High severity7.5NVD Advisory· Published Jan 19, 2022· Updated Jun 17, 2026
CVE-2021-38789
CVE-2021-38789
Description
Allwinner R818 SoC Android Q SDK V1.0 is affected by an incorrect access control vulnerability that does not check the caller's permission, in which a third-party app could change system settings.
Affected products
3- cpe:2.3:a:allwinnertech:android_q_sdk:1.0:*:*:*:*:*:*:*
- Allwinner/R818 SoC Android Q SDKdescription
- Range: 1.0
Patches
Vulnerability mechanics
References
4- vul.wangan.com/a/CNVD-2021-46927nvdThird Party Advisory
- www.allwinnertech.com/index.phpnvdProductVendor Advisory
- www.cnvd.org.cn/flaw/show/CNVD-2021-46927nvdThird Party Advisory
- github.com/pokerfacett/MY_CVE_CREDIT/blob/master/Allwinner%20R818%20SoC%EF%BC%9Aaw_display%20service%20has%20EoP%20Vulnerability.mdnvdBroken Link
News mentions
0No linked articles in our index yet.