Google

Android

7931 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.09%
  • Veröffentlicht 06.11.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 04:15:27

When a device connects only over WiFi VPN, the device may not receive security updates due to some incorrect checks. This could lead to a local denial of service of security updates with no additional execution privileges needed. User interaction is ...

  • EPSS 0.08%
  • Veröffentlicht 06.11.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 04:15:29

In ih264d_video_decode of ih264d_api.c there is a possible resource exhaustion due to an infinite loop. This could lead to remote temporary device denial of service (remote hang or reboot) with no additional execution privileges needed. User interact...

  • EPSS 0.02%
  • Veröffentlicht 29.10.2018 18:29:00
  • Zuletzt bearbeitet 21.11.2024 03:19:45

A bool variable in Video function, which gets typecasted to int before being read could result in an out of bound read access in all Android releases from CAF using the linux kernel

  • EPSS 0.02%
  • Veröffentlicht 02.10.2018 19:29:14
  • Zuletzt bearbeitet 21.11.2024 04:15:37

In sdcardfs_open of file.c, there is a possible Use After Free due to an unusual root cause. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: An...

Exploit
  • EPSS 0.74%
  • Veröffentlicht 02.10.2018 19:29:14
  • Zuletzt bearbeitet 21.11.2024 04:15:37

In sdcardfs_create and sdcardfs_mkdir of inode.c, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for explo...

  • EPSS 0.03%
  • Veröffentlicht 02.10.2018 19:29:13
  • Zuletzt bearbeitet 21.11.2024 04:15:36

In ipSecSetEncapSocketOwner of XfrmController.cpp, there is a possible failure to initialize a security feature due to uninitialized data. This could lead to local denial of service of IPsec on sockets with no additional execution privileges needed. ...

  • EPSS 0.02%
  • Veröffentlicht 02.10.2018 19:29:13
  • Zuletzt bearbeitet 21.11.2024 04:15:36

In copy_process of fork.c, there is possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Ve...

  • EPSS 0.29%
  • Veröffentlicht 02.10.2018 19:29:12
  • Zuletzt bearbeitet 21.11.2024 04:15:36

In smp_proc_master_id of smp_act.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure over Bluetooth with no additional execution privileges needed. User interaction is not needed ...

  • EPSS 0.29%
  • Veröffentlicht 02.10.2018 19:29:12
  • Zuletzt bearbeitet 21.11.2024 04:15:36

In smp_proc_enc_info of smp_act.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure over Bluetooth with no additional execution privileges needed. User interaction is not needed f...

  • EPSS 0.29%
  • Veröffentlicht 02.10.2018 19:29:11
  • Zuletzt bearbeitet 21.11.2024 04:15:36

In bta_av_proc_meta_cmd of bta_av_act.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure over Bluetooth with no additional execution privileges needed. User interaction is not...