ENISA EUVD · EUVD-2023-28087Official EUVD mapping0 linked advisory records.
Official EUVD record ↗BSI · German · WID-SEC-2023-2890Microsoft Windows: Mehrere SchwachstellenEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in verschiedenen Versionen von Microsoft Windows und Microsoft Windows Server ausnutzen, um seine Privilegien zu erhöhen, um beliebigen Code auszuführen, um Informationen offenzulegen, Sicherheitsmechanismen zu umgehen und um einen Denial of Service Zustand herbeizuführen.
Official advisory ↗BSI · German · WID-SEC-2025-1944Android Patchday September 2025: Multiple VulnerabilitiesEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in Google Android ausnutzen, um seine Privilegien zu erhöhen, beliebigen Code auszuführen, einen Denial-of-Service-Zustand zu verursachen oder andere nicht näher spezifizierte Angriffe durchzuführen.
Official advisory ↗BSI · German · WID-SEC-2024-1226Red Hat OpenShift: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Red Hat OpenShift ausnutzen, um Dateien zu manipulieren, einen Denial-of-Service-Zustand zu verursachen, beliebigen Code auszuführen, vertrauliche Informationen offenzulegen, seine Privilegien zu erweitern oder um weitere nicht spezifizierte Angriffe auszuführen.
Official advisory ↗BSI · German · WID-SEC-2025-1476Samsung Android: Mehrere SchwachstellenEin lokaler Angreifer kann mehrere Schwachstellen in Samsung Android ausnutzen, um seine Privilegien zu erhöhen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, vertrauliche Informationen preiszugeben oder einen Denial-of-Service-Zustand zu verursachen.
Official advisory ↗BSI · German · WID-SEC-2023-3043Bluetooth Spezifikation: Schwachstelle ermöglicht Umgehen von SicherheitsvorkehrungenEin entfernter, anonymer Angreifer kann eine Schwachstelle in der Bluetooth Spezifikation ausnutzen, um Sicherheitsvorkehrungen zu umgehen.
Official advisory ↗Cyber Security Agency of Singapore · English · CSA-SB-20231129Security Bulletin 29 Nov 2023The Cyber Security Agency of Singapore included this CVE in its official Security Bulletin 29 Nov 2023, published on 29 November 2023. Open the linked bulletin for the product, severity and reference information published in that issue.
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0750Multiples vulnérabilités dans Google AndroidGoogle Android. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et une atteinte à la confidentialité des données.
Google indique que les vulnérabilités CVE-2025-38352 et CVE-2025-48543 sont activement exploitées.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Google Android du 01 septembre 2025
https://source.android.com/docs/security/bulletin/2025-09-01?hl=fr
Référence CVE CVE-2021-39810
https://www.cve.org/CVERecord?id=CVE-2021-39810
Référence CVE CVE-2023-24023
https://www.cve.org/CVERecord?id=CVE-2023-24023
Référence CVE CVE-2024-47898
https://www.cve.org/CVERecord?id=CVE-2024-47898
Référence CVE CVE-2024-47899
https://www.cve.org/CVERecord?id=CVE-2024-47899
Référence CVE CVE-2024-49714
https://www.cve.org/CVERecord?id=CVE-2024-49714
Référence CVE CVE-2024-7881
https://www.cve.org/CVERecord?id=CVE-2024-7881
Référence CVE CVE-2025-0076
https://www.cve.org/CVERecord?id=CVE-2025-0076
Référence CVE CVE-2025-0089
https://www.cve.org/CVERecord?id=CVE-2025-0089
Référence CVE CVE-2025-021701
https://www.cve.org/CVERecord?id=CVE-2025-021701
Référence CVE CVE-2025-0467
https://www.cve.org/CVERecord?id=CVE-2
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0693Multiples vulnérabilités dans le noyau Linux de SUSEord?id=CVE-2022-48858
Référence CVE CVE-2022-48859
https://www.cve.org/CVERecord?id=CVE-2022-48859
Référence CVE CVE-2022-48860
https://www.cve.org/CVERecord?id=CVE-2022-48860
Référence CVE CVE-2022-48861
https://www.cve.org/CVERecord?id=CVE-2022-48861
Référence CVE CVE-2022-48862
https://www.cve.org/CVERecord?id=CVE-2022-48862
Référence CVE CVE-2022-48863
https://www.cve.org/CVERecord?id=CVE-2022-48863
Référence CVE CVE-2022-48864
https://www.cve.org/CVERecord?id=CVE-2022-48864
Référence CVE CVE-2022-48866
https://www.cve.org/CVERecord?id=CVE-2022-48866
Référence CVE CVE-2023-1582
https://www.cve.org/CVERecord?id=CVE-2023-1582
Référence CVE CVE-2023-24023
https://www.cve.org/CVERecord?id=CVE-2023-24023
Référence CVE CVE-2023-31315
https://www.cve.org/CVERecord?id=CVE-2023-31315
Référence CVE CVE-2023-37453
https://www.cve.org/CVERecord?id=CVE-2023-37453
Référence CVE CVE-2023-38417
https://www.cve.org/CVERecord?id=CVE-2023-38417
Référence CVE CVE-2023-4244
https://www.cve.org/CVERecord?id=CVE-2023-4244
Référence CVE CVE-2023-47210
https://www.cve.org/CVERecord?id=CVE-2023-47210
Référence CVE CVE-2023-51780
https://www.cve.org/CVERecord?id=CVE-2023-51780
Référence CVE CVE-2023-52435
https://www.cve.org/CVERecord?id=CVE-2023-52435
Référence CVE CVE-2023-52472
https://www.cve.org/CVERecord?id=CV
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0610Multiples vulnérabilités dans le noyau Linux de SUSEord?id=CVE-2022-48754
Référence CVE CVE-2022-48756
https://www.cve.org/CVERecord?id=CVE-2022-48756
Référence CVE CVE-2022-48758
https://www.cve.org/CVERecord?id=CVE-2022-48758
Référence CVE CVE-2022-48759
https://www.cve.org/CVERecord?id=CVE-2022-48759
Référence CVE CVE-2022-48760
https://www.cve.org/CVERecord?id=CVE-2022-48760
Référence CVE CVE-2022-48761
https://www.cve.org/CVERecord?id=CVE-2022-48761
Référence CVE CVE-2022-48771
https://www.cve.org/CVERecord?id=CVE-2022-48771
Référence CVE CVE-2022-48772
https://www.cve.org/CVERecord?id=CVE-2022-48772
Référence CVE CVE-2023-1829
https://www.cve.org/CVERecord?id=CVE-2023-1829
Référence CVE CVE-2023-24023
https://www.cve.org/CVERecord?id=CVE-2023-24023
Référence CVE CVE-2023-4244
https://www.cve.org/CVERecord?id=CVE-2023-4244
Référence CVE CVE-2023-52340
https://www.cve.org/CVERecord?id=CVE-2023-52340
Référence CVE CVE-2023-52502
https://www.cve.org/CVERecord?id=CVE-2023-52502
Référence CVE CVE-2023-52507
https://www.cve.org/CVERecord?id=CVE-2023-52507
Référence CVE CVE-2023-52622
https://www.cve.org/CVERecord?id=CVE-2023-52622
Référence CVE CVE-2023-52670
https://www.cve.org/CVERecord?id=CVE-2023-52670
Référence CVE CVE-2023-52675
https://www.cve.org/CVERecord?id=CVE-2023-52675
Référence CVE CVE-2023-52683
https://www.cve.org/CVERecord?id=CV
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0578Multiples vulnérabilités dans le noyau Linux de SUSEord?id=CVE-2022-48771
Référence CVE CVE-2022-48772
https://www.cve.org/CVERecord?id=CVE-2022-48772
Référence CVE CVE-2023-1829
https://www.cve.org/CVERecord?id=CVE-2023-1829
Référence CVE CVE-2023-20519
https://www.cve.org/CVERecord?id=CVE-2023-20519
Référence CVE CVE-2023-20521
https://www.cve.org/CVERecord?id=CVE-2023-20521
Référence CVE CVE-2023-20526
https://www.cve.org/CVERecord?id=CVE-2023-20526
Référence CVE CVE-2023-20533
https://www.cve.org/CVERecord?id=CVE-2023-20533
Référence CVE CVE-2023-20566
https://www.cve.org/CVERecord?id=CVE-2023-20566
Référence CVE CVE-2023-20592
https://www.cve.org/CVERecord?id=CVE-2023-20592
Référence CVE CVE-2023-24023
https://www.cve.org/CVERecord?id=CVE-2023-24023
Référence CVE CVE-2023-52340
https://www.cve.org/CVERecord?id=CVE-2023-52340
Référence CVE CVE-2023-52502
https://www.cve.org/CVERecord?id=CVE-2023-52502
Référence CVE CVE-2023-52622
https://www.cve.org/CVERecord?id=CVE-2023-52622
Référence CVE CVE-2023-52658
https://www.cve.org/CVERecord?id=CVE-2023-52658
Référence CVE CVE-2023-52667
https://www.cve.org/CVERecord?id=CVE-2023-52667
Référence CVE CVE-2023-52670
https://www.cve.org/CVERecord?id=CVE-2023-52670
Référence CVE CVE-2023-52672
https://www.cve.org/CVERecord?id=CVE-2023-52672
Référence CVE CVE-2023-52675
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0506Multiples vulnérabilités dans Juniper Secure Analytics/CVERecord?id=CVE-2023-1998
Référence CVE CVE-2023-20569
https://www.cve.org/CVERecord?id=CVE-2023-20569
Référence CVE CVE-2023-2162
https://www.cve.org/CVERecord?id=CVE-2023-2162
Référence CVE CVE-2023-2163
https://www.cve.org/CVERecord?id=CVE-2023-2163
Référence CVE CVE-2023-2166
https://www.cve.org/CVERecord?id=CVE-2023-2166
Référence CVE CVE-2023-2176
https://www.cve.org/CVERecord?id=CVE-2023-2176
Référence CVE CVE-2023-22067
https://www.cve.org/CVERecord?id=CVE-2023-22067
Référence CVE CVE-2023-22081
https://www.cve.org/CVERecord?id=CVE-2023-22081
Référence CVE CVE-2023-23455
https://www.cve.org/CVERecord?id=CVE-2023-23455
Référence CVE CVE-2023-24023
https://www.cve.org/CVERecord?id=CVE-2023-24023
Référence CVE CVE-2023-25012
https://www.cve.org/CVERecord?id=CVE-2023-25012
Référence CVE CVE-2023-2513
https://www.cve.org/CVERecord?id=CVE-2023-2513
Référence CVE CVE-2023-25775
https://www.cve.org/CVERecord?id=CVE-2023-25775
Référence CVE CVE-2023-26545
https://www.cve.org/CVERecord?id=CVE-2023-26545
Référence CVE CVE-2023-26604
https://www.cve.org/CVERecord?id=CVE-2023-26604
Référence CVE CVE-2023-27043
https://www.cve.org/CVERecord?id=CVE-2023-27043
Référence CVE CVE-2023-2828
https://www.cve.org/CVERecord?id=CVE-2023-2828
Référence CVE CVE-2023-28322
https://www.cve.org/CVERecord?id=CVE-
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0498Multiples vulnérabilités dans les produits IBMg/CVERecord?id=CVE-2019-15505
Référence CVE CVE-2020-25656
https://www.cve.org/CVERecord?id=CVE-2020-25656
Référence CVE CVE-2021-3753
https://www.cve.org/CVERecord?id=CVE-2021-3753
Référence CVE CVE-2021-4204
https://www.cve.org/CVERecord?id=CVE-2021-4204
Référence CVE CVE-2022-0500
https://www.cve.org/CVERecord?id=CVE-2022-0500
Référence CVE CVE-2022-23222
https://www.cve.org/CVERecord?id=CVE-2022-23222
Référence CVE CVE-2022-3565
https://www.cve.org/CVERecord?id=CVE-2022-3565
Référence CVE CVE-2022-45934
https://www.cve.org/CVERecord?id=CVE-2022-45934
Référence CVE CVE-2023-1513
https://www.cve.org/CVERecord?id=CVE-2023-1513
Référence CVE CVE-2023-24023
https://www.cve.org/CVERecord?id=CVE-2023-24023
Référence CVE CVE-2023-25775
https://www.cve.org/CVERecord?id=CVE-2023-25775
Référence CVE CVE-2023-28464
https://www.cve.org/CVERecord?id=CVE-2023-28464
Référence CVE CVE-2023-31083
https://www.cve.org/CVERecord?id=CVE-2023-31083
Référence CVE CVE-2023-3567
https://www.cve.org/CVERecord?id=CVE-2023-3567
Référence CVE CVE-2023-37453
https://www.cve.org/CVERecord?id=CVE-2023-37453
Référence CVE CVE-2023-38409
https://www.cve.org/CVERecord?id=CVE-2023-38409
Référence CVE CVE-2023-39189
https://www.cve.org/CVERecord?id=CVE-2023-39189
Référence CVE CVE-2023-39192
https://www.cve.org/CVERecord?id=CV
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0438Multiples vulnérabilités dans le noyau Linux de Red Hatg/CVERecord?id=CVE-2020-25656
Référence CVE CVE-2021-3753
https://www.cve.org/CVERecord?id=CVE-2021-3753
Référence CVE CVE-2021-4204
https://www.cve.org/CVERecord?id=CVE-2021-4204
Référence CVE CVE-2022-0500
https://www.cve.org/CVERecord?id=CVE-2022-0500
Référence CVE CVE-2022-23222
https://www.cve.org/CVERecord?id=CVE-2022-23222
Référence CVE CVE-2022-3565
https://www.cve.org/CVERecord?id=CVE-2022-3565
Référence CVE CVE-2022-40982
https://www.cve.org/CVERecord?id=CVE-2022-40982
Référence CVE CVE-2022-45934
https://www.cve.org/CVERecord?id=CVE-2022-45934
Référence CVE CVE-2023-1513
https://www.cve.org/CVERecord?id=CVE-2023-1513
Référence CVE CVE-2023-24023
https://www.cve.org/CVERecord?id=CVE-2023-24023
Référence CVE CVE-2023-25775
https://www.cve.org/CVERecord?id=CVE-2023-25775
Référence CVE CVE-2023-28464
https://www.cve.org/CVERecord?id=CVE-2023-28464
Référence CVE CVE-2023-31083
https://www.cve.org/CVERecord?id=CVE-2023-31083
Référence CVE CVE-2023-3567
https://www.cve.org/CVERecord?id=CVE-2023-3567
Référence CVE CVE-2023-37453
https://www.cve.org/CVERecord?id=CVE-2023-37453
Référence CVE CVE-2023-38409
https://www.cve.org/CVERecord?id=CVE-2023-38409
Référence CVE CVE-2023-39189
https://www.cve.org/CVERecord?id=CVE-2023-39189
Référence CVE CVE-2023-39192
https://www.cve.org/CVERecord?id=CV
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0364Multiples vulnérabilités dans le noyau Linux de RedHatecord?id=CVE-2020-26555
Référence CVE CVE-2020-36516
https://www.cve.org/CVERecord?id=CVE-2020-36516
Référence CVE CVE-2021-33631
https://www.cve.org/CVERecord?id=CVE-2021-33631
Référence CVE CVE-2021-46915
https://www.cve.org/CVERecord?id=CVE-2021-46915
Référence CVE CVE-2022-0480
https://www.cve.org/CVERecord?id=CVE-2022-0480
Référence CVE CVE-2022-3640
https://www.cve.org/CVERecord?id=CVE-2022-3640
Référence CVE CVE-2022-38096
https://www.cve.org/CVERecord?id=CVE-2022-38096
Référence CVE CVE-2022-42895
https://www.cve.org/CVERecord?id=CVE-2022-42895
Référence CVE CVE-2022-45934
https://www.cve.org/CVERecord?id=CVE-2022-45934
Référence CVE CVE-2023-24023
https://www.cve.org/CVERecord?id=CVE-2023-24023
Référence CVE CVE-2023-25775
https://www.cve.org/CVERecord?id=CVE-2023-25775
Référence CVE CVE-2023-28464
https://www.cve.org/CVERecord?id=CVE-2023-28464
Référence CVE CVE-2023-28866
https://www.cve.org/CVERecord?id=CVE-2023-28866
Référence CVE CVE-2023-31083
https://www.cve.org/CVERecord?id=CVE-2023-31083
Référence CVE CVE-2023-3567
https://www.cve.org/CVERecord?id=CVE-2023-3567
Référence CVE CVE-2023-37453
https://www.cve.org/CVERecord?id=CVE-2023-37453
Référence CVE CVE-2023-39189
https://www.cve.org/CVERecord?id=CVE-2023-39189
Référence CVE CVE-2023-39193
https://www.cve.org/CVERecord?id=CV
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0352Multiples vulnérabilités dans le noyau Linux d'UbuntuERecord?id=CVE-2019-25162
Référence CVE CVE-2021-46936
https://www.cve.org/CVERecord?id=CVE-2021-46936
Référence CVE CVE-2021-46955
https://www.cve.org/CVERecord?id=CVE-2021-46955
Référence CVE CVE-2021-46966
https://www.cve.org/CVERecord?id=CVE-2021-46966
Référence CVE CVE-2021-46990
https://www.cve.org/CVERecord?id=CVE-2021-46990
Référence CVE CVE-2022-20422
https://www.cve.org/CVERecord?id=CVE-2022-20422
Référence CVE CVE-2023-1382
https://www.cve.org/CVERecord?id=CVE-2023-1382
Référence CVE CVE-2023-1838
https://www.cve.org/CVERecord?id=CVE-2023-1838
Référence CVE CVE-2023-1998
https://www.cve.org/CVERecord?id=CVE-2023-1998
Référence CVE CVE-2023-24023
https://www.cve.org/CVERecord?id=CVE-2023-24023
Référence CVE CVE-2023-51043
https://www.cve.org/CVERecord?id=CVE-2023-51043
Référence CVE CVE-2023-51779
https://www.cve.org/CVERecord?id=CVE-2023-51779
Référence CVE CVE-2023-52429
https://www.cve.org/CVERecord?id=CVE-2023-52429
Référence CVE CVE-2023-52445
https://www.cve.org/CVERecord?id=CVE-2023-52445
Référence CVE CVE-2023-52451
https://www.cve.org/CVERecord?id=CVE-2023-52451
Référence CVE CVE-2023-52464
https://www.cve.org/CVERecord?id=CVE-2023-52464
Référence CVE CVE-2023-52600
https://www.cve.org/CVERecord?id=CVE-2023-52600
Référence CVE CVE-2023-52603
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0944Multiples vulnérabilités dans Microsoft WindowsWindows Server 2022, 23H2 Edition (Server Core installation)
Résumé
De multiples vulnérabilités ont été corrigées dans Microsoft Windows . Elles permettent à un attaquant
de provoquer un déni de service, une atteinte à la confidentialité des
données, une élévation de privilèges, un contournement de la
fonctionnalité de sécurité, une exécution de code à distance et une
usurpation d'identité.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Microsoft du 14 novembre 2023
https://msrc.microsoft.com/update-guide/
Bulletin de sécurité Microsoft CVE-2023-24023 du 14 novembre 2023
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-24023
Bulletin de sécurité Microsoft CVE-2023-36017 du 14 novembre 2023
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36017
Bulletin de sécurité Microsoft CVE-2023-36025 du 14 novembre 2023
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36025
Bulletin de sécurité Microsoft CVE-2023-36028 du 14 novembre 2023
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36028
Bulletin de sécurité Microsoft CVE-2023-36033 du 14 novembre 2023
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36033
Bulletin de sécurité
Official advisory ↗JVN iPedia · Japanese · JVNDB-2023-018098Bluetooth SIG, Inc. の Bluetooth Core Specification における脆弱性Bluetooth SIG, Inc. の Bluetooth Core Specification には、不特定の脆弱性が存在します。
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-6102MS 2월 보안 위협에 따른 정기 보안 업데이트 권고SQL Server | CVE-2024-0056 | Microsoft.Data.SqlClient 및 System.Data.SqlClient SQL 데이터 공급자 보안 기능 바이패스 취약성 |
| Role: DNS Server | CVE-2023-50387 | MITRE: CVE-2023-50387 DNS RRSIG 및 DNSKEY 유효성 검사를 악용하여 DNS 서버 리소스를 원격으로 이용할 수 있습니다. |
| ASP.NET | CVE-2023-36558 | ASP.NET Core - 보안 기능 바이패스 취약성 |
| .NET Framework | CVE-2023-36049 | .NET, .NET Framework, Visual Studio 권한 상승 취약성 |
| Microsoft Power Platform Connector | CVE-2023-36019 | Microsoft Power Platform Connector 스푸핑 취약성 |
| Visual Studio Code | CVE-2023-36018 | Visual Studio Code Jupyter 확장 스푸핑 취약성 |
| Windows Secure Boot | CVE-2023-24932 | 보안 부팅 보안 기능 우회 취약성 |
| Microsoft Bluetooth Driver | CVE-2023-24023 | Mitre: CVE-2023-24023 Bluetooth 취약성 |
| Apps | CVE-2021-43890 | Windows AppX 설치 관리자 스푸핑 취약성 |
##### □ 작성 : 취약점분석팀
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-6041MS 11월 보안 위협에 따른 정기 보안 업데이트 권고soft Dynamics | CVE-2023-36016 | Microsoft Dynamics 365(온-프레미스) 교차-사이트 스크립팅 취약성 |
| Microsoft Edge (Chromium-based) | CVE-2023-36014 | Microsoft Edge(Chromium 기반) 원격 코드 실행 취약성 |
| Microsoft Dynamics | CVE-2023-36007 | Microsoft Send Customer Voice survey from Dynamics 365 Spoofing Vulnerability |
| ASP.NET and Visual Studio | CVE-2023-35391 | ASP.NET Core SignalR 및 Visual Studio 정보 공개 취약성 |
| Windows Message Queuing | CVE-2023-35383 | Microsoft 메시지 큐 정보 유출 취약성 |
| Windows RDP | CVE-2023-29348 | Windows RD 게이트웨이(원격 데스크톱 게이트웨이) 정보 공개 취약성 |
| SysInternals | CVE-2023-29343 | Windows용 SysInternals Sysmon 권한 상승 취약성 |
| Microsoft Bluetooth Driver | CVE-2023-24023 | Mitre: CVE-2023-24023 Bluetooth 취약성 |
| Windows Message Queuing | CVE-2023-21537 | Microsoft MSMQ(메시지 큐) 권한 상승 취약성 |
| Microsoft Windows Codecs Library | CVE-2022-44687 | Raw Image Extension Remote Code Execution Vulnerability |
| Microsoft Graphics Component | CVE-2022-41113 | Windows Win32 커널 하위 시스템 권한 상승 취약성 |
| Microsoft Accessibility Insights for Web | CVE-2021-31936 | Microsoft 웹용 접근성 인사이트 정보 유출 취약성 |
| Microsoft Exchange Server | CVE-2021-31207 | Microsoft Exchange Server 보안 기능 우회 취약성 |
| Windows SMB | CVE-2021-31205 | Windows SMB 클라이언트 보안 기능 우회 취약성 |
| Microsoft Windows Codecs Library | CVE-2021-31192 | Windows Media Foundation Cor
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0273Kwetsbaarheden verholpen in Google Android en Samsung MobileDe kwetsbaarheden in de Android kernel omvatten onder andere een raceconditie tussen functies die CPU-timers beheren, wat kan leiden tot systeeminstabiliteit. Daarnaast zijn er kwetsbaarheden gerapporteerd die ongeautoriseerde toegang tot gevoelige informatie mogelijk maken door onjuist gebruik van geheugen en systeemoproepen. Dit kan resulteren in ernstige beveiligingsimplicaties, waaronder het uitvoeren van ongewenste code en het compromitteren van systeemintegriteit.
Naast kwetsbaarheden in Android zijn ook kwetsbaarheden verholpen in Closed-source componenten van Arm, Mediatek, Imagination Technologies en Qualcomm.
Google meldt informatie te hebben ontvangen dat de kwetsbaarheden met kenmerk CVE-2025-38352 en CVE-2025-48543 beperkt en gericht zijn misbruikt. Er is geen publieke Proof-of-Concept-code of exploit bekend van deze kwetsbaarheden.
Official advisory ↗