[transformers] `torch_dtype` is deprecated! Use `dtype` instead! Loading weights: 0%| | 0/398 [00:00 ## Triage Entry **CVE:** CVE-2023-33030 **Severity:** Critical **Published:** 2024-05-03T00:00:00.000 **Last seen:** 2026-04-28T17:06:22.973 **Weakness:** CWE-119, CWE-125 ### Summary Memory corruption in HLOS while running playready use-case. ### Severity Scoring CVSS v3.1: 9.3 (Critical) Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H ### Affected Products Affected products not specified ### References - https://www.qualcomm.com/company/product-security/bulletins/may-2024-bulletin - https://www.qualcomm.com/company/product-security/bulletins/may-2024-bulletin ### Notes Qualcomm Product Security Bulletin - May 2024 ================================================================================ PROMPT: Given this vulnerability information: CVE: CVE-2023-32874 Description: In Modem IMS Stack, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed. Severity: Critical Weakness: CWE-787 Write a concise security advisory with impact, affected area, and remediation guidance. -------------------------------------------------------------------------------- ## Security Advisory: CVE-2023-32874 **Published:** 2023-06-13T15:15:10.917 **Severity:** Critical **Weakness:** CWE-787 ### Summary In Modem IMS Stack, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed. ### Severity Scoring CVSS v3.1: 9.8 (Critical) Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H ### Affected Products - Google Android (11.0) - Google Android (12.0) - Google Android (13.0) - Unisoc S8000 (-) - Unisoc Sc7731E (-) - ... and 11 more ### Impact In Modem IMS Stack, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed. ### Remediation Apply updates provided by the affected product vendors. ### References - https://www.unisoc.com/en_us/secy/announcementDetail/https://www.unisoc.com/en_us/secy/announcementDetail/1719612365713280001 - https://www.unisoc.com/en_us/secy/announcementDetail/https://www.unisoc.com/en_us/secy/announcementDetail/1719612365713280001