Google

Android

7931 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Veröffentlicht 06.01.2020 18:15:24
  • Zuletzt bearbeitet 21.11.2024 04:51:41

In set_outbound_iatu of abc-pcie.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Prod...

  • EPSS 0.02%
  • Veröffentlicht 06.01.2020 18:15:24
  • Zuletzt bearbeitet 21.11.2024 04:51:41

In DCRYPTO_equals of compare.c, there is a possible timing attack due to improperly used crypto. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product:...

  • EPSS 0.01%
  • Veröffentlicht 06.01.2020 18:15:23
  • Zuletzt bearbeitet 21.11.2024 04:51:41

In export_key_der of export_key.cpp, there is possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: ...

  • EPSS 0.02%
  • Veröffentlicht 06.01.2020 18:15:23
  • Zuletzt bearbeitet 21.11.2024 04:51:41

In km_compute_shared_hmac of km4.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploita...

  • EPSS 0.08%
  • Veröffentlicht 06.12.2019 23:15:13
  • Zuletzt bearbeitet 21.11.2024 04:51:41

In various functions of RecentLocationApps.java, DevicePolicyManagerService.java, and RecognitionService.java, there is an incorrect warning indicating an app accessed the user's location. This could dissolve the trust in the platform's permission sy...

  • EPSS 0.02%
  • Veröffentlicht 06.12.2019 23:15:12
  • Zuletzt bearbeitet 21.11.2024 04:40:27

In checkOperation of AppOpsService.java, there is a possible bypass of user interaction requirements due to mishandling application suspend. This could lead to local information disclosure no additional execution privileges needed. User interaction i...

  • EPSS 0.01%
  • Veröffentlicht 06.12.2019 23:15:12
  • Zuletzt bearbeitet 21.11.2024 04:40:27

In hasActivityInVisibleTask of WindowProcessController.java there’s a possible bypass of user interaction requirements due to incorrect handling of top activities in INITIALIZING state. This could lead to local escalation of privilege with no additio...

  • EPSS 0.67%
  • Veröffentlicht 06.12.2019 23:15:12
  • Zuletzt bearbeitet 21.11.2024 04:40:27

n ihevcd_parse_slice_data of ihevcd_parse_slice.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploita...

  • EPSS 0.67%
  • Veröffentlicht 06.12.2019 23:15:12
  • Zuletzt bearbeitet 21.11.2024 04:40:28

In ihevcd_ref_list of ihevcd_ref_list.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation.Produ...

  • EPSS 0.64%
  • Veröffentlicht 06.12.2019 23:15:12
  • Zuletzt bearbeitet 21.11.2024 04:40:28

When pairing with a Bluetooth device, it may be possible to pair a malicious device without any confirmation from the user, and that device may be able to interact with the phone. This could lead to remote escalation of privilege with no additional e...