CVE-2023-30690
https://notcve.org/view.php?id=CVE-2023-30690
Improper input validation vulnerability in Duo prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities. Una vulnerabilidad de validación de entrada incorrecta en Duo antes de SMR Oct-2023 Release 1 permite a atacantes locales iniciar actividades privilegiadas. • https://security.samsungmobile.com/securityUpdate.smsb?year=2023&month=10 • CWE-20: Improper Input Validation •
CVE-2023-32829
https://notcve.org/view.php?id=CVE-2023-32829
In apusys, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07713478; Issue ID: ALPS07713478. En apusys, existe una posible escritura fuera de límites debido a un desbordamiento de enteros. • https://corp.mediatek.com/product-security-bulletin/October-2023 • CWE-190: Integer Overflow or Wraparound •
CVE-2023-32827
https://notcve.org/view.php?id=CVE-2023-32827
In camera middleware, there is a possible out of bounds write due to a missing input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07993539; Issue ID: ALPS07993539. En camera middleware, existe una posible escritura fuera de límites debido a una validación de entrada faltante. • https://corp.mediatek.com/product-security-bulletin/October-2023 • CWE-20: Improper Input Validation CWE-787: Out-of-bounds Write •
CVE-2023-32826
https://notcve.org/view.php?id=CVE-2023-32826
In camera middleware, there is a possible out of bounds write due to a missing input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07993539; Issue ID: ALPS07993544. En camera middleware, existe una posible escritura fuera de límites debido a una validación de entrada faltante. • https://corp.mediatek.com/product-security-bulletin/October-2023 • CWE-20: Improper Input Validation CWE-787: Out-of-bounds Write •
CVE-2023-32824
https://notcve.org/view.php?id=CVE-2023-32824
In rpmb , there is a possible double free due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07912966; Issue ID: ALPS07912961. En rpmb, existe una posible doble liberación debido a un bloqueo inadecuado. • https://corp.mediatek.com/product-security-bulletin/October-2023 • CWE-415: Double Free •