CVE-2024-31324
- EPSS 0.01%
- Veröffentlicht 09.07.2024 21:15:13
- Zuletzt bearbeitet 15.03.2025 16:15:12
In hide of WindowState.java, there is a possible way to bypass tapjacking/overlay protection by launching the activity in portrait mode first and then rotating it to landscape mode. This could lead to local escalation of privilege with User execution...
CVE-2024-31325
- EPSS 0.05%
- Veröffentlicht 09.07.2024 21:15:13
- Zuletzt bearbeitet 17.12.2024 19:04:23
In multiple locations, there is a possible way to reveal images across users data due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for ex...
CVE-2024-31326
- EPSS 0.12%
- Veröffentlicht 09.07.2024 21:15:13
- Zuletzt bearbeitet 17.12.2024 19:04:11
In multiple locations, there is a possible way in which policy migration code will never be executed due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction i...
- EPSS 0.03%
- Veröffentlicht 09.07.2024 21:15:13
- Zuletzt bearbeitet 14.03.2025 16:15:30
In multiple functions of MessageQueueBase.h, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploita...
CVE-2024-31331
- EPSS 0.05%
- Veröffentlicht 09.07.2024 21:15:13
- Zuletzt bearbeitet 14.03.2025 19:15:46
In setMimeGroup of PackageManagerService.java, there is a possible way to hide the service from Settings due to a logic error in the code. This could lead to local escalation of privilege with User execution privileges needed. User interaction is nee...
CVE-2024-31332
- EPSS 0.01%
- Veröffentlicht 09.07.2024 21:15:13
- Zuletzt bearbeitet 13.03.2025 16:15:19
In multiple locations, there is a possible way to bypass a restriction on adding new Wi-Fi connections due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interactio...
CVE-2024-23697
- EPSS 0.03%
- Veröffentlicht 09.07.2024 21:15:12
- Zuletzt bearbeitet 17.12.2024 16:45:51
In RGXCreateHWRTData_aux of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed...
CVE-2024-23698
- EPSS 0.04%
- Veröffentlicht 09.07.2024 21:15:12
- Zuletzt bearbeitet 17.12.2024 16:36:40
In RGXFWChangeOSidPriority of rgxfwutils.c, there is a possible arbitrary code execution due to a missing bounds check. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is...
CVE-2024-23711
- EPSS 0.05%
- Veröffentlicht 09.07.2024 21:15:12
- Zuletzt bearbeitet 17.12.2024 16:33:38
In DevmemXIntUnreserveRange of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User inte...
CVE-2024-31310
- EPSS 0.04%
- Veröffentlicht 09.07.2024 21:15:12
- Zuletzt bearbeitet 27.03.2025 16:15:23
In newServiceInfoLocked of AutofillManagerServiceImpl.java, there is a possible way to hide an enabled Autofill service app in the Autofill service settings due to improper input validation. This could lead to local escalation of privilege with no ad...