Google

Android

7895 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.87%
  • Veröffentlicht 07.06.2019 20:29:01
  • Zuletzt bearbeitet 21.11.2024 04:40:13

In HAliasAnalyzer.Query of hydrogen-alias-analysis.h, there is possible memory corruption due to type confusion. This could lead to remote code execution from a malicious proxy configuration, with no additional execution privileges needed. User inter...

  • EPSS 0.01%
  • Veröffentlicht 07.06.2019 20:29:01
  • Zuletzt bearbeitet 21.11.2024 04:40:13

In areNotificationsEnabledForPackage of NotificationManagerService.java, there is a possible permissions bypass due to a missing permissions check. This could lead to local escalation of privilege, with no additional privileges needed. User interacti...

  • EPSS 0.04%
  • Veröffentlicht 07.06.2019 20:29:01
  • Zuletzt bearbeitet 21.11.2024 04:40:13

In nfa_rw_store_ndef_rx_buf of nfa_rw_act.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploi...

  • EPSS 0.11%
  • Veröffentlicht 07.06.2019 20:29:01
  • Zuletzt bearbeitet 21.11.2024 04:40:13

In uvc_parse_standard_control of uvc_driver.c, there is a possible out-of-bound read due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for ...

  • EPSS 0.1%
  • Veröffentlicht 07.06.2019 20:29:01
  • Zuletzt bearbeitet 21.11.2024 04:40:14

In the Bluetooth Low Energy (BLE) specification, there is a provided example Long Term Key (LTK). If a BLE device were to use this as a hardcoded LTK, it is theoretically possible for a proximate attacker to remotely inject keystrokes on a paired And...

  • EPSS 0.01%
  • Veröffentlicht 07.06.2019 20:29:00
  • Zuletzt bearbeitet 21.11.2024 04:40:12

In isPackageDeviceAdminOnAnyUser of PackageManagerService.java, there is a possible permissions bypass due to a missing permissions check. This could lead to local escalation of privilege, with no additional permissions required. User interaction is ...

  • EPSS 0.87%
  • Veröffentlicht 08.05.2019 17:29:01
  • Zuletzt bearbeitet 21.11.2024 04:40:07

In UpdateLoadElement of ic.cc, there is a possible out-of-bounds write due to type confusion. This could lead to remote code execution in the proxy auto-config with no additional execution privileges needed. User interaction is not needed for exploit...

  • EPSS 0.02%
  • Veröffentlicht 08.05.2019 17:29:01
  • Zuletzt bearbeitet 21.11.2024 04:40:08

In SendMediaUpdate and SendFolderUpdate of avrcp_service.cc, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege in the Bluetooth service with no additional execution privileges needed. User...

  • EPSS 0.01%
  • Veröffentlicht 08.05.2019 17:29:01
  • Zuletzt bearbeitet 21.11.2024 04:40:08

In tearDownClientInterface of WificondControl.java, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploi...

  • EPSS 0.4%
  • Veröffentlicht 08.05.2019 17:29:01
  • Zuletzt bearbeitet 21.11.2024 04:40:08

In heap of spaces.h, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure when processing a proxy auto config file with no additional execution privileges needed. User interaction i...