Google

Android

7895 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.46%
  • Veröffentlicht 07.08.2023 02:15:10
  • Zuletzt bearbeitet 21.11.2024 08:06:11

In DRM/oemcrypto, there is a possible out of bounds write due to an incorrect calculation of buffer size.This could lead to remote escalation of privilege with System execution privileges needed

  • EPSS 0.01%
  • Veröffentlicht 07.08.2023 02:15:09
  • Zuletzt bearbeitet 21.11.2024 07:31:46

In camera driver, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • EPSS 0.01%
  • Veröffentlicht 14.07.2023 16:15:14
  • Zuletzt bearbeitet 21.11.2024 08:08:31

In getLocationCache of GeoLocation.java, there is a possible way to send a mock location during an emergency call due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User ...

  • EPSS 0.02%
  • Veröffentlicht 13.07.2023 01:15:08
  • Zuletzt bearbeitet 21.11.2024 07:42:30

In notification access permission dialog box, malicious application can embedded a very long service label that overflow the original user prompt and possibly contains mis-leading information to be appeared as a system message for user confirmation. ...

  • EPSS 0.01%
  • Veröffentlicht 13.07.2023 00:15:24
  • Zuletzt bearbeitet 21.11.2024 07:42:30

In getCurrentState of OneTimePermissionUserManager.java, there is a possible way to hold one-time permissions after the app is being killed due to a logic error in the code. This could lead to local escalation of privilege with no additional executio...

  • EPSS 0.06%
  • Veröffentlicht 13.07.2023 00:15:24
  • Zuletzt bearbeitet 13.02.2025 17:16:02

In multiple functions of binder.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • EPSS 0.02%
  • Veröffentlicht 13.07.2023 00:15:24
  • Zuletzt bearbeitet 21.11.2024 07:42:30

In SettingsHomepageActivity.java, there is a possible way to launch arbitrary activities via Settings due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction ...

  • EPSS 0.02%
  • Veröffentlicht 13.07.2023 00:15:24
  • Zuletzt bearbeitet 21.11.2024 07:42:30

In updateSettingsInternalLI of InstallPackageHelper.java, there is a possible way to sideload an app in the work profile due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges neede...

  • EPSS 0.04%
  • Veröffentlicht 13.07.2023 00:15:24
  • Zuletzt bearbeitet 21.11.2024 07:42:30

In startInput of AudioPolicyInterfaceImpl.cpp, there is a possible way of erroneously displaying the microphone privacy indicator due to a race condition. This could lead to false user expectations. User interaction is needed for exploitation.

  • EPSS 0%
  • Veröffentlicht 13.07.2023 00:15:24
  • Zuletzt bearbeitet 21.11.2024 07:42:47

there is a possible way to bypass cryptographic assurances due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.