Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-09-13 CVE-2024-29779 Unspecified vulnerability in Google Android
there is a possible escalation of privilege due to an unusual root cause.
local
low complexity
google
7.8
2024-09-13 CVE-2024-44092 Unspecified vulnerability in Google Android
In TBD of TBD, there is a possible LCS signing enforcement missing due to test/debugging code left in a production build.
local
low complexity
google
7.8
2024-09-13 CVE-2024-44093 Out-of-bounds Write vulnerability in Google Android
In ppmp_unprotect_buf of drm/code/drm_fw.c, there is a possible memory corruption due to a logic error in the code.
local
low complexity
google CWE-787
7.8
2024-09-13 CVE-2024-44094 Out-of-bounds Write vulnerability in Google Android
In ppmp_protect_mfcfw_buf of code/drm_fw.c, there is a possible memory corruption due to improper input validation.
local
low complexity
google CWE-787
7.8
2024-09-13 CVE-2024-44095 Out-of-bounds Write vulnerability in Google Android
In ppmp_protect_mfcfw_buf of code/drm_fw.c, there is a possible corrupt memory due to a logic error in the code.
local
low complexity
google CWE-787
7.8
2024-09-13 CVE-2024-44096 Insecure Default Initialization of Resource vulnerability in Google Android
there is a possible arbitrary read due to an insecure default value.
local
low complexity
google CWE-1188
4.4
2024-09-13 CVE-2024-6259 Out-of-bounds Write vulnerability in Zephyrproject Zephyr
BT: HCI: adv_ext_report Improper discarding in adv_ext_report
low complexity
zephyrproject CWE-787
6.5
2024-09-13 CVE-2024-44430 SQL Injection vulnerability in Mayurik Best Free LAW Office Management 1.0
SQL Injection vulnerability in Best Free Law Office Management Software-v1.0 allows an attacker to execute arbitrary code and obtain sensitive information via a crafted payload to the kortex_lite/control/register_case.php interface
network
low complexity
mayurik CWE-89
critical
9.8
2024-09-13 CVE-2024-5931 Out-of-bounds Write vulnerability in Zephyrproject Zephyr
BT: Unchecked user input in bap_broadcast_assistant
low complexity
zephyrproject CWE-787
6.5
2024-09-13 CVE-2024-6135 Divide By Zero vulnerability in Zephyrproject Zephyr
BT:Classic: Multiple missing buf length checks
low complexity
zephyrproject CWE-369
6.5