CVE-2023-21159
- EPSS 0.02%
- Veröffentlicht 28.06.2023 18:15:13
- Zuletzt bearbeitet 21.11.2024 07:42:17
In Parse of simdata.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: Android...
CVE-2022-20443
- EPSS 0.01%
- Veröffentlicht 28.06.2023 18:15:11
- Zuletzt bearbeitet 21.11.2024 06:42:49
In hasInputInfo of Layer.cpp, there is a possible bypass of user interaction requirements due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not nee...
CVE-2023-21136
- EPSS 0.01%
- Veröffentlicht 15.06.2023 19:15:10
- Zuletzt bearbeitet 18.12.2024 19:15:09
In multiple functions of JobStore.java, there is a possible way to cause a crash on startup due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed fo...
CVE-2023-21137
- EPSS 0.03%
- Veröffentlicht 15.06.2023 19:15:10
- Zuletzt bearbeitet 21.11.2024 07:42:13
In several methods of JobStore.java, uncaught exceptions in job map parsing could lead to local persistent denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: And...
CVE-2023-21138
- EPSS 0.01%
- Veröffentlicht 15.06.2023 19:15:10
- Zuletzt bearbeitet 17.12.2024 20:15:20
In onNullBinding of CallRedirectionProcessor.java, there is a possible long lived connection due to improper input validation. This could lead to local escalation of privilege and background activity launches with User execution privileges needed. Us...
CVE-2023-21139
- EPSS 0.01%
- Veröffentlicht 15.06.2023 19:15:10
- Zuletzt bearbeitet 17.12.2024 20:15:21
In bindPlayer of MediaControlPanel.java, there is a possible launch arbitrary activity in SysUI due to Unsafe Intent. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for ...
CVE-2023-21141
- EPSS 0%
- Veröffentlicht 15.06.2023 19:15:10
- Zuletzt bearbeitet 17.12.2024 20:15:21
In several functions of several files, there is a possible way to access developer mode traces due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed...
CVE-2023-21142
- EPSS 0%
- Veröffentlicht 15.06.2023 19:15:10
- Zuletzt bearbeitet 18.12.2024 19:15:09
In multiple files, there is a possible way to access traces in the dev mode due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.P...
CVE-2023-21143
- EPSS 0.01%
- Veröffentlicht 15.06.2023 19:15:10
- Zuletzt bearbeitet 18.12.2024 19:15:10
In multiple functions of multiple files, there is a possible way to make the device unusable due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed f...
CVE-2023-21144
- EPSS 15.27%
- Veröffentlicht 15.06.2023 19:15:10
- Zuletzt bearbeitet 18.12.2024 19:15:10
In doInBackground of NotificationContentInflater.java, there is a possible temporary denial or service due to long running operations. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not...