43517"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:16:01Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-9w2r-p3qj-g3gm",
|
||||
"modified": "2024-02-06T06:30:32Z",
|
||||
"published": "2024-02-06T06:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2023-43532"
|
||||
],
|
||||
"details": "Memory corruption while reading ACPI config through the user mode app.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-43532"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:16:02Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-cffx-cf3x-mr9h",
|
||||
"modified": "2024-02-06T06:30:32Z",
|
||||
"published": "2024-02-06T06:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2023-43536"
|
||||
],
|
||||
"details": "Transient DOS while parse fils IE with length equal to 1.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-43536"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:16:03Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-fv23-fj7r-w7w4",
|
||||
"modified": "2024-02-06T06:30:32Z",
|
||||
"published": "2024-02-06T06:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2023-43520"
|
||||
],
|
||||
"details": "Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-43520"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:16:01Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-g9xq-vwmw-hprm",
|
||||
"modified": "2024-02-06T06:30:31Z",
|
||||
"published": "2024-02-06T06:30:31Z",
|
||||
"aliases": [
|
||||
"CVE-2023-33058"
|
||||
],
|
||||
"details": "Information disclosure in Modem while processing SIB5.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:L"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-33058"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:15:59Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-gwh8-v9g3-fxxw",
|
||||
"modified": "2024-02-06T06:30:30Z",
|
||||
"published": "2024-02-06T06:30:30Z",
|
||||
"aliases": [
|
||||
"CVE-2023-33046"
|
||||
],
|
||||
"details": "Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-33046"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:15:58Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,38 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-h234-9whq-hx7f",
|
||||
"modified": "2024-02-06T06:30:31Z",
|
||||
"published": "2024-02-06T06:30:31Z",
|
||||
"aliases": [
|
||||
"CVE-2023-33064"
|
||||
],
|
||||
"details": "Transient DOS in Audio when invoking callback function of ASM driver.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-33064"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-02-06T06:15:59Z"
|
||||
}
|
||||
}
|
||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user