Google

Android

7931 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.01%
  • Veröffentlicht 10.06.2020 18:15:10
  • Zuletzt bearbeitet 21.11.2024 04:52:56

In checkSystemLocationAccess of LocationAccessPolicy.java, there is a possible bypass of user profile isolation due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interact...

  • EPSS 0.87%
  • Veröffentlicht 10.06.2020 18:15:10
  • Zuletzt bearbeitet 21.11.2024 04:52:56

In aes_cmac of aes_cmac.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution in the bluetooth server with no additional execution privileges needed. User interaction is not needed for exploi...

  • EPSS 0.01%
  • Veröffentlicht 10.06.2020 18:15:10
  • Zuletzt bearbeitet 21.11.2024 04:52:56

In addListener of RegionSamplingThread.cpp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for expl...

  • EPSS 0.14%
  • Veröffentlicht 10.06.2020 18:15:10
  • Zuletzt bearbeitet 21.11.2024 04:52:56

In addOrUpdateNetworkInternal and related functions of WifiConfigManager.java, there is a possible man in the middle attack due to improper certificate validation. This could lead to remote information disclosure with no additional execution privileg...

  • EPSS 0.03%
  • Veröffentlicht 10.06.2020 18:15:10
  • Zuletzt bearbeitet 21.11.2024 04:52:56

In updateUidProcState of AppOpsService.java, there is a possible permission bypass due to a logic error. This could lead to local information disclosure of location data with User execution privileges needed. User interaction is not needed for exploi...

  • EPSS 0.02%
  • Veröffentlicht 05.06.2020 00:15:11
  • Zuletzt bearbeitet 21.11.2024 05:01:59

An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). A dangerous AT command was made available even though it is unused. The LG ID is LVE-SMP-200010 (June 2020).

  • EPSS 0.02%
  • Veröffentlicht 05.06.2020 00:15:11
  • Zuletzt bearbeitet 21.11.2024 05:01:59

An issue was discovered on LG mobile devices with Android OS software before 2020-06-01. Local users can cause a denial of service because checking of the userdata partition is mishandled. The LG ID is LVE-SMP-200014 (June 2020).

  • EPSS 0.23%
  • Veröffentlicht 05.06.2020 00:15:10
  • Zuletzt bearbeitet 21.11.2024 05:01:58

An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can occur via a custom AT command handler buffer overflow. The LG ID is LVE-SMP-200007 (June 2020).

  • EPSS 0.22%
  • Veröffentlicht 05.06.2020 00:15:10
  • Zuletzt bearbeitet 21.11.2024 05:01:58

An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can occur via an MTK AT command handler buffer overflow. The LG ID is LVE-SMP-200008 (June 2020).

  • EPSS 0.16%
  • Veröffentlicht 05.06.2020 00:15:10
  • Zuletzt bearbeitet 21.11.2024 05:01:58

An issue was discovered on LG mobile devices with Android OS 9 and 10 (MTK chipsets). An AT command handler allows attackers to bypass intended access restrictions. The LG ID is LVE-SMP-200009 (June 2020).