CVE-2022-26455
- EPSS 0.01%
- Veröffentlicht 06.09.2022 18:15:11
- Zuletzt bearbeitet 21.11.2024 06:53:58
In gz, there is a possible memory corruption due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07177858; Issue ID:...
CVE-2022-26456
- EPSS 0.02%
- Veröffentlicht 06.09.2022 18:15:11
- Zuletzt bearbeitet 21.11.2024 06:53:59
In vow, there is a possible information disclosure due to a symbolic link following. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06545473; Iss...
CVE-2022-26457
- EPSS 0.02%
- Veröffentlicht 06.09.2022 18:15:11
- Zuletzt bearbeitet 21.11.2024 06:53:59
In vow, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07138490; Issue ID...
CVE-2021-0891
- EPSS 0.11%
- Veröffentlicht 24.08.2022 14:15:09
- Zuletzt bearbeitet 21.11.2024 05:43:13
An unprivileged app can trigger PowerVR driver to return an uninitialized heap memory causing information disclosure.Product: AndroidVersions: Android SoCAndroid ID: A-236849490
CVE-2021-0946
- EPSS 0.12%
- Veröffentlicht 24.08.2022 14:15:09
- Zuletzt bearbeitet 21.11.2024 05:43:17
The method PVRSRVBridgePMRPDumpSymbolicAddr allocates puiMemspaceNameInt on the heap, fills the contents of the buffer via PMR_PDumpSymbolicAddr, and then copies the buffer to userspace. The method PMR_PDumpSymbolicAddr may fail, and if it does the b...
CVE-2021-0947
- EPSS 0.12%
- Veröffentlicht 24.08.2022 14:15:09
- Zuletzt bearbeitet 21.11.2024 05:43:17
The method PVRSRVBridgeTLDiscoverStreams allocates puiStreamsInt on the heap, fills the contents of the buffer via TLServerDiscoverStreamsKM, and then copies the buffer to userspace. The method TLServerDiscoverStreamsKM may fail for several reasons i...
CVE-2021-39815
- EPSS 0.15%
- Veröffentlicht 24.08.2022 14:15:09
- Zuletzt bearbeitet 21.11.2024 06:20:17
The PowerVR GPU driver allows unprivileged apps to allocated pinned memory, unpin it (which makes it available to be freed), and continue using the page in GPU calls. No privileges required and this results in kernel memory corruption.Product: Androi...
CVE-2022-20122
- EPSS 0.16%
- Veröffentlicht 24.08.2022 14:15:09
- Zuletzt bearbeitet 21.11.2024 06:42:12
The PowerVR GPU driver allows unprivileged apps to allocated pinned memory, unpin it (which makes it available to be freed), and continue using the page in GPU calls. No privileges required and this results in kernel memory corruption.Product: Androi...
CVE-2021-0698
- EPSS 0.02%
- Veröffentlicht 24.08.2022 14:15:08
- Zuletzt bearbeitet 21.11.2024 05:43:10
In PVRSRVBridgeHeapCfgHeapDetails, there is a possible leak of kernel heap content due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitat...
CVE-2021-0887
- EPSS 0.02%
- Veröffentlicht 24.08.2022 14:15:08
- Zuletzt bearbeitet 21.11.2024 05:43:13
In PVRSRVBridgeHeapCfgHeapConfigName, there is a possible leak of kernel heap content due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploi...