CVE-2026-56970
- EPSS 0.12%
- Veröffentlicht 15.09.2026 18:34:10
- Zuletzt bearbeitet 18.09.2026 19:54:05
In multiple locations, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- EPSS 0.12%
- Veröffentlicht 15.09.2026 18:34:09
- Zuletzt bearbeitet 21.09.2026 17:18:54
In Cellular Modem, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-56964
- EPSS 0.05%
- Veröffentlicht 15.09.2026 18:34:08
- Zuletzt bearbeitet 21.09.2026 17:18:50
In multiple locations, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-56960
- EPSS 0.16%
- Veröffentlicht 15.09.2026 18:34:07
- Zuletzt bearbeitet 21.09.2026 17:18:46
In multiple locations, there is a possible use-after-free due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-56958
- EPSS 0.07%
- Veröffentlicht 15.09.2026 18:34:06
- Zuletzt bearbeitet 21.09.2026 17:18:42
In gf_algo_get_cached_dump_data of gf_algo.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exp...
CVE-2026-56950
- EPSS 0.07%
- Veröffentlicht 15.09.2026 18:34:05
- Zuletzt bearbeitet 21.09.2026 17:18:38
In validate_ns_buf of mbu_class.rs, there is a possible information disclosure due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-56945
- EPSS 0.07%
- Veröffentlicht 15.09.2026 18:34:04
- Zuletzt bearbeitet 21.09.2026 17:18:33
In VPU, there is a possible out-of-bounds write due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-56942
- EPSS 0.27%
- Veröffentlicht 15.09.2026 18:34:03
- Zuletzt bearbeitet 21.09.2026 17:18:28
In ReadTileInfo of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploita...
CVE-2026-56941
- EPSS 0.12%
- Veröffentlicht 15.09.2026 18:34:02
- Zuletzt bearbeitet 21.09.2026 17:18:24
In multiple functions of fpc_tee_hal.c, there is a possible use-after-free due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitat...
CVE-2026-56932
- EPSS 0.11%
- Veröffentlicht 15.09.2026 18:34:01
- Zuletzt bearbeitet 21.09.2026 17:18:19
In Trusted Execution Environment, there is a possible memory corruption due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.