CVE-2026-58678
- EPSS 0.13%
- Veröffentlicht 15.09.2026 18:34:30
- Zuletzt bearbeitet 18.09.2026 17:28:45
In Bootloader, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-57042
- EPSS 0.12%
- Veröffentlicht 15.09.2026 18:34:29
- Zuletzt bearbeitet 18.09.2026 17:31:02
In multiple functions of DreamPickerReceiver.kt, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation...
CVE-2026-57035
- EPSS 0.08%
- Veröffentlicht 15.09.2026 18:34:28
- Zuletzt bearbeitet 18.09.2026 17:31:24
In multiple locations, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-57014
- EPSS 0.07%
- Veröffentlicht 15.09.2026 18:34:27
- Zuletzt bearbeitet 18.09.2026 17:27:40
In phNxpNciHal_ext_process_nfc_init_rsp of phNxpNciHal_ext.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is...
CVE-2026-57012
- EPSS 0.15%
- Veröffentlicht 15.09.2026 18:34:26
- Zuletzt bearbeitet 18.09.2026 19:47:23
In the Setup Wizard, there is a possible remote package install due to a missing permission check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-57008
- EPSS 0.24%
- Veröffentlicht 15.09.2026 18:34:25
- Zuletzt bearbeitet 18.09.2026 17:33:14
In Modem, there is a possible information disclosure due to improper input validation. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-57006
- EPSS 0.08%
- Veröffentlicht 15.09.2026 18:34:24
- Zuletzt bearbeitet 18.09.2026 17:33:33
In acfw_ffa.c, there is a possible secret read due to a logic error in the code. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-56997
- EPSS 0.27%
- Veröffentlicht 15.09.2026 18:34:23
- Zuletzt bearbeitet 18.09.2026 17:33:52
In Av1DecodeFrameTag of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exp...
CVE-2026-56992
- EPSS 0.08%
- Veröffentlicht 15.09.2026 18:34:22
- Zuletzt bearbeitet 18.09.2026 17:31:59
In multiple files, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-56989
- EPSS 0.08%
- Veröffentlicht 15.09.2026 18:34:21
- Zuletzt bearbeitet 18.09.2026 17:32:21
In multiple locations, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.