CVE-2015-1530
- EPSS 0.06%
- Veröffentlicht 24.01.2020 18:15:12
- Zuletzt bearbeitet 21.11.2024 02:25:36
media/libmedia/IAudioPolicyService.cpp in Android before 5.1 allows attackers to execute arbitrary code with media_server privileges or cause a denial of service (integer overflow) via a crafted application that provides an invalid array size.
CVE-2013-6792
- EPSS 2.77%
- Veröffentlicht 23.01.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 01:59:42
Google Android prior to 4.4 has an APK Signature Security Bypass Vulnerability
CVE-2020-0003
- EPSS 0.01%
- Veröffentlicht 08.01.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:43
In onCreate of InstallStart.java, there is a possible package validation bypass due to a time-of-check time-of-use vulnerability. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is nee...
CVE-2020-0004
- EPSS 0.04%
- Veröffentlicht 08.01.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:43
In generateCrop of WallpaperManagerService.java, there is a possible sysui crash due to image exceeding maximum texture size. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed fo...
CVE-2020-0006
- EPSS 0.24%
- Veröffentlicht 08.01.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:44
In rw_i93_send_cmd_write_single_block of rw_i93.cc, there is a possible information disclosure of heap memory due to uninitialized data. This could lead to remote information disclosure in the NFC server with no additional execution privileges needed...
CVE-2020-0007
- EPSS 0.02%
- Veröffentlicht 08.01.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:44
In flattenString8 of Sensor.cpp, there is a possible information disclosure of heap memory due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for e...
CVE-2020-0008
- EPSS 0.04%
- Veröffentlicht 08.01.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:44
In LowEnergyClient::MtuChangedCallback of low_energy_client.cc, there is a possible out of bounds read due to a race condition. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not ne...
CVE-2020-0001
- EPSS 0.1%
- Veröffentlicht 08.01.2020 19:15:12
- Zuletzt bearbeitet 21.11.2024 04:52:43
In getProcessRecordLocked of ActivityManagerService.java isolated apps are not handled correctly. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Produc...
CVE-2020-0002
- EPSS 0.29%
- Veröffentlicht 08.01.2020 19:15:12
- Zuletzt bearbeitet 21.11.2024 04:52:43
In ih264d_init_decoder of ih264d_api.c, there is a possible out of bounds write due to a use after free. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation Product: And...
CVE-2016-5346
- EPSS 0.11%
- Veröffentlicht 08.01.2020 19:15:10
- Zuletzt bearbeitet 21.11.2024 02:54:08
An Information Disclosure vulnerability exists in the Google Pixel/Pixel SL Qualcomm Avtimer Driver due to a NULL pointer dereference when processing an accept system call by the user process on AF_MSM_IPC sockets, which could let a local malicious u...