CVE-2023-28572
Published Nov 7, 2023Memory corruption in WLAN HOST while processing the WLAN scan descriptor list.
Loading current evidence
Historical archive search
Search decades of CVEs by regex, severity, date, CWE, vendor/product tags, KEV, PoC, and other evidence.
Results
169 results · Sorted by Highest Buzz score first
Memory corruption in WLAN HOST while processing the WLAN scan descriptor list.
Transient DOS in Modem while triggering a camping on an 5G cell.
Transient DOS in Bluetooth HOST while passing descriptor to validate the blacklisted BT keyboard.
Memory corruption in Audio during playback session with audio effects enabled.
Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request.
Memory Corruption due to improper validation of array index in Linux while updating adn record.
Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service.
Information disclosure in Automotive multimedia due to buffer over-read.
In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a function called cam_mem_get_cpu_buf to get the kernel va to use, a…
The buffer obtained from kernel APIs such as cam_mem_get_cpu_buf() may be readable/writable in userspace after kernel accesses it. In other words, user mode may race and modify th…
The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.
Cryptographic issue in HLOS as derived keys used to encrypt/decrypt information is present on stack after use.
Memory Corruption in GPS HLOS Driver when injectFdclData receives data with invalid data length.
Memory corruption in WLAN while running doDriverCmd for an unspecific command.
Information disclosure in Bluetooth when an GATT packet is received due to improper input validation.
Memory corruption in Trusted Execution Environment while calling service API with invalid address.
Memory corruption in Video while calling APIs with different instance ID than the one received in initialization.
Memory corruption in Linux while calling system configuration APIs.
Memory Corruption in Data Network Stack & Connectivity when sim gets detected on telephony.
Memory Corruption in Linux while processing QcRilRequestImsRegisterMultiIdentityMessage request.
Information disclosure in DSP Services while loading dynamic module.
Information Disclosure in WLAN HOST while sending DPP action frame to peer with an invalid source address.
Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network.
Memory corruption in Linux while sending DRM request.
Transient DOS due to reachable assertion in Modem because of invalid network configuration.
Every filter state lives in the URL so you can bookmark, share, and crawl exact historical slices instead of a client-only search session.
Buzz order uses the latest all-time evidence snapshot, refreshed every two hours. Evidence-bearing CVEs rank first; records without a snapshot continue newest-first.