CVE-2022-20393
- EPSS 0.02%
- Veröffentlicht 13.09.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 06:42:43
In extract3GPPGlobalDescriptions of TextDescriptions.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure from the media server with no additional execution privileges needed. User in...
CVE-2022-20395
- EPSS 0.01%
- Veröffentlicht 13.09.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 06:42:44
In checkAccess of MediaProvider.java, there is a possible file deletion due to a path traversal error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Pr...
CVE-2022-20396
- EPSS 0.01%
- Veröffentlicht 13.09.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 06:42:44
In SettingsActivity.java, there is a possible way to make a device discoverable over Bluetooth, without permission or user interaction, due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privile...
CVE-2022-20398
- EPSS 0.01%
- Veröffentlicht 13.09.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 06:42:44
In addOrUpdateNetwork of WifiServiceImpl.java, there is a possible way for a guest user to configure Wi-Fi due to a permissions bypass. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not ne...
CVE-2022-20399
- EPSS 0.02%
- Veröffentlicht 13.09.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 06:42:44
In the SEPolicy configuration of system apps, there is a possible access to the 'ip' utility due to an insecure default value. This could lead to local information disclosure of network data with no additional execution privileges needed. User intera...
- EPSS 0.01%
- Veröffentlicht 13.09.2022 20:15:08
- Zuletzt bearbeitet 21.11.2024 05:43:10
In PVRSRVRGXSubmitTransferKM of rgxtransfer.c, there is a possible user after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitati...
CVE-2021-0871
- EPSS 0.02%
- Veröffentlicht 13.09.2022 20:15:08
- Zuletzt bearbeitet 21.11.2024 05:43:11
In PVRSRVBridgePMRPDumpSymbolicAddr of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional executio...
CVE-2021-0942
- EPSS 0.15%
- Veröffentlicht 13.09.2022 20:15:08
- Zuletzt bearbeitet 21.11.2024 05:43:17
The path in this case is a little bit convoluted. The end result is that via an ioctl an untrusted app can control the ui32PageIndex offset in the expression:sPA.uiAddr = page_to_phys(psOSPageArrayData->pagearray[ui32PageIndex]);With the current PoC ...
CVE-2022-39119
- EPSS 0.01%
- Veröffentlicht 09.09.2022 15:15:14
- Zuletzt bearbeitet 21.11.2024 07:17:36
In network service, there is a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed
CVE-2022-36858
- EPSS 0.02%
- Veröffentlicht 09.09.2022 15:15:12
- Zuletzt bearbeitet 21.11.2024 07:13:54
A heap-based overflow vulnerability in GetCorrectDbLanguageTypeEsPKc() function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Release 1 allows attacker to cause memory access fault.