Google

Android

7931 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.03%
  • Veröffentlicht 28.06.2023 18:15:14
  • Zuletzt bearbeitet 21.11.2024 07:42:19

In executeSetClientTarget of ComposerCommandEngine.h, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for ex...

  • EPSS 0.02%
  • Veröffentlicht 28.06.2023 18:15:14
  • Zuletzt bearbeitet 21.11.2024 07:42:19

In verifyInputEvent of InputDispatcher.cpp, there is a possible way to conduct click fraud due to side channel information disclosure. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not n...

  • EPSS 0.01%
  • Veröffentlicht 28.06.2023 18:15:14
  • Zuletzt bearbeitet 21.11.2024 07:42:19

In multiple functions of WifiCallingSettings.java, there is a possible way to change calling preferences for the admin user due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. ...

  • EPSS 0.06%
  • Veröffentlicht 28.06.2023 18:15:14
  • Zuletzt bearbeitet 21.11.2024 07:42:19

In multiple methods of DataUsageList.java, there is a possible way to learn about admin user's network activities due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User ...

  • EPSS 0.01%
  • Veröffentlicht 28.06.2023 18:15:14
  • Zuletzt bearbeitet 21.11.2024 07:42:19

In isPageSearchEnabled of BillingCycleSettings.java, there is a possible way for the guest user to change data limits due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User i...

  • EPSS 0.01%
  • Veröffentlicht 28.06.2023 18:15:14
  • Zuletzt bearbeitet 05.12.2024 16:15:20

In onCreate of DataUsageSummary.java, there is a possible method for a guest user to enable or disable mobile data due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User inte...

  • EPSS 0.03%
  • Veröffentlicht 28.06.2023 18:15:14
  • Zuletzt bearbeitet 05.12.2024 16:15:20

In list_key_entries of utils.rs, there is a possible way to disable user credentials due to resource exhaustion. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation.Produ...

  • EPSS 0.03%
  • Veröffentlicht 28.06.2023 18:15:14
  • Zuletzt bearbeitet 21.11.2024 07:42:19

In requestAppKeyboardShortcuts of WindowManagerService.java, there is a possible way to infer the app a user is interacting with due to a missing permission check. This could lead to local information disclosure with no additional execution privilege...

  • EPSS 0.02%
  • Veröffentlicht 28.06.2023 18:15:14
  • Zuletzt bearbeitet 21.11.2024 07:42:20

In installKey of KeyUtil.cpp, there is a possible failure of file encryption due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: An...

  • EPSS 0.01%
  • Veröffentlicht 28.06.2023 18:15:14
  • Zuletzt bearbeitet 21.11.2024 07:42:20

In parseSecurityParamsFromXml of XmlUtil.java, there is a possible bypass of user specified wifi encryption protocol due to improperly used crypto. This could lead to local escalation of privilege with no additional execution privileges needed. User ...