CVE-2024-20075
- EPSS 0.04%
- Veröffentlicht 03.06.2024 02:15:09
- Zuletzt bearbeitet 13.03.2025 17:15:26
In eemgpu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08713302; Issue...
- EPSS 0.05%
- Veröffentlicht 03.06.2024 02:15:08
- Zuletzt bearbeitet 25.04.2025 18:39:04
In telephony, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALP...
CVE-2024-23713
- EPSS 0.03%
- Veröffentlicht 07.05.2024 21:15:09
- Zuletzt bearbeitet 17.12.2024 16:08:06
In migrateNotificationFilter of NotificationManagerService.java, there is a possible failure to persist notifications settings due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges ...
CVE-2024-0022
- EPSS 0.03%
- Veröffentlicht 07.05.2024 21:15:08
- Zuletzt bearbeitet 27.03.2025 21:15:43
In multiple functions of CompanionDeviceManagerService.java, there is a possible launch NotificationAccessConfirmationActivity of another user profile due to improper input validation. This could lead to local information disclosure with no additiona...
CVE-2024-0024
- EPSS 0.03%
- Veröffentlicht 07.05.2024 21:15:08
- Zuletzt bearbeitet 17.12.2024 16:48:14
In multiple methods of UserManagerService.java, there is a possible failure to persist or enforce user restrictions due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. Use...
CVE-2024-0025
- EPSS 0.03%
- Veröffentlicht 07.05.2024 21:15:08
- Zuletzt bearbeitet 17.12.2024 16:48:34
In sendIntentSender of ActivityManagerService.java, there is a possible background activity launch due to a logic error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed f...
CVE-2024-0026
- EPSS 0.05%
- Veröffentlicht 07.05.2024 21:15:08
- Zuletzt bearbeitet 17.12.2024 16:48:55
In multiple functions of SnoozeHelper.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exp...
CVE-2024-0027
- EPSS 0.05%
- Veröffentlicht 07.05.2024 21:15:08
- Zuletzt bearbeitet 17.12.2024 16:46:34
In multiple functions of SnoozeHelper.java, there is a possible way to cause a boot loop due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploit...
CVE-2024-0042
- EPSS 0.01%
- Veröffentlicht 07.05.2024 21:15:08
- Zuletzt bearbeitet 17.12.2024 16:47:02
In TBD of TBD, there is a possible confusion of OEM and DRM certificates due to improperly used crypto. This could lead to local bypass of DRM content protection with no additional execution privileges needed. User interaction is not needed for explo...
CVE-2024-0043
- EPSS 0.04%
- Veröffentlicht 07.05.2024 21:15:08
- Zuletzt bearbeitet 29.03.2025 00:15:16
In multiple locations, there is a possible notification listener grant to an app running in the work profile due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User inter...