CVE-2024-47029
- EPSS 0.01%
- Veröffentlicht 25.10.2024 11:15:17
- Zuletzt bearbeitet 28.10.2024 17:57:41
In TrustySharedMemoryManager::GetSharedMemory of ondevice/trusty/trusty_shared_memory_manager.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution pr...
CVE-2024-47030
- EPSS 0.01%
- Veröffentlicht 25.10.2024 11:15:17
- Zuletzt bearbeitet 24.07.2025 15:17:42
Android before 2024-10-05 on Google Pixel devices allows information disclosure in the ACPM component, A-315191818.
CVE-2024-47031
- EPSS 0.01%
- Veröffentlicht 25.10.2024 11:15:17
- Zuletzt bearbeitet 24.07.2025 15:17:36
Android before 2024-10-05 on Google Pixel devices allows privilege escalation in the ABL component, A-329163861.
CVE-2024-47033
- EPSS 0.01%
- Veröffentlicht 25.10.2024 11:15:17
- Zuletzt bearbeitet 28.10.2024 17:57:30
In lwis_allocator_free of lwis_allocator.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitatio...
CVE-2024-47034
- EPSS 0.01%
- Veröffentlicht 25.10.2024 11:15:17
- Zuletzt bearbeitet 28.10.2024 17:56:51
there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2024-47035
- EPSS 0.01%
- Veröffentlicht 25.10.2024 11:15:17
- Zuletzt bearbeitet 31.10.2024 00:05:18
In vring_init of external/headers/include/virtio/virtio_ring.h, there is a possible out of bounds write due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interactio...
CVE-2024-47041
- EPSS 0.01%
- Veröffentlicht 25.10.2024 11:15:17
- Zuletzt bearbeitet 04.11.2024 22:16:13
In valid_address of syscall.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2024-44098
- EPSS 0.01%
- Veröffentlicht 25.10.2024 11:15:16
- Zuletzt bearbeitet 24.07.2025 15:18:30
In lwis_device_event_states_clear_locked of lwis_event.c, there is a possible privilege escalation due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed f...
CVE-2024-44099
- EPSS 0.01%
- Veröffentlicht 25.10.2024 11:15:16
- Zuletzt bearbeitet 28.10.2024 13:56:37
There is a possible Local bypass of user interaction due to an insecure default value. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2024-44100
- EPSS 0.06%
- Veröffentlicht 25.10.2024 11:15:16
- Zuletzt bearbeitet 28.10.2024 13:50:50
Android before 2024-10-05 on Google Pixel devices allows information disclosure in the modem component, A-299774545.