VYPR

android-x86

by Android X86

CVEs (1,228)

  • CVE-2019-2039MedApr 19, 2019
    risk 0.33cvss 5.0epss 0.00

    In rw_i93_sm_detect_ndef of rw_i93.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions:…

  • CVE-2018-9438MedNov 6, 2018
    risk 0.33cvss 5.0epss 0.00

    When a device connects only over WiFi VPN, the device may not receive security updates due to some incorrect checks. This could lead to a local denial of service of security updates with no additional execution privileges needed. User interaction is needed for exploitation.…

  • CVE-2020-0157MedJun 11, 2020
    risk 0.32cvss 4.9epss 0.01

    In nfa_hci_conn_cback of nfa_hci_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure via compromised device firmware with System execution privileges needed. User interaction is not needed for…

  • CVE-2019-9434MedSep 27, 2019
    risk 0.32cvss 4.9epss 0.01

    In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with heap information written to the log with System execution privileges needed. User interaction is not needed for exploitation. Product:…

  • CVE-2019-9431MedSep 27, 2019
    risk 0.32cvss 4.9epss 0.01

    In Bluetooth, there is a possible out of bounds read due to a use after free. This could lead to remote information disclosure with heap information written to the log with System execution privileges needed. User interaction is not needed for exploitation. Product:…

  • CVE-2021-0320MedJan 11, 2021
    risk 0.31cvss 4.7epss 0.00

    In is_device_locked and set_device_locked of keystore_keymaster_enforcement.h, there is a possible bypass of lockscreen requirements for keyguard bound keys due to a race condition. This could lead to local information disclosure with no additional execution privileges needed.…

  • CVE-2025-48614MedDec 8, 2025
    risk 0.30cvss 4.6epss 0.00

    In rebootWipeUserData of RecoverySystem.java, there is a possible way to factory reset the device while in DSU mode due to a missing permission check. This could lead to physical denial of service with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2025-26427MedSep 4, 2025
    risk 0.29cvss 4.4epss 0.00

    In multiple locations, there is a possible Android/data access due to a path traversal error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

  • CVE-2023-21297MedOct 30, 2023
    risk 0.29cvss 4.4epss 0.00

    In SEPolicy, there is a possible way to access the factory MAC address due to a permissions bypass. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-21213MedJun 28, 2023
    risk 0.29cvss 4.4epss 0.00

    In initiateTdlsTeardownInternal of sta_iface.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the wifi server with System execution privileges needed. User interaction is not needed for…

  • CVE-2023-21210MedJun 28, 2023
    risk 0.29cvss 4.4epss 0.00

    In initiateHs20IconQueryInternal of sta_iface.cpp, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2023-21208MedJun 28, 2023
    risk 0.29cvss 4.4epss 0.00

    In setCountryCodeInternal of sta_iface.cpp, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2023-21202MedJun 28, 2023
    risk 0.29cvss 4.5epss 0.00

    In btm_delete_stored_link_key_complete of btm_devctl.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure over Bluetooth with System execution privileges needed. User interaction is not needed for…

  • CVE-2023-21188MedJun 28, 2023
    risk 0.29cvss 4.4epss 0.00

    In btm_ble_update_inq_result of btm_ble_gap.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2023-21182MedJun 28, 2023
    risk 0.29cvss 4.4epss 0.00

    In Exynos_parsing_user_data_registered_itu_t_t35 of VendorVideoAPI.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for…

  • CVE-2023-21176MedJun 28, 2023
    risk 0.29cvss 4.4epss 0.00

    In list_key_entries of utils.rs, there is a possible way to disable user credentials due to resource exhaustion. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2023-21170MedJun 28, 2023
    risk 0.29cvss 4.4epss 0.00

    In executeSetClientTarget of ComposerCommandEngine.h, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2023-21032MedMar 24, 2023
    risk 0.29cvss 4.4epss 0.00

    In _ufdt_output_node_to_fdt of ufdt_convert.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2023-21025MedMar 24, 2023
    risk 0.29cvss 4.4epss 0.00

    In ufdt_local_fixup_prop of ufdt_overlay.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2023-21013MedMar 24, 2023
    risk 0.29cvss 4.4epss 0.00

    In forceStaDisconnection of hostapd.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

Page 57 of 62