CVE-2024-20085
- EPSS 0.01%
- Veröffentlicht 02.09.2024 05:15:14
- Zuletzt bearbeitet 27.10.2024 03:35:00
In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08944204; Issue ID...
CVE-2024-32927
- EPSS 0.03%
- Veröffentlicht 19.08.2024 17:15:07
- Zuletzt bearbeitet 20.08.2024 16:15:03
In sendDeviceState_1_6 of RadioExt.cpp, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2024-31333
- EPSS 0.06%
- Veröffentlicht 15.08.2024 22:15:06
- Zuletzt bearbeitet 17.12.2024 18:13:26
In _MMU_AllocLevel of mmu_common.c, there is a possible arbitrary code execution due to an integer overflow. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed...
CVE-2024-34727
- EPSS 0.42%
- Veröffentlicht 15.08.2024 22:15:06
- Zuletzt bearbeitet 19.03.2025 16:15:25
In sdpu_compare_uuid_with_attr of sdp_utils.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for ...
- EPSS 0.02%
- Veröffentlicht 15.08.2024 22:15:06
- Zuletzt bearbeitet 17.12.2024 18:12:43
In multiple functions of TranscodingResourcePolicy.cpp, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for...
CVE-2024-34734
- EPSS 0.07%
- Veröffentlicht 15.08.2024 22:15:06
- Zuletzt bearbeitet 17.12.2024 18:49:54
In onForegroundServiceButtonClicked of FooterActionsViewModel.kt, there is a possible way to disable the active VPN app from the lockscreen due to an insecure default value. This could lead to local escalation of privilege with no additional executio...
CVE-2024-34736
- EPSS 0.05%
- Veröffentlicht 15.08.2024 22:15:06
- Zuletzt bearbeitet 17.12.2024 18:49:00
In setupVideoEncoder of StagefrightRecorder.cpp, there is a possible asynchronous playback when B-frame support is enabled. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not neede...
CVE-2024-34737
- EPSS 0.07%
- Veröffentlicht 15.08.2024 22:15:06
- Zuletzt bearbeitet 17.12.2024 18:41:50
In ensureSetPipAspectRatioQuotaTracker of ActivityClientController.java, there is a possible way to generate unmovable and undeletable pip windows due to a logic error in the code. This could lead to local escalation of privilege with no additional e...
CVE-2024-34738
- EPSS 0.05%
- Veröffentlicht 15.08.2024 22:15:06
- Zuletzt bearbeitet 26.03.2025 21:15:22
In multiple functions of AppOpsService.java, there is a possible way for unprivileged apps to read their own restrictRead app-op states due to a logic error in the code. This could lead to local escalation of privilege with no additional execution pr...
CVE-2024-34739
- EPSS 0.56%
- Veröffentlicht 15.08.2024 22:15:06
- Zuletzt bearbeitet 29.09.2025 23:05:08
In shouldRestrictOverlayActivities of UsbProfileGroupSettingsManager.java, there is a possible escape from SUW due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User int...