CVE-2023-42098 – Foxit PDF Reader Annotation Use-After-Free Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2023-42098
Foxit PDF Reader Annotation Use-After-Free Information Disclosure Vulnerability. • https://www.foxit.com/support/security-bulletins.html https://www.zerodayinitiative.com/advisories/ZDI-23-1431 • CWE-416: Use After Free •
CVE-2023-35683
https://notcve.org/view.php?id=CVE-2023-35683
This could lead to local information disclosure with no additional execution privileges needed. • https://android.googlesource.com/platform/packages/providers/MediaProvider/+/23d156ed1bed6d2c2b325f0be540d0afca510c49 https://source.android.com/security/bulletin/2023-09-01 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2023-35680
https://notcve.org/view.php?id=CVE-2023-35680
This could lead to local information disclosure with no additional execution privileges needed. • https://android.googlesource.com/platform/packages/services/Telephony/+/674039e70e1c5bf29b808899ac80c709acc82290 https://source.android.com/security/bulletin/2023-09-01 • CWE-470: Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') •
CVE-2023-35679
https://notcve.org/view.php?id=CVE-2023-35679
In MtpPropertyValue of MtpProperty.h, there is a possible out of bounds read due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. • https://android.googlesource.com/platform/frameworks/av/+/ea6131efa76a0b2a12724ffd157909e2c6fb4036 https://source.android.com/security/bulletin/2023-09-01 • CWE-125: Out-of-bounds Read •
CVE-2023-35675
https://notcve.org/view.php?id=CVE-2023-35675
This could lead to local information disclosure with no additional execution privileges needed. • https://android.googlesource.com/platform/frameworks/base/+/c1cf4b9746c9641190730172522324ccd5b8c914 https://source.android.com/security/bulletin/2023-09-01 •