CVE-2023-21188
- EPSS 0.1%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In btm_ble_update_inq_result of btm_ble_gap.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploita...
CVE-2023-21189
- EPSS 0.09%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In startLockTaskMode of LockTaskController.java, there is a possible bypass of lock task mode due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is neede...
- EPSS 0.08%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In btm_acl_encrypt_change of btm_acl.cc, there is a possible way for a remote device to turn off encryption without resulting in a terminated connection due to an unusual root cause. This could lead to local information disclosure with no additional ...
CVE-2023-21191
- EPSS 0.1%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In fixNotification of NotificationManagerService.java, there is a possible bypass of notification hide preference due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User ...
CVE-2023-21192
- EPSS 0.1%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In setInputMethodWithSubtypeIdLocked of InputMethodManagerService.java, there is a possible way to setup input methods that are not enabled due to improper input validation. This could lead to local escalation of privilege with no additional executio...
CVE-2023-21193
- EPSS 0.44%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In VideoFrame of VideoFrame.h, there is a possible abort due to an integer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVers...
CVE-2023-21194
- EPSS 0.09%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In gatt_dbg_op_name of gatt_utils.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the Bluetooth server with System execution privileges needed. User interaction is not neede...
CVE-2023-21195
- EPSS 0.14%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:21
In btm_ble_periodic_adv_sync_tx_rcvd of btm_ble_gap.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure over Bluetooth, if the firmware were compromised with System execution pr...
CVE-2023-21196
- EPSS 0.09%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:22
In btm_ble_batchscan_filter_track_adv_vse_cback of btm_ble_batchscan.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the Bluetooth server with System execution privileges ne...
CVE-2023-21197
- EPSS 0.44%
- Veröffentlicht 28.06.2023 18:15:15
- Zuletzt bearbeitet 21.11.2024 07:42:22
In btm_acl_process_sca_cmpl_pkt of btm_acl.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed fo...