VYPR

Android

by Google

CVEs (8,504)

  • CVE-2023-52341HigApr 8, 2024
    risk 0.49cvss 7.5epss 0.00

    In Plaintext COUNTER CHECK message accepted before AS security activation, there is a possible missing permission check. This could lead to remote information disclosure no additional execution privileges needed

  • CVE-2024-27229HigMar 11, 2024
    risk 0.49cvss 7.5epss 0.00

    In ss_SendCallBarringPwdRequiredIndMsg of ss_CallBarring.c, there is a possible null pointer deref due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-27206HigMar 11, 2024
    risk 0.49cvss 7.5epss 0.00

    there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-22011HigMar 11, 2024
    risk 0.49cvss 7.5epss 0.00

    In ss_ProcessRejectComponent of ss_MmConManagement.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-0040HigFeb 16, 2024
    risk 0.49cvss 7.5epss 0.02

    In setParameter of MtpPacket.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-40104HigFeb 15, 2024
    risk 0.49cvss 7.5epss 0.00

    In ca-certificates, there is a possible way to read encrypted TLS data due to untrusted cryptographic certificates. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-20007HigFeb 5, 2024
    risk 0.49cvss 7.5epss 0.00

    In mp3 decoder, there is a possible out of bounds write due to a race condition. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS08441369; Issue ID: ALPS08441369.

  • CVE-2023-32889HigJan 2, 2024
    risk 0.49cvss 7.5epss 0.00

    In Modem IMS Call UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01161825; Issue ID:…

  • CVE-2023-48416HigDec 8, 2023
    risk 0.49cvss 7.5epss 0.00

    In multiple locations, there is a possible null dereference due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-48410HigDec 8, 2023
    risk 0.49cvss 7.5epss 0.00

    In cd_ParseMsg of cd_codec.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-48404HigDec 8, 2023
    risk 0.49cvss 7.5epss 0.00

    In ProtocolMiscCarrierConfigSimInfoIndAdapter of protocolmiscadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2023-48403HigDec 8, 2023
    risk 0.49cvss 7.5epss 0.00

    In sms_DecodeCodedTpMsg of sms_PduCodec.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure if the attacker is able to observe the behavior of the subsequent switch conditional with no additional execution…

  • CVE-2023-48398HigDec 8, 2023
    risk 0.49cvss 7.5epss 0.00

    In ProtocolNetAcBarringInfo::ProtocolNetAcBarringInfo() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with baseband firmware compromise required. User interaction is not needed…

  • CVE-2023-21227HigDec 4, 2023
    risk 0.49cvss 7.5epss 0.00

    In HTBLogKM of htbserver.c, there is a possible information disclosure due to log information disclosure. This could lead to local information disclosure in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-42717HigDec 4, 2023
    risk 0.49cvss 7.5epss 0.00

    In telephony service, there is a possible missing permission check. This could lead to remote information disclosure no additional execution privileges needed

  • CVE-2023-42716HigDec 4, 2023
    risk 0.49cvss 7.5epss 0.00

    In telephony service, there is a possible missing permission check. This could lead to remote information disclosure no additional execution privileges needed

  • CVE-2022-42539HigNov 29, 2023
    risk 0.49cvss 7.5epss 0.00

    Information disclosure

  • CVE-2023-21391HigOct 30, 2023
    risk 0.49cvss 7.5epss 0.00

    In Messaging, there is a possible way to disable the messaging application due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-21353HigOct 30, 2023
    risk 0.49cvss 7.5epss 0.00

    In NFA, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-21347HigOct 30, 2023
    risk 0.49cvss 7.5epss 0.00

    In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

Page 174 of 426