Google

Android

7931 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Veröffentlicht 22.10.2021 14:15:08
  • Zuletzt bearbeitet 21.11.2024 05:43:05

In VectorDrawable::VectorDrawable of VectorDrawable.java, there is a possible way to introduce a memory corruption due to sharing of not thread-safe objects. This could lead to local escalation of privilege with no additional execution privileges nee...

  • EPSS 0.02%
  • Veröffentlicht 22.10.2021 14:15:08
  • Zuletzt bearbeitet 21.11.2024 05:43:10

In RevertActiveSessions of apexd.cpp, there is a possible way to share the wrong file due to an unintentional MediaStore downgrade. This could lead to local information disclosure with no additional execution privileges needed. User interaction is ne...

  • EPSS 0.02%
  • Veröffentlicht 22.10.2021 14:15:08
  • Zuletzt bearbeitet 21.11.2024 05:43:10

In SecondStageMain of init.cpp, there is a possible use after free due to incorrect shared_ptr usage. This could lead to local escalation of privilege if the attacker has physical access to the device, with no additional execution privileges needed. ...

  • EPSS 0.01%
  • Veröffentlicht 22.10.2021 14:15:08
  • Zuletzt bearbeitet 21.11.2024 05:43:10

In sanitizeSbn of NotificationManagerService.java, there is a possible way to keep service running in foreground and keep granted permissions due to Bypass of Background Service Restrictions. This could lead to local escalation of privilege with no a...

  • EPSS 0.05%
  • Veröffentlicht 22.10.2021 14:15:08
  • Zuletzt bearbeitet 21.11.2024 05:43:10

In startListening of PluginManagerImpl.java, there is a possible way to disable arbitrary app components due to a missing permission check. This could lead to local denial of service with no additional execution privileges needed. User interaction is...

  • EPSS 0.03%
  • Veröffentlicht 22.10.2021 14:15:08
  • Zuletzt bearbeitet 21.11.2024 05:43:11

In runDumpHeap of ActivityManagerShellCommand.java, there is a possible deletion of system files due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed...

  • EPSS 0.95%
  • Veröffentlicht 22.10.2021 14:15:08
  • Zuletzt bearbeitet 21.11.2024 05:43:11

In RW_SetActivatedTagType of rw_main.cc, there is possible memory corruption due to a race condition. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: An...

  • EPSS 0.01%
  • Veröffentlicht 22.10.2021 14:15:07
  • Zuletzt bearbeitet 21.11.2024 05:42:47

In multiple methods of AAudioService, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: Android...

  • EPSS 0.01%
  • Veröffentlicht 22.10.2021 14:15:07
  • Zuletzt bearbeitet 21.11.2024 05:43:04

In getAllSubInfoList of SubscriptionController.java, there is a possible way to retrieve a long term identifier without the correct permissions due to a missing permission check. This could lead to local information disclosure with User execution pri...

  • EPSS 0.03%
  • Veröffentlicht 22.10.2021 14:15:07
  • Zuletzt bearbeitet 21.11.2024 05:43:04

In loadLabel of PackageItemInfo.java, there is a possible way to DoS a device by having a long label in an app due to incorrect input validation. This could lead to local denial of service with no additional execution privileges needed. User interact...