Security Vulnerabilities
- CVEs Published In April 2024
Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR.
Transient DOS while processing DL NAS Transport message when message ID is not defined in the 3GPP specification.
Transient DOS while processing DL NAS TRANSPORT message with payload length 0.
Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to AFE calibration command.
Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.
Memory corruption in SPS Application while requesting for public key in sorter TA.
Memory corruption while processing finish_sign command to pass a rsp buffer.
Missing Authorization vulnerability in Averta Shortcodes and extra features for Phlox theme auxin-elements.This issue affects Shortcodes and extra features for Phlox theme: from n/a through 2.15.7.
netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /include/authrp.php.
netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /WebPages/applyhardware.php.