Google

Android

7931 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.01%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In getMeidForSlot of PhoneInterfaceManager.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no addition...

  • EPSS 0.01%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In onCreate of UsbPermissionActivity.java, there is a possible way to grant an app access to USB without informed user consent due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed....

  • EPSS 0.02%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In AdapterService and GattService definition of AndroidManifest.xml, there is a possible way to disable bluetooth connection due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges n...

  • EPSS 0.01%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In adjustStreamVolume of AudioService.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional ex...

  • EPSS 0.02%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In snoozeNotification of NotificationListenerService.java, there is a possible permission confusion due to a misleading user consent dialog. This could lead to local escalation of privilege with User execution privileges needed. User interaction is n...

  • EPSS 0.02%
  • Veröffentlicht 15.12.2021 19:15:13
  • Zuletzt bearbeitet 21.11.2024 05:43:24

In snoozeNotification of NotificationListenerService.java, there is a possible way to disable notification for an arbitrary user due to improper input validation. This could lead to local escalation of privilege with User execution privileges needed....

  • EPSS 0.5%
  • Veröffentlicht 15.12.2021 19:15:12
  • Zuletzt bearbeitet 21.11.2024 05:43:19

In vorbis_book_decodev_set of codebook.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitat...

  • EPSS 0.48%
  • Veröffentlicht 15.12.2021 19:15:12
  • Zuletzt bearbeitet 21.11.2024 05:43:19

In osi_malloc and osi_calloc of allocator.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation...

  • EPSS 0.35%
  • Veröffentlicht 15.12.2021 19:15:12
  • Zuletzt bearbeitet 21.11.2024 05:43:19

In getTitle of AccessPoint.java, there is a possible unhandled exception due to a missing null check. This could lead to remote denial of service if a proximal Wi-Fi AP provides invalid information with no additional execution privileges needed. User...

  • EPSS 0.02%
  • Veröffentlicht 15.12.2021 19:15:12
  • Zuletzt bearbeitet 21.11.2024 05:43:19

In createFromParcel of GpsNavigationMessage.java, there is a possible Parcel serialization/deserialization mismatch. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for e...