CVE-2011-2343
- EPSS 0.02%
- Veröffentlicht 12.02.2020 20:15:13
- Zuletzt bearbeitet 21.11.2024 01:28:04
The Bluetooth stack in Android before 2.3.6 allows a physically proximate attacker to obtain contact information via an AT phonebook transfer.
CVE-2011-3901
- EPSS 0.29%
- Veröffentlicht 12.02.2020 20:15:13
- Zuletzt bearbeitet 21.11.2024 01:31:30
Android SQLite Journal before 4.0.1 has an information disclosure vulnerability.
- EPSS 2.2%
- Veröffentlicht 07.02.2020 16:15:09
- Zuletzt bearbeitet 21.11.2024 02:16:33
A Code Execution vulnerability exists in Android prior to 4.4.0 related to the addJavascriptInterface method and the accessibility and accessibilityTraversal objects, which could let a remote malicious user execute arbitrary code.
CVE-2019-11516
- EPSS 0.62%
- Veröffentlicht 05.02.2020 17:15:10
- Zuletzt bearbeitet 21.11.2024 04:21:15
An issue was discovered in the Bluetooth component of the Cypress (formerly owned by Broadcom) Wireless IoT codebase. Extended Inquiry Responses (EIRs) are improperly handled, which causes a heap-based buffer overflow during device inquiry. This over...
CVE-2019-19273
- EPSS 0.01%
- Veröffentlicht 04.02.2020 16:15:12
- Zuletzt bearbeitet 21.11.2024 04:34:28
On Samsung mobile devices with O(8.0) and P(9.0) software and an Exynos 8895 chipset, RKP (aka the Samsung Hypervisor EL2 implementation) allows arbitrary memory write operations. The Samsung ID is SVE-2019-16265.
CVE-2015-1525
- EPSS 0.05%
- Veröffentlicht 24.01.2020 18:15:12
- Zuletzt bearbeitet 21.11.2024 02:25:35
audio/AudioPolicyManagerBase.cpp in Android before 5.1 allows attackers to cause a denial of service (audio_policy application outage) via a crafted application that provides a NULL device address.
CVE-2015-1530
- EPSS 0.06%
- Veröffentlicht 24.01.2020 18:15:12
- Zuletzt bearbeitet 21.11.2024 02:25:36
media/libmedia/IAudioPolicyService.cpp in Android before 5.1 allows attackers to execute arbitrary code with media_server privileges or cause a denial of service (integer overflow) via a crafted application that provides an invalid array size.
CVE-2013-6792
- EPSS 2.77%
- Veröffentlicht 23.01.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 01:59:42
Google Android prior to 4.4 has an APK Signature Security Bypass Vulnerability
CVE-2020-0003
- EPSS 0.01%
- Veröffentlicht 08.01.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:43
In onCreate of InstallStart.java, there is a possible package validation bypass due to a time-of-check time-of-use vulnerability. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is nee...
CVE-2020-0004
- EPSS 0.04%
- Veröffentlicht 08.01.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:43
In generateCrop of WallpaperManagerService.java, there is a possible sysui crash due to image exceeding maximum texture size. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed fo...