CVE-2023-21029
- EPSS 0.02%
- Veröffentlicht 24.03.2023 20:15:13
- Zuletzt bearbeitet 25.02.2025 15:15:13
In register of UidObserverController.java, there is a missing permission check. This could lead to local information disclosure of app usage with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersio...
CVE-2023-21030
- EPSS 0.02%
- Veröffentlicht 24.03.2023 20:15:13
- Zuletzt bearbeitet 25.02.2025 15:15:13
In Confirmation of keystore_cli_v2.cpp, there is a possible way to corrupt memory due to a double free. This could lead to local escalation of privilege in an unprivileged process with no additional execution privileges needed. User interaction is no...
CVE-2023-21031
- EPSS 0.01%
- Veröffentlicht 24.03.2023 20:15:13
- Zuletzt bearbeitet 25.02.2025 15:15:13
In setPowerMode of HWC2.cpp, there is a possible out of bounds read due to a race condition. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: Andr...
CVE-2023-21032
- EPSS 0.02%
- Veröffentlicht 24.03.2023 20:15:13
- Zuletzt bearbeitet 25.02.2025 15:15:14
In _ufdt_output_node_to_fdt of ufdt_convert.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitat...
CVE-2023-21033
- EPSS 0.03%
- Veröffentlicht 24.03.2023 20:15:13
- Zuletzt bearbeitet 25.02.2025 15:15:14
In addNetwork of WifiManager.java, there is a possible way to trigger a persistent DoS due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitat...
CVE-2023-21034
- EPSS 0%
- Veröffentlicht 24.03.2023 20:15:13
- Zuletzt bearbeitet 26.02.2025 21:15:14
In multiple functions of SensorService.cpp, there is a possible access of accurate sensor data due to a permissions bypass. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exp...
CVE-2023-21035
- EPSS 0.01%
- Veröffentlicht 24.03.2023 20:15:13
- Zuletzt bearbeitet 25.02.2025 15:15:14
In multiple functions of BackupHelper.java, there is a possible way for an app to get permissions previously granted to another app with the same package name due to a permissions bypass. This could lead to local escalation of privilege with no addit...
CVE-2023-21036
- EPSS 0.19%
- Veröffentlicht 24.03.2023 20:15:13
- Zuletzt bearbeitet 25.02.2025 15:15:14
In BitmapExport.java, there is a possible failure to truncate images due to a logic error in the code.Product: AndroidVersions: Android kernelAndroid ID: A-264261868References: N/A
CVE-2023-21038
- EPSS 0.02%
- Veröffentlicht 24.03.2023 20:15:13
- Zuletzt bearbeitet 25.02.2025 15:15:14
In cs40l2x_cp_trigger_queue_show of cs40l2x.c, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation....
CVE-2023-21039
- EPSS 0.02%
- Veröffentlicht 24.03.2023 20:15:13
- Zuletzt bearbeitet 25.02.2025 15:15:14
In dumpstateBoard of Dumpstate.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Prod...