CVE-2023-21240
- EPSS 0.02%
- Veröffentlicht 13.07.2023 00:15:23
- Zuletzt bearbeitet 21.11.2024 07:42:28
In Policy of Policy.java, there is a possible boot loop due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2023-21241
- EPSS 0.02%
- Veröffentlicht 13.07.2023 00:15:23
- Zuletzt bearbeitet 21.11.2024 07:42:28
In rw_i93_send_to_upper of rw_i93.cc, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation...
CVE-2023-21243
- EPSS 0.01%
- Veröffentlicht 13.07.2023 00:15:23
- Zuletzt bearbeitet 21.11.2024 07:42:28
In validateForCommonR1andR2 of PasspointConfiguration.java, there is a possible way to inflate the size of a config file with no limits due to a buffer overflow. This could lead to local denial of service with no additional execution privileges neede...
CVE-2023-21245
- EPSS 0.02%
- Veröffentlicht 13.07.2023 00:15:23
- Zuletzt bearbeitet 06.01.2025 17:15:11
In showNextSecurityScreenOrFinish of KeyguardSecurityContainerController.java, there is a possible way to access the lock screen during device setup due to a logic error in the code. This could lead to local escalation of privilege with no additional...
CVE-2023-21246
- EPSS 0.02%
- Veröffentlicht 13.07.2023 00:15:23
- Zuletzt bearbeitet 21.11.2024 07:42:29
In ShortcutInfo of ShortcutInfo.java, there is a possible way for an app to retain notification listening access due to an uncaught exception. This could lead to local escalation of privilege with no additional execution privileges needed. User inter...
CVE-2023-21247
- EPSS 0%
- Veröffentlicht 13.07.2023 00:15:23
- Zuletzt bearbeitet 21.11.2024 07:42:29
In getAvailabilityStatus of BluetoothScanningMainSwitchPreferenceController.java, there is a possible way to bypass a device policy restriction due to a missing permission check. This could lead to local escalation of privilege with no additional exe...
CVE-2023-21248
- EPSS 0%
- Veröffentlicht 13.07.2023 00:15:23
- Zuletzt bearbeitet 21.11.2024 07:42:29
In getAvailabilityStatus of WifiScanningMainSwitchPreferenceController.java, there is a possible way to bypass a device policy restriction due to a missing permission check. This could lead to local escalation of privilege with no additional executio...
CVE-2023-21249
- EPSS 0%
- Veröffentlicht 13.07.2023 00:15:23
- Zuletzt bearbeitet 21.11.2024 07:42:29
In multiple functions of OneTimePermissionUserManager.java, there is a possible one-time permission retention due to a permissions bypass. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not...
CVE-2023-21250
- EPSS 0.63%
- Veröffentlicht 13.07.2023 00:15:23
- Zuletzt bearbeitet 21.11.2024 07:42:29
In gatt_end_operation of gatt_utils.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2023-21251
- EPSS 0%
- Veröffentlicht 13.07.2023 00:15:23
- Zuletzt bearbeitet 21.11.2024 07:42:29
In onCreate of ConfirmDialog.java, there is a possible way to connect to VNP bypassing user's consent due to improper input validation. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed...