CVE-2023-21123
- EPSS 0%
- Veröffentlicht 15.06.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 07:42:12
In multiple functions of multiple files, there is a possible way to bypass the DISALLOW_DEBUGGING_FEATURES restriction for tracing due to a missing permission check. This could lead to local escalation of privilege with no additional execution privil...
CVE-2023-21124
- EPSS 0.02%
- Veröffentlicht 15.06.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 07:42:12
In run of multiple files, there is a possible escalation of privilege due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Prod...
CVE-2023-21126
- EPSS 0.01%
- Veröffentlicht 15.06.2023 19:15:09
- Zuletzt bearbeitet 18.12.2024 17:15:08
In bindOutputSwitcherAndBroadcastButton of MediaControlPanel.java, there is a possible launch arbitrary activity under SysUI due to Unsafe Intent. This could lead to local escalation of privilege with no additional execution privileges needed. User i...
CVE-2023-21127
- EPSS 1.02%
- Veröffentlicht 15.06.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 07:42:12
In readSampleData of NuMediaExtractor.cpp, there is a possible out of bounds write due to uninitialized data. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation.Product...
CVE-2023-21128
- EPSS 0.02%
- Veröffentlicht 15.06.2023 19:15:09
- Zuletzt bearbeitet 18.12.2024 17:15:10
In various functions of AppStandbyController.java, there is a possible way to break manageability scenarios due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User intera...
CVE-2023-21129
- EPSS 0%
- Veröffentlicht 15.06.2023 19:15:09
- Zuletzt bearbeitet 18.12.2024 19:15:09
In getFullScreenIntentDecision of NotificationInterruptStateProviderImpl.java, there is a possible activity launch while the app is in the background due to a BAL bypass. This could lead to local escalation of privilege with no additional execution p...
CVE-2023-21130
- EPSS 1.07%
- Veröffentlicht 15.06.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 07:42:13
In btm_ble_periodic_adv_sync_lost of btm_ble_gap.cc, there is a possible remote code execution due to a buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for explo...
CVE-2023-21131
- EPSS 0%
- Veröffentlicht 15.06.2023 19:15:09
- Zuletzt bearbeitet 18.12.2024 19:15:09
In checkKeyIntentParceledCorrectly() of ActivityManagerService.java, there is a possible bypass of Parcel Mismatch mitigations due to a logic error in the code. This could lead to local escalation of privilege and the ability to launch arbitrary acti...
CVE-2023-21135
- EPSS 0.01%
- Veröffentlicht 15.06.2023 19:15:09
- Zuletzt bearbeitet 18.12.2024 19:15:09
In onCreate of NotificationAccessSettings.java, there is a possible failure to persist notifications settings due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User inte...
CVE-2023-20749
- EPSS 0.02%
- Veröffentlicht 06.06.2023 13:15:15
- Zuletzt bearbeitet 07.01.2025 19:15:29
In swpm, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07780926; Issue I...