Google

Android

7931 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Veröffentlicht 15.03.2020 22:15:12
  • Zuletzt bearbeitet 21.11.2024 04:40:12

In StatsService, there is a possible out of bounds read. This could lead to local information disclosure if UBSAN were not enabled, with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Vers...

  • EPSS 0.55%
  • Veröffentlicht 10.03.2020 21:15:13
  • Zuletzt bearbeitet 21.11.2024 04:52:50

In Euicc, there is a possible information disclosure due to an included test Certificate. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: Androi...

  • EPSS 0.03%
  • Veröffentlicht 10.03.2020 21:15:13
  • Zuletzt bearbeitet 21.11.2024 04:52:50

In SurfaceFlinger, it is possible to override UI confirmation screen protected by the TEE. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVe...

  • EPSS 0.03%
  • Veröffentlicht 10.03.2020 21:15:13
  • Zuletzt bearbeitet 21.11.2024 04:52:50

In the netlink driver, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions...

  • EPSS 0.03%
  • Veröffentlicht 10.03.2020 21:15:13
  • Zuletzt bearbeitet 21.11.2024 04:52:52

In several functions of NotificationManagerService.java, there are missing permission checks. This could lead to local escalation of privilege by creating fake system notifications with no additional execution privileges needed. User interaction is n...

  • EPSS 0.01%
  • Veröffentlicht 10.03.2020 21:15:13
  • Zuletzt bearbeitet 21.11.2024 04:52:52

In setBluetoothTethering of PanService.java, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege to activate tethering with no additional execution privileges needed. User interact...

  • EPSS 0.04%
  • Veröffentlicht 10.03.2020 21:15:13
  • Zuletzt bearbeitet 21.11.2024 04:52:52

In getProcessPss of ActivityManagerService.java, there is a possible side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Prod...

  • EPSS 0.03%
  • Veröffentlicht 10.03.2020 21:15:12
  • Zuletzt bearbeitet 21.11.2024 04:52:48

In setMasterMute of AudioService.java, there is a missing permission check. This could lead to local silencing of audio with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-...

  • EPSS 0.03%
  • Veröffentlicht 10.03.2020 21:15:12
  • Zuletzt bearbeitet 21.11.2024 04:52:48

In onTransact of IAudioFlinger.cpp, there is a possible stack information leak due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation....

  • EPSS 0.87%
  • Veröffentlicht 10.03.2020 21:15:12
  • Zuletzt bearbeitet 21.11.2024 04:52:48

In onReadBuffer() of StreamingSource.cpp, there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitati...