CVE-2025-20660
- EPSS 0.01%
- Veröffentlicht 07.04.2025 03:14:55
- Zuletzt bearbeitet 18.04.2025 16:12:26
In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. P...
- EPSS 0.01%
- Veröffentlicht 07.04.2025 03:14:52
- Zuletzt bearbeitet 09.04.2025 15:20:15
In DA, there is a possible permission bypass due to a logic error. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for ...
CVE-2025-20657
- EPSS 0.01%
- Veröffentlicht 07.04.2025 03:14:50
- Zuletzt bearbeitet 18.04.2025 16:11:52
In vdec, there is a possible permission bypass due to improper input validation. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch I...
CVE-2025-20656
- EPSS 0.01%
- Veröffentlicht 07.04.2025 03:14:49
- Zuletzt bearbeitet 09.04.2025 15:29:43
In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not ...
CVE-2025-20655
- EPSS 0.01%
- Veröffentlicht 07.04.2025 03:14:47
- Zuletzt bearbeitet 09.04.2025 15:37:20
In keymaster, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch...
CVE-2024-56191
- EPSS 0.01%
- Veröffentlicht 10.03.2025 20:50:38
- Zuletzt bearbeitet 27.06.2025 16:12:14
In dhd_process_full_gscan_result of dhd_pno.c, there is a possible EoP due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2024-56192
- EPSS 0.01%
- Veröffentlicht 10.03.2025 20:50:38
- Zuletzt bearbeitet 27.06.2025 16:12:02
In wl_notify_gscan_event of wl_cfgscan.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for explo...
CVE-2024-56186
- EPSS 0.01%
- Veröffentlicht 10.03.2025 18:19:49
- Zuletzt bearbeitet 27.06.2025 16:21:02
In closeChannel of secureelementimpl.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for expl...
CVE-2024-56187
- EPSS 0.01%
- Veröffentlicht 10.03.2025 18:19:49
- Zuletzt bearbeitet 27.06.2025 16:20:41
In ppcfw_deny_sec_dram_access of ppcfw.c, there is a possible arbitrary read from TEE memory due to a logic error in the code. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for...
CVE-2024-56188
- EPSS 0.02%
- Veröffentlicht 10.03.2025 18:19:49
- Zuletzt bearbeitet 27.06.2025 16:12:37
there is a possible way to crash the modem due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.