[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Sep 4 09:12:26 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
77ce09f9 by security tracker role at 2023-09-04T08:12:13+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,125 @@
+CVE-2023-4749 (A vulnerability, which was classified as critical, was found in Source ...)
+	TODO: check
+CVE-2023-4747 (A vulnerability classified as critical was found in DedeCMS 5.7.110. T ...)
+	TODO: check
+CVE-2023-4746 (A vulnerability classified as critical has been found in TOTOLINK N200 ...)
+	TODO: check
+CVE-2023-4745 (A vulnerability was found in Beijing Baichuo Smart S45F Multi-Service  ...)
+	TODO: check
+CVE-2023-4744 (A vulnerability was found in Tenda AC8 16.03.34.06_cn_TDC01. It has be ...)
+	TODO: check
+CVE-2023-4743 (A vulnerability was found in Dreamer CMS up to 4.1.3. It has been clas ...)
+	TODO: check
+CVE-2023-4742 (A vulnerability was found in IBOS OA 4.5.5 and classified as critical. ...)
+	TODO: check
+CVE-2023-4741 (A vulnerability has been found in IBOS OA 4.5.5 and classified as crit ...)
+	TODO: check
+CVE-2023-38554 (In wcn bsp driver, there is a possible out of bounds write due to a mi ...)
+	TODO: check
+CVE-2023-38553 (In gnss service, there is a possible out of bounds write due to a miss ...)
+	TODO: check
+CVE-2023-38468 (In urild service, there is a possible out of bounds write due to a mis ...)
+	TODO: check
+CVE-2023-38467 (In urild service, there is a possible out of bounds write due to a mis ...)
+	TODO: check
+CVE-2023-38466 (In ims service, there is a possible missing permission check. This cou ...)
+	TODO: check
+CVE-2023-38465 (In ims service, there is a possible missing permission check. This cou ...)
+	TODO: check
+CVE-2023-38464 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38463 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38462 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38461 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38460 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38459 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38458 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38457 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38456 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38455 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38454 (In vowifi service, there is a possible missing permission check.This c ...)
+	TODO: check
+CVE-2023-38453 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38452 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38451 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38450 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38449 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38448 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38447 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38446 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38445 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38444 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38443 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38442 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38441 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38440 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38439 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38438 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38437 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-38436 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-33918 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-33917 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-33916 (In vowifiservice, there is a possible missing permission check.This co ...)
+	TODO: check
+CVE-2023-33915 (In LTE protocol stack, there is a possible missing permission check. T ...)
+	TODO: check
+CVE-2023-33914 (In NIA0 algorithm in Security Mode Command, there is a possible missin ...)
+	TODO: check
+CVE-2023-32817 (In gnss service, there is a possible out of bounds read due to imprope ...)
+	TODO: check
+CVE-2023-32816 (In gnss service, there is a possible out of bounds read due to imprope ...)
+	TODO: check
+CVE-2023-32815 (In gnss service, there is a possible out of bounds read due to imprope ...)
+	TODO: check
+CVE-2023-32814 (In gnss service, there is a possible out of bounds read due to imprope ...)
+	TODO: check
+CVE-2023-32813 (In gnss service, there is a possible out of bounds write due to improp ...)
+	TODO: check
+CVE-2023-32812 (In gnss service, there is a possible out of bounds write due to improp ...)
+	TODO: check
+CVE-2023-32811 (In connectivity system driver, there is a possible out of bounds write ...)
+	TODO: check
+CVE-2023-32810 (In bluetooth driver, there is a possible out of bounds read due to imp ...)
+	TODO: check
+CVE-2023-32809 (In bluetooth driver, there is a possible read and write access to regi ...)
+	TODO: check
+CVE-2023-32808 (In bluetooth driver, there is a possible read and write access to regi ...)
+	TODO: check
+CVE-2023-32807 (In wlan service, there is a possible out of bounds read due to imprope ...)
+	TODO: check
+CVE-2023-32806 (In wlan driver, there is a possible out of bounds write due to imprope ...)
+	TODO: check
+CVE-2023-32805 (In power, there is a possible out of bounds write due to an insecure d ...)
+	TODO: check
 CVE-2023-4751 (Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1 ...)
 	- vim <unfixed>
 	NOTE: https://github.com/vim/vim/commit/e1121b139480f53d1b06f84f3e4574048108fa0b (v9.0.1331)
@@ -16938,10 +17060,10 @@ CVE-2022-48455
 	RESERVED
 CVE-2022-48454
 	RESERVED
-CVE-2022-48453
-	RESERVED
-CVE-2022-48452
-	RESERVED
+CVE-2022-48453 (In camera driver, there is a possible out of bounds write due to a mis ...)
+	TODO: check
+CVE-2022-48452 (In Ifaa service, there is a possible missing permission check. This co ...)
+	TODO: check
 CVE-2022-48451 (In bluetooth service, there is a possible out of bounds write due to r ...)
 	NOT-FOR-US: Unisoc
 CVE-2022-48450 (In bluetooth service, there is a possible missing params check.  This  ...)
@@ -46633,10 +46755,10 @@ CVE-2022-47355 (In log service, there is a missing permission check. This could
 	NOT-FOR-US: Unisoc
 CVE-2022-47354 (In log service, there is a missing permission check. This could lead t ...)
 	NOT-FOR-US: Unisoc
-CVE-2022-47353
-	RESERVED
-CVE-2022-47352
-	RESERVED
+CVE-2022-47353 (In vdsp device, there is a possible system crash due to improper input ...)
+	TODO: check
+CVE-2022-47352 (In camera driver, there is a possible out of bounds read due to a miss ...)
+	TODO: check
 CVE-2022-47351 (In camera driver, there is a possible out of bounds read due to a miss ...)
 	NOT-FOR-US: Unisoc
 CVE-2022-47350 (In camera driver, there is a possible out of bounds read due to a miss ...)
@@ -57481,70 +57603,70 @@ CVE-2022-3738 (The vulnerability allows a remote unauthenticated attacker to dow
 	NOT-FOR-US: WAGO
 CVE-2022-3737 (In PHOENIX CONTACT Automationworx Software Suite up to version 1.89 me ...)
 	NOT-FOR-US: PHOENIX
-CVE-2023-20851
-	RESERVED
-CVE-2023-20850
-	RESERVED
-CVE-2023-20849
-	RESERVED
-CVE-2023-20848
-	RESERVED
-CVE-2023-20847
-	RESERVED
-CVE-2023-20846
-	RESERVED
-CVE-2023-20845
-	RESERVED
-CVE-2023-20844
-	RESERVED
-CVE-2023-20843
-	RESERVED
-CVE-2023-20842
-	RESERVED
-CVE-2023-20841
-	RESERVED
-CVE-2023-20840
-	RESERVED
-CVE-2023-20839
-	RESERVED
-CVE-2023-20838
-	RESERVED
-CVE-2023-20837
-	RESERVED
-CVE-2023-20836
-	RESERVED
-CVE-2023-20835
-	RESERVED
-CVE-2023-20834
-	RESERVED
-CVE-2023-20833
-	RESERVED
-CVE-2023-20832
-	RESERVED
-CVE-2023-20831
-	RESERVED
-CVE-2023-20830
-	RESERVED
-CVE-2023-20829
-	RESERVED
-CVE-2023-20828
-	RESERVED
-CVE-2023-20827
-	RESERVED
-CVE-2023-20826
-	RESERVED
-CVE-2023-20825
-	RESERVED
-CVE-2023-20824
-	RESERVED
-CVE-2023-20823
-	RESERVED
-CVE-2023-20822
-	RESERVED
-CVE-2023-20821
-	RESERVED
-CVE-2023-20820
-	RESERVED
+CVE-2023-20851 (In stc, there is a possible out of bounds read due to a race condition ...)
+	TODO: check
+CVE-2023-20850 (In imgsys_cmdq, there is a possible out of bounds write due to a missi ...)
+	TODO: check
+CVE-2023-20849 (In imgsys_cmdq, there is a possible use after free due to a missing va ...)
+	TODO: check
+CVE-2023-20848 (In imgsys_cmdq, there is a possible out of bounds read due to a missin ...)
+	TODO: check
+CVE-2023-20847 (In imgsys_cmdq, there is a possible out of bounds read due to a missin ...)
+	TODO: check
+CVE-2023-20846 (In imgsys_cmdq, there is a possible out of bounds read due to a missin ...)
+	TODO: check
+CVE-2023-20845 (In imgsys, there is a possible out of bounds read due to a missing val ...)
+	TODO: check
+CVE-2023-20844 (In imgsys_cmdq, there is a possible out of bounds read due to a missin ...)
+	TODO: check
+CVE-2023-20843 (In imgsys_cmdq, there is a possible out of bounds read due to a missin ...)
+	TODO: check
+CVE-2023-20842 (In imgsys_cmdq, there is a possible out of bounds write due to a missi ...)
+	TODO: check
+CVE-2023-20841 (In imgsys, there is a possible out of bounds write due to a missing va ...)
+	TODO: check
+CVE-2023-20840 (In imgsys, there is a possible out of bounds read and write due to a m ...)
+	TODO: check
+CVE-2023-20839 (In imgsys, there is a possible out of bounds read due to a missing val ...)
+	TODO: check
+CVE-2023-20838 (In imgsys, there is a possible out of bounds read due to a race condit ...)
+	TODO: check
+CVE-2023-20837 (In seninf, there is a possible out of bounds write due to a missing bo ...)
+	TODO: check
+CVE-2023-20836 (In camsys, there is a possible out of bounds read due to a missing bou ...)
+	TODO: check
+CVE-2023-20835 (In camsys, there is a possible use after free due to a race condition. ...)
+	TODO: check
+CVE-2023-20834 (In pda, there is a possible use after free due to a race condition. Th ...)
+	TODO: check
+CVE-2023-20833 (In keyinstall, there is a possible information disclosure due to a mis ...)
+	TODO: check
+CVE-2023-20832 (In gps, there is a possible out of bounds write due to a missing bound ...)
+	TODO: check
+CVE-2023-20831 (In gps, there is a possible out of bounds write due to a missing bound ...)
+	TODO: check
+CVE-2023-20830 (In gps, there is a possible out of bounds write due to a missing bound ...)
+	TODO: check
+CVE-2023-20829 (In gps, there is a possible out of bounds write due to a missing bound ...)
+	TODO: check
+CVE-2023-20828 (In gps, there is a possible out of bounds write due to a missing bound ...)
+	TODO: check
+CVE-2023-20827 (In ims service, there is a possible memory corruption due to a race co ...)
+	TODO: check
+CVE-2023-20826 (In cta, there is a possible information disclosure due to a missing pe ...)
+	TODO: check
+CVE-2023-20825 (In duraspeed, there is a possible information disclosure due to a miss ...)
+	TODO: check
+CVE-2023-20824 (In duraspeed, there is a possible information disclosure due to a miss ...)
+	TODO: check
+CVE-2023-20823 (In cmdq, there is a possible out of bounds read due to an incorrect st ...)
+	TODO: check
+CVE-2023-20822 (In netdagent, there is a possible out of bounds write due to a missing ...)
+	TODO: check
+CVE-2023-20821 (In nvram, there is a possible out of bounds write due to a missing bou ...)
+	TODO: check
+CVE-2023-20820 (In wlan service, there is a possible command injection due to improper ...)
+	TODO: check
 CVE-2023-20819
 	RESERVED
 CVE-2023-20818 (In wlan service, there is a possible out of bounds read due to imprope ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/77ce09f9f638b8810fdeb2dbe57ad5cbfb97c021

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/77ce09f9f638b8810fdeb2dbe57ad5cbfb97c021
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230904/fea50a97/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list