Google

Android

7931 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.07%
  • Veröffentlicht 13.11.2024 18:15:20
  • Zuletzt bearbeitet 17.12.2024 19:30:29

In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible way to achieve arbitrary code execution due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User inte...

  • EPSS 0.09%
  • Veröffentlicht 13.11.2024 18:15:20
  • Zuletzt bearbeitet 17.12.2024 19:10:30

In onReceive of AppRestrictionsFragment.java, there is a possible escalation of privilege due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for e...

  • EPSS 0.01%
  • Veröffentlicht 13.11.2024 18:15:20
  • Zuletzt bearbeitet 17.12.2024 18:56:04

In installExistingPackageAsUser of InstallPackageHelper.java, there is a possible carrier restriction bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User inter...

  • EPSS 0.08%
  • Veröffentlicht 13.11.2024 18:15:20
  • Zuletzt bearbeitet 17.12.2024 20:03:15

In onActivityResult of EditUserPhotoController.java, there is a possible cross-user media read due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed fo...

  • EPSS 0.05%
  • Veröffentlicht 13.11.2024 18:15:19
  • Zuletzt bearbeitet 20.11.2024 17:35:20

In DevmemIntChangeSparse of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interac...

  • EPSS 0.03%
  • Veröffentlicht 13.11.2024 18:15:19
  • Zuletzt bearbeitet 20.11.2024 17:35:20

In PVRSRVRGXKickTA3DKM of rgxta3d.c, there is a possible arbitrary code execution due to improper input validation. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not...

  • EPSS 0.14%
  • Veröffentlicht 11.11.2024 21:15:06
  • Zuletzt bearbeitet 12.11.2024 16:35:18

The SYQ com.downloader.video.fast (aka Master Video Downloader) application through 2.0 for Android allows an attacker to execute arbitrary JavaScript code via the com.downloader.video.fast.SpeedMainAct component.

  • EPSS 0.15%
  • Veröffentlicht 11.11.2024 21:15:06
  • Zuletzt bearbeitet 12.11.2024 16:35:19

The com.superfast.video.downloader (aka Super Unlimited Video Downloader - All in One) application through 5.1.9 for Android allows an attacker to execute arbitrary JavaScript code via the com.bluesky.browser.ui.BrowserMainActivity component.

  • EPSS 0.18%
  • Veröffentlicht 11.11.2024 21:15:06
  • Zuletzt bearbeitet 12.11.2024 16:35:19

The com.video.downloader.all (aka All Video Downloader) application through 11.28 for Android allows an attacker to execute arbitrary JavaScript code via the com.video.downloader.all.StartActivity component.

  • EPSS 0.15%
  • Veröffentlicht 11.11.2024 21:15:06
  • Zuletzt bearbeitet 12.11.2024 16:35:20

The Ikhgur mn.ikhgur.khotoch (aka Video Downloader Pro & Browser) application through 1.0.42 for Android allows an attacker to execute arbitrary JavaScript code via the mn.ikhgur.khotoch.MainActivity component.