- EPSS 0.01%
- Veröffentlicht 14.01.2022 20:15:11
- Zuletzt bearbeitet 21.11.2024 06:19:59
In init of vendor_graphicbuffer_meta.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Pro...
CVE-2021-39680
- EPSS 0.02%
- Veröffentlicht 14.01.2022 20:15:11
- Zuletzt bearbeitet 21.11.2024 06:19:59
In sec_SHA256_Transform of sha256_core.c, there is a possible way to read heap data due to uninitialized data. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Pr...
CVE-2021-39681
- EPSS 0.02%
- Veröffentlicht 14.01.2022 20:15:11
- Zuletzt bearbeitet 21.11.2024 06:19:59
In delete_protocol of main.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Produ...
CVE-2021-39682
- EPSS 0.01%
- Veröffentlicht 14.01.2022 20:15:11
- Zuletzt bearbeitet 21.11.2024 06:19:59
In mgm_alloc_page of memory_group_manager.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for...
CVE-2021-39683
- EPSS 0.01%
- Veröffentlicht 14.01.2022 20:15:11
- Zuletzt bearbeitet 21.11.2024 06:19:59
In copy_from_mbox of sss_ice_util.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Prod...
CVE-2021-39684
- EPSS 0.05%
- Veröffentlicht 14.01.2022 20:15:11
- Zuletzt bearbeitet 21.11.2024 06:20:00
In target_init of gs101/abl/target/slider/target.c, there is a possible allocation of RWX memory due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is no...
CVE-2021-39618
- EPSS 0.01%
- Veröffentlicht 14.01.2022 20:15:10
- Zuletzt bearbeitet 21.11.2024 06:19:48
In multiple methods of EuiccNotificationManager.java, there is a possible way to install existing packages without user consent due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. Us...
CVE-2021-39620
- EPSS 0.02%
- Veröffentlicht 14.01.2022 20:15:10
- Zuletzt bearbeitet 21.11.2024 06:19:49
In ipcSetDataReference of Parcel.cpp, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation....
CVE-2021-39621
- EPSS 0.01%
- Veröffentlicht 14.01.2022 20:15:10
- Zuletzt bearbeitet 21.11.2024 06:19:49
In sendLegacyVoicemailNotification of LegacyModeSmsHandler.java, there is a possible permissions bypass due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not ne...
CVE-2021-39622
- EPSS 0.01%
- Veröffentlicht 14.01.2022 20:15:10
- Zuletzt bearbeitet 21.11.2024 06:19:49
In GBoard, there is a possible way to bypass Factory Reset Protection due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation....