Google

Android

7895 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Veröffentlicht 07.07.2020 14:15:12
  • Zuletzt bearbeitet 21.11.2024 05:05:47

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. StickerProvider allows directory traversal for access to system files. The Samsung ID is SVE-2020-17665 (July 2020).

  • EPSS 0.05%
  • Veröffentlicht 07.07.2020 14:15:12
  • Zuletzt bearbeitet 21.11.2024 05:05:48

An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can trigger an out-of-bounds access and device reset via a 4K wallpaper image because ImageProcessHelper mishandles boundary checks. The Samsung ID is SVE-2020-18056 (...

  • EPSS 0.15%
  • Veröffentlicht 16.06.2020 14:15:10
  • Zuletzt bearbeitet 21.11.2024 04:53:08

This is an unbounded write into kernel global memory, via a user-controlled buffer size.Product: AndroidVersions: Android kernelAndroid ID: A-135130450

  • EPSS 0.15%
  • Veröffentlicht 16.06.2020 14:15:10
  • Zuletzt bearbeitet 21.11.2024 04:53:09

Function abc_pcie_issue_dma_xfer_sync creates a transfer object, adds it to the session object then continues to work with it. A concurrent thread could retrieve created transfer object from the session object and delete it using abc_pcie_dma_user_xf...

  • EPSS 0.02%
  • Veröffentlicht 16.06.2020 14:15:10
  • Zuletzt bearbeitet 21.11.2024 04:53:09

In crus_afe_get_param of msm-cirrus-playback.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for...

  • EPSS 0.15%
  • Veröffentlicht 16.06.2020 14:15:10
  • Zuletzt bearbeitet 21.11.2024 04:53:09

In crus_sp_shared_ioctl we first copy 4 bytes from userdata into "size" variable, and then use that variable as the size parameter for "copy_from_user", ending up overwriting memory following "crus_sp_hdr". "crus_sp_hdr" is a static variable, of type...

  • EPSS 0.41%
  • Veröffentlicht 11.06.2020 15:15:18
  • Zuletzt bearbeitet 21.11.2024 04:53:07

In hevcd_fmt_conv_420sp_to_420sp_av8 of ihevcd_fmt_conv_420sp_to_420sp.s, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User int...

  • EPSS 0.31%
  • Veröffentlicht 11.06.2020 15:15:18
  • Zuletzt bearbeitet 21.11.2024 04:53:07

In ce_t4t_process_select_file_cmd of ce_t4t.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed f...

  • EPSS 0.01%
  • Veröffentlicht 11.06.2020 15:15:18
  • Zuletzt bearbeitet 21.11.2024 04:53:07

In onCreate of ConfirmConnectActivity.java, there is a possible leak of Bluetooth information due to a permissions bypass. This could lead to local escalation of privilege that exposes a pairing Bluetooth MAC address with no additional execution priv...

  • EPSS 0.02%
  • Veröffentlicht 11.06.2020 15:15:18
  • Zuletzt bearbeitet 21.11.2024 04:53:07

In phNciNfc_RecvMfResp of phNxpExtns_MifareStd.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for ex...