CVE-2021-0542
- EPSS 0.02%
- Veröffentlicht 22.06.2021 12:15:09
- Zuletzt bearbeitet 21.11.2024 05:42:54
In updateNotification of BeamTransferManager.java, there is a missing permission check. This could lead to local information disclosure of paired Bluetooth addresses with no additional execution privileges needed. User interaction is needed for explo...
CVE-2021-0543
- EPSS 0.02%
- Veröffentlicht 22.06.2021 12:15:09
- Zuletzt bearbeitet 21.11.2024 05:42:54
In phNxpNciHal_process_ext_rsp of phNxpNciHal_ext.cc, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exp...
CVE-2021-0544
- EPSS 0.02%
- Veröffentlicht 22.06.2021 12:15:09
- Zuletzt bearbeitet 21.11.2024 05:42:54
In phNxpNciHal_print_res_status of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exp...
CVE-2021-0545
- EPSS 0.02%
- Veröffentlicht 22.06.2021 12:15:09
- Zuletzt bearbeitet 21.11.2024 05:42:54
In phNxpNciHal_print_res_status of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the NFC server with System execution privileges needed. User interaction is ...
CVE-2021-0546
- EPSS 0.02%
- Veröffentlicht 22.06.2021 12:15:09
- Zuletzt bearbeitet 21.11.2024 05:42:54
In phNxpNciHal_print_res_status of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exp...
CVE-2021-0547
- EPSS 0.01%
- Veröffentlicht 22.06.2021 12:15:09
- Zuletzt bearbeitet 21.11.2024 05:42:54
In onReceive of NetInitiatedActivity.java, there is a possible way to supply an attacker-controlled value to a GPS HAL handler due to a missing permission check. This could lead to local escalation of privilege that may result in undefined behavior i...
CVE-2021-0548
- EPSS 0.02%
- Veröffentlicht 22.06.2021 12:15:09
- Zuletzt bearbeitet 21.11.2024 05:42:54
In rw_i93_send_to_lower of rw_i93.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitat...
CVE-2021-0549
- EPSS 0.02%
- Veröffentlicht 22.06.2021 12:15:09
- Zuletzt bearbeitet 21.11.2024 05:42:54
In sspRequestCallback of BondStateMachine.java, there is a possible leak of Bluetooth MAC addresses due to log information disclosure. This could lead to local information disclosure with System execution privileges needed. User interaction is not ne...
CVE-2021-0550
- EPSS 0.01%
- Veröffentlicht 22.06.2021 12:15:09
- Zuletzt bearbeitet 21.11.2024 05:42:54
In onLoadFailed of AnnotateActivity.java, there is a possible way to gain WRITE_EXTERNAL_STORAGE permissions without user consent due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges neede...
CVE-2021-0551
- EPSS 0.35%
- Veröffentlicht 22.06.2021 12:15:09
- Zuletzt bearbeitet 21.11.2024 05:42:55
In bind of MediaControlPanel.java, there is a possible way to lock up the system UI using a malicious media file due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User intera...