CVE-2023-21186
- EPSS 1.71%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:20
In LogResponse of Dns.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: Andr...
CVE-2023-21187
- EPSS 0.03%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 05.12.2024 16:15:20
In onCreate of UsbAccessoryUriActivity.java, there is a possible way to escape the Setup Wizard due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not...
CVE-2023-21188
- EPSS 0.02%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In btm_ble_update_inq_result of btm_ble_gap.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploita...
CVE-2023-21189
- EPSS 0.01%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In startLockTaskMode of LockTaskController.java, there is a possible bypass of lock task mode due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is neede...
- EPSS 0.02%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In btm_acl_encrypt_change of btm_acl.cc, there is a possible way for a remote device to turn off encryption without resulting in a terminated connection due to an unusual root cause. This could lead to local information disclosure with no additional ...
CVE-2023-21191
- EPSS 0.01%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In fixNotification of NotificationManagerService.java, there is a possible bypass of notification hide preference due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User ...
CVE-2023-21192
- EPSS 0.02%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In setInputMethodWithSubtypeIdLocked of InputMethodManagerService.java, there is a possible way to setup input methods that are not enabled due to improper input validation. This could lead to local escalation of privilege with no additional executio...
CVE-2023-21193
- EPSS 0.56%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In VideoFrame of VideoFrame.h, there is a possible abort due to an integer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVers...
CVE-2023-21194
- EPSS 0.03%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In gatt_dbg_op_name of gatt_utils.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the Bluetooth server with System execution privileges needed. User interaction is not neede...
CVE-2023-21195
- EPSS 0.03%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In btm_ble_periodic_adv_sync_tx_rcvd of btm_ble_gap.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure over Bluetooth, if the firmware were compromised with System execution pr...