Google

Android

7895 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:23

In setPackageStoppedState of PackageManagerService.java, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: And...

  • EPSS 0.01%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:23

In onResume of NotificationAccessDetails.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional...

  • EPSS 0.01%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:23

In checkExistsAndEnforceCannotModifyImmutablyRestrictedPermission of PermissionManagerService.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could le...

  • EPSS 0.01%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In getNetworkTypeForSubscriber of PhoneInterfaceManager.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure wit...

  • EPSS 0.01%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In getMeidForSlot of PhoneInterfaceManager.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no addition...

  • EPSS 0.01%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In onCreate of UsbPermissionActivity.java, there is a possible way to grant an app access to USB without informed user consent due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed....

  • EPSS 0.02%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In AdapterService and GattService definition of AndroidManifest.xml, there is a possible way to disable bluetooth connection due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges n...

  • EPSS 0.01%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In adjustStreamVolume of AudioService.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional ex...

  • EPSS 0.02%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In snoozeNotification of NotificationListenerService.java, there is a possible permission confusion due to a misleading user consent dialog. This could lead to local escalation of privilege with User execution privileges needed. User interaction is n...

  • EPSS 0.02%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In snoozeNotification of NotificationListenerService.java, there is a possible way to disable notification for an arbitrary user due to improper input validation. This could lead to local escalation of privilege with User execution privileges needed....