Linuxfoundation Yocto vulnerabilities

112 known vulnerabilities affecting linuxfoundation/yocto.

Total CVEs
112
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH14MEDIUM93LOW2

Vulnerabilities

Page 5 of 6
CVE-2023-20805MEDIUMCVSS 6.7v4.02023-08-07
CVE-2023-20805 [MEDIUM] CWE-787 CVE-2023-20805: In imgsys, there is a possible out of bounds write due to a missing bounds check. This could lead to In imgsys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07199773; Issue ID: ALPS07326411.
nvd
CVE-2023-20690HIGHCVSS 7.5v4.02023-07-04
CVE-2023-20690 [HIGH] CWE-190 CVE-2023-20690: In wlan firmware, there is possible system crash due to an integer overflow. This could lead to remo In wlan firmware, there is possible system crash due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07664735; Issue ID: ALPS07664735.
nvd
CVE-2023-20691HIGHCVSS 7.5v4.02023-07-04
CVE-2023-20691 [HIGH] CWE-190 CVE-2023-20691: In wlan firmware, there is possible system crash due to an integer overflow. This could lead to remo In wlan firmware, there is possible system crash due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07664731; Issue ID: ALPS07664731.
nvd
CVE-2023-20692HIGHCVSS 7.5v4.02023-07-04
CVE-2023-20692 [HIGH] CWE-755 CVE-2023-20692: In wlan firmware, there is possible system crash due to an uncaught exception. This could lead to re In wlan firmware, there is possible system crash due to an uncaught exception. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07664720; Issue ID: ALPS07664720.
nvd
CVE-2023-20689HIGHCVSS 7.5v4.02023-07-04
CVE-2023-20689 [HIGH] CWE-190 CVE-2023-20689: In wlan firmware, there is possible system crash due to an integer overflow. This could lead to remo In wlan firmware, there is possible system crash due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07664741; Issue ID: ALPS07664741.
nvd
CVE-2023-20693HIGHCVSS 7.5v4.02023-07-04
CVE-2023-20693 [HIGH] CWE-190 CVE-2023-20693: In wlan firmware, there is possible system crash due to an uncaught exception. This could lead to re In wlan firmware, there is possible system crash due to an uncaught exception. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07664711; Issue ID: ALPS07664711.
nvd
CVE-2023-20731MEDIUMCVSS 4.4v3.1v3.3+1 more2023-06-06
CVE-2023-20731 [MEDIUM] CWE-125 CVE-2023-20731: In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to lo In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07573495; Issue ID: ALPS07573495.
nvd
CVE-2023-20740MEDIUMCVSS 6.7v4.02023-06-06
CVE-2023-20740 [MEDIUM] CWE-787 CVE-2023-20740: In vcu, there is a possible memory corruption due to a logic error. This could lead to local escalat In vcu, there is a possible memory corruption due to a logic error. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07559819; Issue ID: ALPS07559840.
nvd
CVE-2023-20738MEDIUMCVSS 6.7v4.02023-06-06
CVE-2023-20738 [MEDIUM] CWE-787 CVE-2023-20738: In vcu, there is a possible out of bounds write due to a missing bounds check. This could lead to lo In vcu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07645149; Issue ID: ALPS07645173.
nvd
CVE-2023-20744MEDIUMCVSS 6.7v4.02023-06-06
CVE-2023-20744 [MEDIUM] CWE-416 CVE-2023-20744: In vcu, there is a possible use after free due to a logic error. This could lead to local escalation In vcu, there is a possible use after free due to a logic error. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07519142; Issue ID: ALPS07519200.
nvd
CVE-2023-20735MEDIUMCVSS 6.7v4.02023-06-06
CVE-2023-20735 [MEDIUM] CWE-787 CVE-2023-20735: In vcu, there is a possible out of bounds write due to a missing bounds check. This could lead to lo In vcu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07645149; Issue ID: ALPS07645178.
nvd
CVE-2023-20747MEDIUMCVSS 4.4v4.02023-06-06
CVE-2023-20747 [MEDIUM] CWE-843 CVE-2023-20747: In vcu, there is a possible memory corruption due to type confusion. This could lead to local denial In vcu, there is a possible memory corruption due to type confusion. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07519103; Issue ID: ALPS07519121.
nvd
CVE-2023-20736MEDIUMCVSS 6.4v4.02023-06-06
CVE-2023-20736 [MEDIUM] CWE-362 CVE-2023-20736: In vcu, there is a possible out of bounds write due to a race condition. This could lead to local es In vcu, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07645149; Issue ID: ALPS07645189.
nvd
CVE-2023-20737MEDIUMCVSS 6.7v4.02023-06-06
CVE-2023-20737 [MEDIUM] CWE-667 CVE-2023-20737: In vcu, there is a possible use after free due to improper locking. This could lead to local escalat In vcu, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07645149; Issue ID: ALPS07645167.
nvd
CVE-2023-20732MEDIUMCVSS 6.7v3.1v3.3+1 more2023-06-06
CVE-2023-20732 [MEDIUM] CWE-787 CVE-2023-20732: In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to lo In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07573480; Issue ID: ALPS07573480.
nvd
CVE-2023-20734MEDIUMCVSS 6.7v4.02023-06-06
CVE-2023-20734 [MEDIUM] CWE-787 CVE-2023-20734: In vcu, there is a possible out of bounds write due to a missing bounds check. This could lead to lo In vcu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07645149; Issue ID: ALPS07645184.
nvd
CVE-2023-20712MEDIUMCVSS 6.7v4.02023-06-06
CVE-2023-20712 [MEDIUM] CWE-787 CVE-2023-20712: In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to l In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07796914; Issue ID: ALPS07796914.
nvd
CVE-2023-20743MEDIUMCVSS 6.7v4.02023-06-06
CVE-2023-20743 [MEDIUM] CWE-667 CVE-2023-20743: In vcu, there is a possible out of bounds write due to improper locking. This could lead to local es In vcu, there is a possible out of bounds write due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07519142; Issue ID: ALPS07519142.
nvd
CVE-2023-20715MEDIUMCVSS 6.7v4.02023-06-06
CVE-2023-20715 [MEDIUM] CWE-787 CVE-2023-20715: In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to l In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07796900; Issue ID: ALPS07796900.
nvd
CVE-2023-20728MEDIUMCVSS 4.4v3.1v3.3+1 more2023-06-06
CVE-2023-20728 [MEDIUM] CWE-125 CVE-2023-20728: In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to lo In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07573603; Issue ID: ALPS07573603.
nvd