CVE-2026-0192
- EPSS 0.11%
- Veröffentlicht 15.09.2026 18:33:31
- Zuletzt bearbeitet 21.09.2026 17:21:52
In Bootloader, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-0189
- EPSS 0.13%
- Veröffentlicht 15.09.2026 18:33:30
- Zuletzt bearbeitet 21.09.2026 17:21:58
In ac_init_policy of init.c, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-0187
- EPSS 0.12%
- Veröffentlicht 15.09.2026 18:33:29
- Zuletzt bearbeitet 21.09.2026 17:22:08
In gsa_sw_pk_hash_compare of image-auth-srv.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for ...
CVE-2026-0186
- EPSS 0.12%
- Veröffentlicht 15.09.2026 18:33:28
- Zuletzt bearbeitet 21.09.2026 17:22:15
In ac_init_one_sswrp of init.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-0183
- EPSS 0.07%
- Veröffentlicht 15.09.2026 18:33:27
- Zuletzt bearbeitet 21.09.2026 17:22:22
In CPM, there is a possible information disclosure due to a confused deputy. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-0179
- EPSS 0.12%
- Veröffentlicht 15.09.2026 18:33:26
- Zuletzt bearbeitet 21.09.2026 17:22:32
In Bootloader, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-0177
- EPSS 0.07%
- Veröffentlicht 15.09.2026 18:33:25
- Zuletzt bearbeitet 21.09.2026 17:22:40
In do_sss_aes_gcm_256_op of crypto-aes.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-0171
- EPSS 0.28%
- Veröffentlicht 15.09.2026 18:33:24
- Zuletzt bearbeitet 21.09.2026 17:22:47
In multiple locations, there is a possible out-of-bounds write due to a logic error in the code. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-0170
- EPSS 0.27%
- Veröffentlicht 15.09.2026 18:33:23
- Zuletzt bearbeitet 21.09.2026 17:22:59
In Vp9DecodeFrameTag of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exp...
CVE-2026-0159
- EPSS 0.27%
- Veröffentlicht 15.09.2026 18:33:22
- Zuletzt bearbeitet 21.09.2026 17:23:10
In Cellular Modem, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.