CVE-2021-0918
- EPSS 0.16%
- Veröffentlicht 15.12.2021 19:15:10
- Zuletzt bearbeitet 21.11.2024 05:43:14
In gatt_process_notification of gatt_cl.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed ...
- EPSS 0.04%
- Veröffentlicht 15.12.2021 19:15:10
- Zuletzt bearbeitet 21.11.2024 05:43:14
In getService of IServiceManager.cpp, there is a possible unhandled exception due to an integer overflow. This could lead to local denial of service making the lockscreen unusable with no additional execution privileges needed. User interaction is ne...
CVE-2021-25513
- EPSS 0.02%
- Veröffentlicht 08.12.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:55:08
An improper privilege management vulnerability in Apps Edge application prior to SMR Dec-2021 Release 1 allows unauthorized access to some device data on the lockscreen.
CVE-2021-25514
- EPSS 0.07%
- Veröffentlicht 08.12.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:55:08
An improper intent redirection handling in Tags prior to SMR Dec-2021 Release 1 allows attackers to access sensitive information.
CVE-2021-25515
- EPSS 0.02%
- Veröffentlicht 08.12.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:55:09
An improper usage of implicit intent in SemRewardManager prior to SMR Dec-2021 Release 1 allows attackers to access BSSID.
CVE-2021-25516
- EPSS 0.12%
- Veröffentlicht 08.12.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:55:09
An improper check or handling of exceptional conditions in Exynos baseband prior to SMR Dec-2021 Release 1 allows attackers to track locations.
CVE-2021-25517
- EPSS 0.02%
- Veröffentlicht 08.12.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:55:09
An improper input validation vulnerability in LDFW prior to SMR Dec-2021 Release 1 allows attackers to perform arbitrary code execution.
CVE-2021-25518
- EPSS 0.02%
- Veröffentlicht 08.12.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:55:09
An improper boundary check in secure_log of LDFW and BL31 prior to SMR Dec-2021 Release 1 allows arbitrary memory write and code execution.
CVE-2021-25519
- EPSS 0.02%
- Veröffentlicht 08.12.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 05:55:09
An improper access control vulnerability in CPLC prior to SMR Dec-2021 Release 1 allows local attackers to access CPLC information without permission.
CVE-2021-25510
- EPSS 0.02%
- Veröffentlicht 08.12.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 05:55:08
An improper validation vulnerability in FilterProvider prior to SMR Dec-2021 Release 1 allows local arbitrary code execution.