Author: Angelo Barbosa

CVE-2023-42718 | Unisoc S8000 Dialer information disclosure

A vulnerability has been found in Unisoc SC7731E, SC9832E, SC9863A, T310, T606, T612, T616, T610, T618, T760, T770, T820 and S8000 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Dialer. The manipulation leads to information disclosure. This vulnerability is known as CVE-2023-42718. An attack has to be approached locally. There is no exploit...

Read More

CVE-2023-49947 | Forgejo up to 1.20.5 Basic Authentication improper authentication

A vulnerability, which was classified as critical, was found in Forgejo up to 1.20.5. Affected is an unknown function of the component Basic Authentication. The manipulation leads to improper authentication. This vulnerability is traded as CVE-2023-49947. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2023-49287 | cxong TinyDir up to 1.2.5 tinydir_file_open buffer overflow (GHSA-jf5r-wgf4-qhxf)

A vulnerability, which was classified as critical, has been found in cxong TinyDir up to 1.2.5. This issue affects the function tinydir_file_open. The manipulation leads to buffer overflow. The identification of this vulnerability is CVE-2023-49287. It is possible to launch the attack on the local host. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2023-42679 | Unisoc S8000 GPU Driver out-of-bounds write

A vulnerability classified as critical was found in Unisoc SC9863A, T310, T606, T612, T616, T610, T618, T760, T770, T820 and S8000. This vulnerability affects unknown code of the component GPU Driver. The manipulation leads to out-of-bounds write. This vulnerability was named CVE-2023-42679. Attacking locally is a requirement. There is no exploit...

Read More

CVE-2023-42715 | Unisoc S8000 Telephony Service information disclosure

A vulnerability classified as problematic has been found in Unisoc SC7731E, SC9832E, SC9863A, T310, T606, T612, T616, T610, T618, T760, T770, T820 and S8000. This affects an unknown part of the component Telephony Service. The manipulation leads to information disclosure. This vulnerability is uniquely identified as CVE-2023-42715. Local access is required to approach this attack. There is no exploit...

Read More