CVE-2024-31334
- EPSS 0.03%
- Veröffentlicht 09.07.2024 21:15:14
- Zuletzt bearbeitet 17.12.2024 19:02:13
In DevmemIntFreeDefBackingPage of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User i...
CVE-2024-31335
- EPSS 0.03%
- Veröffentlicht 09.07.2024 21:15:14
- Zuletzt bearbeitet 17.12.2024 18:46:00
In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User intera...
CVE-2024-31339
- EPSS 0.04%
- Veröffentlicht 09.07.2024 21:15:14
- Zuletzt bearbeitet 17.12.2024 18:21:52
In multiple functions of StatsService.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation...
CVE-2024-34720
- EPSS 0.04%
- Veröffentlicht 09.07.2024 21:15:14
- Zuletzt bearbeitet 17.12.2024 18:21:36
In com_android_internal_os_ZygoteCommandBuffer_nativeForkRepeatedly of com_android_internal_os_ZygoteCommandBuffer.cpp, there is a possible method to perform arbitrary code execution in any app zygote processes due to a logic error in the code. This ...
CVE-2024-34721
- EPSS 0.03%
- Veröffentlicht 09.07.2024 21:15:14
- Zuletzt bearbeitet 17.12.2024 18:17:31
In ensureFileColumns of MediaProvider.java, there is a possible disclosure of files owned by another user due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interacti...
CVE-2024-34722
- EPSS 0.15%
- Veröffentlicht 09.07.2024 21:15:14
- Zuletzt bearbeitet 21.01.2025 23:15:13
In smp_proc_rand of smp_act.cc, there is a possible authentication bypass during legacy BLE pairing due to incorrect implementation of a protocol. This could lead to remote escalation of privilege with no additional execution privileges needed. User ...
CVE-2024-34723
- EPSS 0.03%
- Veröffentlicht 09.07.2024 21:15:14
- Zuletzt bearbeitet 17.12.2024 18:15:21
In onTransact of ParcelableListBinder.java , there is a possible way to steal mAllowlistToken to launch an app from background due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges ...
- EPSS 0.02%
- Veröffentlicht 09.07.2024 21:15:14
- Zuletzt bearbeitet 17.12.2024 18:14:30
In _UnrefAndMaybeDestroy of pmr.c, there is a possible arbitrary code execution due to a race condition. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for...
- EPSS 0.02%
- Veröffentlicht 09.07.2024 21:15:14
- Zuletzt bearbeitet 17.12.2024 18:14:22
In DevmemIntUnexportCtx of devicemem_server.c, there is a possible arbitrary code execution due to a race condition. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is no...
CVE-2024-34726
- EPSS 0.03%
- Veröffentlicht 09.07.2024 21:15:14
- Zuletzt bearbeitet 17.12.2024 18:14:01
In PVRSRV_MMap of pvr_bridge_k.c, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not ne...