Google

Android

8032 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.04%
  • Veröffentlicht 10.03.2020 20:15:20
  • Zuletzt bearbeitet 21.11.2024 04:52:46

In triggerAugmentedAutofillLocked and related functions of Session.java, it is possible for Augmented Autofill to display sensitive information to the user inappropriately. This could lead to local information disclosure with no additional execution ...

  • EPSS 1.77%
  • Veröffentlicht 10.03.2020 20:15:20
  • Zuletzt bearbeitet 21.11.2024 04:52:46

In ih264d_release_display_bufs of ih264d_utils.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitat...

  • EPSS 0.04%
  • Veröffentlicht 10.03.2020 20:15:20
  • Zuletzt bearbeitet 21.11.2024 04:52:47

In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to stale pointer. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitati...

  • EPSS 4.51%
  • Veröffentlicht 10.03.2020 20:15:20
  • Zuletzt bearbeitet 21.11.2024 04:52:47

In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure if error correction were turned on, with no additional execution privileges needed. User i...

  • EPSS 0.89%
  • Veröffentlicht 22.02.2020 00:15:10
  • Zuletzt bearbeitet 21.11.2024 05:39:35

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Samsung Galaxy S10 Firmware G973FXXS3ASJA, O(8.x), P(9.0), Q(10.0) devices with Exynos chipsets. User interaction is required to exploit this vulnerabil...

  • EPSS 0.15%
  • Veröffentlicht 21.02.2020 02:15:10
  • Zuletzt bearbeitet 21.11.2024 02:18:15

btif/src/btif_dm.c in Android before 5.1 does not properly enforce the temporary nature of a Bluetooth pairing, which allows user-assisted remote attackers to bypass intended access restrictions via crafted Bluetooth packets after the tapping of a cr...

Exploit
  • EPSS 1.97%
  • Veröffentlicht 20.02.2020 16:15:11
  • Zuletzt bearbeitet 21.11.2024 02:18:19

Directory traversal vulnerability in the Android debug bridge (aka adb) in Android 4.0.4 allows physically proximate attackers with a direct connection to the target Android device to write to arbitrary files owned by system via a .. (dot dot) in the...

  • EPSS 0.03%
  • Veröffentlicht 13.02.2020 15:15:12
  • Zuletzt bearbeitet 21.11.2024 04:52:46

In HidRawSensor::batch of HidRawSensor.cpp, there is a possible out of bounds write due to an unexpected switch fallthrough. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not need...

  • EPSS 0.87%
  • Veröffentlicht 13.02.2020 15:15:12
  • Zuletzt bearbeitet 21.11.2024 04:52:46

In notifyNetworkTested and related functions of NetworkMonitor.java, there is a possible bypass of private DNS settings. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for e...

  • EPSS 0.03%
  • Veröffentlicht 13.02.2020 15:15:12
  • Zuletzt bearbeitet 21.11.2024 04:52:46

In binder_thread_release of binder.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product...