Development

CVE ID : CVE-2024-53015

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Memory corruption while processing IOCTL command to handle buffers associated with a session.

Severity: 6.6 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2024-53016

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Memory corruption while processing I2C settings in Camera driver.

Severity: 6.6 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2024-53017

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Memory corruption while handling test pattern generator IOCTL command.

Severity: 6.6 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2024-53018

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Memory corruption may occur while processing the OIS packet parser.

Severity: 6.6 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2024-53020

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Information disclosure may occur while decoding the RTP packet with invalid header extension from network.

Severity: 8.2 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2024-53021

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Information disclosure may occur while processing goodbye RTCP packet from network.

Severity: 8.2 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2024-53026

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Information disclosure when an invalid RTCP packet is received during a VoLTE/VoWiFi IMS call.

Severity: 8.2 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2024-53019

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Information disclosure may occur while decoding the RTP packet with improper header length for number of contributing sources.

Severity: 8.2 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-21480

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.

Severity: 8.6 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-21485

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Memory corruption while processing INIT and multimode invoke IOCTL calls on FastRPC.

Severity: 7.8 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-21486

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Memory corruption during dynamic process creation call when client is only passing address and length of shell binary.

Severity: 7.8 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-27029

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Transient DOS while processing the tone measurement response buffer when the response buffer is out of range.

Severity: 7.5 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-27031

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : memory corruption while processing IOCTL commands, when the buffer in write loopback mode is accessed after being freed.

Severity: 7.8 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-31710

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : In engineermode service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed.

Severity: 5.9 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-27038

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : Memory corruption while rendering graphics using Adreno GPU drivers in Chrome.

Severity: 7.5 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-31711

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : In cplog service, there is a possible system crash due to null pointer dereference. This could lead to local denial of service with no additional execution privileges needed.

Severity: 5.1 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-31712

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : In cplog service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed.

Severity: 5.1 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-4567

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : The Post Slider and Post Carousel with Post Vertical Scrolling Widget WordPress plugin before 3.2.10 does not validate and escape some of its Widget options before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-3662

Published : June 3, 2025, 6:15 a.m. | 1 hour, 12 minutes ago

Description : The FancyBox for WordPress plugin before 3.3.6 does not escape captions and titles attributes before using them to populate galleries’ caption fields. The issue was received as a Contributor+ Stored XSS, however one of our researcher (Marc Montpas) escalated it to an Unauthenticated Stored XSS

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…