
CVE-2023-22290
https://notcve.org/view.php?id=CVE-2023-22290
14 Nov 2023 — Uncaught exception for some Intel Unison software may allow an authenticated user to potentially enable denial of service via network access. Una excepción no detectada para algunos software Intel Unison puede permitir que un usuario autenticado habilite potencialmente la denegación de servicio a través del acceso a la red. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00963.html • CWE-248: Uncaught Exception CWE-754: Improper Check for Unusual or Exceptional Conditions •

CVE-2023-22292
https://notcve.org/view.php?id=CVE-2023-22292
14 Nov 2023 — Uncaught exception for some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via local access. Una excepción no detectada para algunos software Intel Unison puede permitir que un usuario autenticado habilite potencialmente la escalada de privilegios a través del acceso local. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00963.html • CWE-248: Uncaught Exception CWE-755: Improper Handling of Exceptional Conditions •

CVE-2023-22285
https://notcve.org/view.php?id=CVE-2023-22285
14 Nov 2023 — Improper access control for some Intel Unison software may allow an unauthenticated user to potentially enable denial of service via network access. Un control de acceso inadecuado para algunos software Intel Unison puede permitir que un usuario no autenticado permita potencialmente la denegación de servicio a través del acceso a la red. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00963.html • CWE-284: Improper Access Control •

CVE-2023-22337
https://notcve.org/view.php?id=CVE-2023-22337
14 Nov 2023 — Improper input validation for some Intel Unison software may allow an unauthenticated user to potentially enable denial of service via network access. La validación de entrada incorrecta para algunos software Intel Unison puede permitir que un usuario no autenticado habilite potencialmente la denegación de servicio a través del acceso a la red. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00963.html • CWE-20: Improper Input Validation •

CVE-2023-36860
https://notcve.org/view.php?id=CVE-2023-36860
14 Nov 2023 — Improper input validation for some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via network access. La validación de entrada incorrecta para algunos software Intel Unison puede permitir que un usuario autenticado habilite potencialmente la escalada de privilegios a través del acceso a la red. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00963.html • CWE-20: Improper Input Validation •

CVE-2023-32825
https://notcve.org/view.php?id=CVE-2023-32825
06 Nov 2023 — In bluethooth service, there is a possible out of bounds reads due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07884130; Issue ID: ALPS07884130. En el servicio Bluetooth, existe una posible lectura fuera de los límites debido a una validación de entrada incorrecta. • https://corp.mediatek.com/product-security-bulletin/November-2023 • CWE-125: Out-of-bounds Read •

CVE-2023-32839
https://notcve.org/view.php?id=CVE-2023-32839
06 Nov 2023 — In dpe, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07262576; Issue ID: ALPS07262576. En dpe, existe una posible escritura fuera de los límites debido a que falta una verificación de rango válido. • https://corp.mediatek.com/product-security-bulletin/November-2023 • CWE-787: Out-of-bounds Write •

CVE-2023-32838
https://notcve.org/view.php?id=CVE-2023-32838
06 Nov 2023 — In dpe, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07310805; Issue ID: ALPS07310805. En dpe, existe una posible escritura fuera de los límites debido a que falta una verificación de rango válido. • https://corp.mediatek.com/product-security-bulletin/November-2023 • CWE-787: Out-of-bounds Write •

CVE-2023-32837 – mtk-jpeg Driver Out-Of-Bounds Read / Write
https://notcve.org/view.php?id=CVE-2023-32837
06 Nov 2023 — In video, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08235273; Issue ID: ALPS08250357. En el vídeo, hay una posible escritura fuera de los límites debido a una comprobación de los límites faltantes. • https://packetstorm.news/files/id/175665 • CWE-787: Out-of-bounds Write •

CVE-2023-32836
https://notcve.org/view.php?id=CVE-2023-32836
06 Nov 2023 — In display, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08126725; Issue ID: ALPS08126725. En la pantalla, hay una posible escritura fuera de los límites debido a un desbordamiento de enteros. • https://corp.mediatek.com/product-security-bulletin/November-2023 • CWE-787: Out-of-bounds Write •