VYPR

Activity Manager

by Google

CVEs (4)

  • CVE-2023-21323MedOct 30, 2023
    risk 0.36cvss 5.5epss 0.00

    In Activity Manager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not…

  • CVE-2016-2500MedJun 13, 2016
    risk 0.36cvss 5.5epss 0.00

    Activity Manager in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 does not properly terminate process groups, which allows attackers to obtain sensitive information via a crafted application, aka internal bug 19285814.

  • CVE-2019-9292LowSep 27, 2019
    risk 0.21cvss 3.3epss 0.00

    In the Activity Manager service, there is a possible information disclosure due to a confused deputy. This could lead to local disclosure of current foreground process with no additional execution privileges needed. User interaction is not needed for exploitation. Product:…

  • CVE-2015-3844Oct 1, 2015
    risk 0.00cvss epss 0.01

    The getProcessRecordLocked method in services/core/java/com/android/server/am/ActivityManagerService.java in ActivityManager in Android before 5.1.1 LMY48I allows attackers to trigger incorrect process loading via a crafted application, as demonstrated by interfering with use of…