CVE-2021-0981
- EPSS 0.02%
- Veröffentlicht 15.12.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:43:20
In enqueueNotificationInternal of NotificationManagerService.java, there is a possible way to run a foreground service without showing a notification due to improper input validation. This could lead to local escalation of privilege with no additiona...
CVE-2021-0982
- EPSS 0.01%
- Veröffentlicht 15.12.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:43:20
In getOrganizationNameForUser of DevicePolicyManagerService.java, there is a possible organization name disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User...
CVE-2021-0983
- EPSS 0.02%
- Veröffentlicht 15.12.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:43:20
In createAdminSupportIntent of DevicePolicyManagerService.java, there is a possible disclosure of information about installed device/profile owner package name due to side channel information disclosure. This could lead to local information disclosur...
CVE-2021-0984
- EPSS 0.02%
- Veröffentlicht 15.12.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:43:21
In onNullBinding of ManagedServices.java, there is a possible permission bypass due to an incorrectly unbound service. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for...
CVE-2021-0985
- EPSS 0.01%
- Veröffentlicht 15.12.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:43:21
In onReceive of AlertReceiver.java, there is a possible way to dismiss system dialog due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed fo...
CVE-2021-0986
- EPSS 0.02%
- Veröffentlicht 15.12.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:43:21
In hasGrantedPolicy of DevicePolicyManagerService.java, there is a possible information disclosure about the device owner, profile owner, or device admin due to a logic error in the code. This could lead to local information disclosure with no additi...
CVE-2021-0987
- EPSS 0.01%
- Veröffentlicht 15.12.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:43:21
In getNeighboringCellInfo of PhoneInterfaceManager.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no ...
CVE-2021-0988
- EPSS 0.01%
- Veröffentlicht 15.12.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:43:21
In getLaunchedFromUid and getLaunchedFromPackage of ActivityClientController.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local infor...
CVE-2021-0989
- EPSS 0.01%
- Veröffentlicht 15.12.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:43:21
In hasManageOngoingCallsPermission of TelecomServiceImpl.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure wi...
CVE-2021-0990
- EPSS 0.01%
- Veröffentlicht 15.12.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:43:21
In getDeviceId of PhoneSubInfoController.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional...