Google

Android

7895 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.03%
  • Veröffentlicht 10.03.2020 20:15:20
  • Zuletzt bearbeitet 21.11.2024 04:52:44

In get_auth_result of fpc_ta_hw_auth.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.P...

  • EPSS 0.04%
  • Veröffentlicht 10.03.2020 20:15:20
  • Zuletzt bearbeitet 21.11.2024 04:52:44

In fpc_ta_pn_get_unencrypted_image of fpc_ta_pn.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exp...

  • EPSS 0.03%
  • Veröffentlicht 10.03.2020 20:15:20
  • Zuletzt bearbeitet 21.11.2024 04:52:46

In the WifiConfigManager, there is a possible storage of location history which can only be deleted by triggering a factory reset. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed...

  • EPSS 0.04%
  • Veröffentlicht 10.03.2020 20:15:20
  • Zuletzt bearbeitet 21.11.2024 04:52:46

In triggerAugmentedAutofillLocked and related functions of Session.java, it is possible for Augmented Autofill to display sensitive information to the user inappropriately. This could lead to local information disclosure with no additional execution ...

  • EPSS 1.77%
  • Veröffentlicht 10.03.2020 20:15:20
  • Zuletzt bearbeitet 21.11.2024 04:52:46

In ih264d_release_display_bufs of ih264d_utils.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitat...

  • EPSS 0.04%
  • Veröffentlicht 10.03.2020 20:15:20
  • Zuletzt bearbeitet 21.11.2024 04:52:47

In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to stale pointer. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitati...

  • EPSS 4.51%
  • Veröffentlicht 10.03.2020 20:15:20
  • Zuletzt bearbeitet 21.11.2024 04:52:47

In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure if error correction were turned on, with no additional execution privileges needed. User i...

  • EPSS 0.89%
  • Veröffentlicht 22.02.2020 00:15:10
  • Zuletzt bearbeitet 21.11.2024 05:39:35

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Samsung Galaxy S10 Firmware G973FXXS3ASJA, O(8.x), P(9.0), Q(10.0) devices with Exynos chipsets. User interaction is required to exploit this vulnerabil...

  • EPSS 0.15%
  • Veröffentlicht 21.02.2020 02:15:10
  • Zuletzt bearbeitet 21.11.2024 02:18:15

btif/src/btif_dm.c in Android before 5.1 does not properly enforce the temporary nature of a Bluetooth pairing, which allows user-assisted remote attackers to bypass intended access restrictions via crafted Bluetooth packets after the tapping of a cr...

Exploit
  • EPSS 1.97%
  • Veröffentlicht 20.02.2020 16:15:11
  • Zuletzt bearbeitet 21.11.2024 02:18:19

Directory traversal vulnerability in the Android debug bridge (aka adb) in Android 4.0.4 allows physically proximate attackers with a direct connection to the target Android device to write to arbitrary files owned by system via a .. (dot dot) in the...