CVE-2021-0682
- EPSS 0.03%
- Veröffentlicht 06.10.2021 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:43:08
In sendAccessibilityEvent of NotificationManagerService.java, there is a possible disclosure of notification data due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interacti...
CVE-2021-0683
- EPSS 0.02%
- Veröffentlicht 06.10.2021 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:43:08
In runTraceIpcStop of ActivityManagerShellCommand.java, there is a possible deletion of system files due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not ne...
CVE-2021-0684
- EPSS 0.03%
- Veröffentlicht 06.10.2021 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:43:08
In TouchInputMapper::sync of TouchInputMapper.cpp, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for ex...
CVE-2021-0685
- EPSS 0.03%
- Veröffentlicht 06.10.2021 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:43:08
In ParsedIntentInfo of ParsedIntentInfo.java, there is a possible parcel serialization/deserialization mismatch due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User inter...
CVE-2021-0686
- EPSS 0.02%
- Veröffentlicht 06.10.2021 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:43:08
In getDefaultSmsPackage of RoleManagerService.java, there is a possible way to get information about the default sms app of a different device user due to a missing permission check. This could lead to local information disclosure with no additional ...
- EPSS 0.03%
- Veröffentlicht 06.10.2021 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:43:08
In ellipsize of Layout.java, there is a possible ANR due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: An...
- EPSS 0.01%
- Veröffentlicht 06.10.2021 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:43:09
In lockNow of PhoneWindowManager.java, there is a possible lock screen bypass due to a race condition. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: An...
CVE-2021-0689
- EPSS 0.05%
- Veröffentlicht 06.10.2021 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:43:09
In RGB_to_BGR1_portable of SkSwizzler_opts.h, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exp...
CVE-2021-23243
- EPSS 0.04%
- Veröffentlicht 27.09.2021 13:15:07
- Zuletzt bearbeitet 21.11.2024 05:51:26
In Oppo's battery application, the third-party SDK provides the function of loading a third-party Provider, which can be used.
CVE-2021-0421
- EPSS 0.02%
- Veröffentlicht 27.09.2021 12:15:07
- Zuletzt bearbeitet 21.11.2024 05:42:41
In memory management driver, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Pa...