Google

Android

8379 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.15%
  • Veröffentlicht 08.09.2026 19:17:57
  • Zuletzt bearbeitet 24.09.2026 15:25:44

In onAttach of BiometricsSettingsBase.java, there is a possible authentication bypass due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploi...

  • EPSS 0.12%
  • Veröffentlicht 08.09.2026 19:17:57
  • Zuletzt bearbeitet 24.09.2026 15:25:11

In openFile of AppFuseBridge.java, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploi...

  • EPSS 0.12%
  • Veröffentlicht 08.09.2026 19:17:57
  • Zuletzt bearbeitet 24.09.2026 15:23:02

In multiple locations, there is a possible improper data sanitization due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • EPSS 0.16%
  • Veröffentlicht 08.09.2026 19:17:57
  • Zuletzt bearbeitet 24.09.2026 15:18:58

In convertCleanApertureToRect of HeifCleanAperture.cpp, there is a possible way to cause a temporary denial of service due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User intera...

  • EPSS 0.12%
  • Veröffentlicht 08.09.2026 19:17:56
  • Zuletzt bearbeitet 15.09.2026 14:15:03

In multiple functions of DeviceAdminAdd.java, there is a possible way to an overlay due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for ex...

  • EPSS 0.12%
  • Veröffentlicht 08.09.2026 19:17:56
  • Zuletzt bearbeitet 15.09.2026 14:15:24

In onActivityResult of AppWidgetConfigActivityProxy.java, there is a possible unauthorized URI permission grant due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interactio...

  • EPSS 0.13%
  • Veröffentlicht 08.09.2026 19:17:56
  • Zuletzt bearbeitet 15.09.2026 14:15:46

In findMetaAuthUid of AccountsDb.java, there is a possible frp bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • EPSS 0.12%
  • Veröffentlicht 08.09.2026 19:17:56
  • Zuletzt bearbeitet 15.09.2026 14:07:02

In getAllSessions of multiple files, there is a possible confused deputy due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation...

Medienbericht
  • EPSS 0.13%
  • Veröffentlicht 08.09.2026 19:17:56
  • Zuletzt bearbeitet 15.09.2026 14:16:11

In p2p_process_prov_disc_bootstrap_req of p2p_pd.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction i...

  • EPSS 0.13%
  • Veröffentlicht 08.09.2026 19:17:56
  • Zuletzt bearbeitet 23.09.2026 19:43:18

In buildIntentSenderForUser of LauncherAppsService.java, there is a possible way to launch an activity from the background due to BAL Bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User intera...