VYPR

Android

by Google

CVEs (8,504)

  • CVE-2026-0131HigJun 16, 2026
    risk 0.47cvss 7.3epss 0.00

    In RtpPacket::decodePacket, there is a possible out of bounds access due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

  • CVE-2025-48634HigMar 2, 2026
    risk 0.47cvss 7.3epss 0.00

    In relayoutWindow of WindowManagerService.java, there is a possible tapjack attack due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2026-20416HigMar 2, 2026
    risk 0.47cvss 7.2epss 0.00

    In pcie, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10315038 /…

  • CVE-2025-36911HigJan 15, 2026
    risk 0.47cvss 7.1epss 0.07

    In key-based pairing, there is a possible ID due to a logic error in the code. This could lead to remote (proximal/adjacent) information disclosure of user's conversations and location with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2025-48639HigDec 8, 2025
    risk 0.47cvss 7.3epss 0.00

    In DefaultTransitionHandler.java, there is a possible way to unknowingly grant permissions to an app due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

  • CVE-2025-48621HigDec 8, 2025
    risk 0.47cvss 7.3epss 0.00

    In DefaultTransitionHandler.java, there is a possible way to enable a tapjacking attack due to a insecure default. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

  • CVE-2025-48594HigDec 8, 2025
    risk 0.47cvss 7.3epss 0.00

    In onUidImportance of DisassociationProcessor.java, there is a possible way to retain companion application privileges after disassociation due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User…

  • CVE-2025-48556HigSep 4, 2025
    risk 0.47cvss 7.3epss 0.00

    In multiple methods of NotificationChannel.java, there is a possible desynchronization from persistence due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

  • CVE-2025-48548HigSep 4, 2025
    risk 0.47cvss 7.3epss 0.00

    In multiple functions of AppOpsControllerImpl.java, there is a possible way to record audio without displaying the privacy indicator due to a race condition. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for…

  • CVE-2025-48547HigSep 4, 2025
    risk 0.47cvss 7.3epss 0.00

    In multiple locations, there is a possible one-time permission bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

  • CVE-2025-48532HigSep 4, 2025
    risk 0.47cvss 7.3epss 0.00

    In markMediaAsFavorite of MediaProvider.java, there is a possible way to bypass the WRITE_EXTERNAL_STORAGE permission due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for…

  • CVE-2025-22441HigSep 4, 2025
    risk 0.47cvss 7.3epss 0.00

    In getContextForResourcesEnsuringCorrectCachedApkPaths of RemoteViews.java, there is a possible way to load arbitrary java code in a privileged context due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User…

  • CVE-2025-26443HigSep 4, 2025
    risk 0.47cvss 7.3epss 0.00

    In parseHtml of HtmlToSpannedParser.java, there is a possible way to install apps without allowing installation from unknown sources due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User…

  • CVE-2025-36907HigSep 4, 2025
    risk 0.47cvss 7.3epss 0.00

    In draw_surface_image() of abl/android/lib/draw/draw.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege via USB fastboot, after a bootloader unlock, with no additional execution privileges needed. User…

  • CVE-2025-22439HigSep 2, 2025
    risk 0.47cvss 7.3epss 0.00

    In onLastAccessedStackLoaded of ActionHandler.java , there is a possible way to bypass storage restrictions across apps due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed…

  • CVE-2025-22427HigSep 2, 2025
    risk 0.47cvss 7.3epss 0.00

    In onCreate of NotificationAccessConfirmationActivity.java, there is a possible way to grant notification access above the lock screen due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User…

  • CVE-2025-22419HigSep 2, 2025
    risk 0.47cvss 7.3epss 0.00

    In multiple locations, there is a possible way to mislead the user into enabling malicious phone calls forwarding due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for…

  • CVE-2025-22417HigSep 2, 2025
    risk 0.47cvss 7.3epss 0.00

    In finishTransition of Transition.java, there is a possible way to bypass touch filtering restrictions due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

  • CVE-2024-40653HigSep 2, 2025
    risk 0.47cvss 7.3epss 0.00

    In multiple functions of ConnectionServiceWrapper.java, there is a possible way to retain a permission forever in the background due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is…

  • CVE-2018-9370HigNov 19, 2024
    risk 0.47cvss 7.3epss 0.00

    In download.c there is a special mode allowing user to download data into memory and causing possible memory corruptions due to missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for…

Page 200 of 426