VYPR

Android

by Google

CVEs (8,504)

  • CVE-2024-20144MedJan 6, 2025
    risk 0.43cvss 6.6epss 0.00

    In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch…

  • CVE-2024-20143MedJan 6, 2025
    risk 0.43cvss 6.6epss 0.00

    In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch…

  • CVE-2024-20074MedJun 3, 2024
    risk 0.43cvss 6.6epss 0.00

    In dmc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08668110; Issue ID: MSV-1333.

  • CVE-2024-20054MedApr 1, 2024
    risk 0.43cvss 6.6epss 0.00

    In gnss, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08580200; Issue ID: ALPS08580200.

  • CVE-2024-20046MedApr 1, 2024
    risk 0.43cvss 6.6epss 0.00

    In battery, there is a possible escalation of privilege due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08485622; Issue ID: ALPS08485622.

  • CVE-2024-20044MedApr 1, 2024
    risk 0.43cvss 6.6epss 0.00

    In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541784; Issue ID: ALPS08541784.

  • CVE-2024-20043MedApr 1, 2024
    risk 0.43cvss 6.6epss 0.00

    In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541781; Issue ID: ALPS08541781.

  • CVE-2024-20042MedApr 1, 2024
    risk 0.43cvss 6.6epss 0.00

    In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541780; Issue ID: ALPS08541780.

  • CVE-2024-20028MedMar 4, 2024
    risk 0.43cvss 6.6epss 0.00

    In da, there is a possible out of bounds write due to lack of valudation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541632; Issue ID: ALPS08541687.

  • CVE-2023-20941MedApr 19, 2023
    risk 0.43cvss 6.6epss 0.00

    In acc_ctrlrequest_composite of f_accessory.c, there is a possible out of bounds write due to a missing bounds check. This could lead to physical escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product:…

  • CVE-2022-26468MedSep 6, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for…

  • CVE-2022-27822MedApr 11, 2022
    risk 0.43cvss 6.6epss 0.00

    Information exposure vulnerability in ril property setting prior to SMR April-2022 Release 1 allows access to EF_RUIMID value without permission.

  • CVE-2022-20074MedApr 11, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (partition), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed…

  • CVE-2022-20073MedApr 11, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (usb), there is a possible out of bounds write due to a integer underflow. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for…

  • CVE-2022-20069MedApr 11, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (usb), there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for…

  • CVE-2022-20060MedMar 10, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (usb), there is a possible permission bypass due to a missing proper image authentication. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is…

  • CVE-2022-20059MedMar 10, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for…

  • CVE-2022-20058MedMar 10, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for…

  • CVE-2022-20056MedMar 10, 2022
    risk 0.43cvss 6.6epss 0.00

    In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for…

  • CVE-2021-25393MedJun 11, 2021
    risk 0.43cvss 6.6epss 0.00

    Improper sanitization of incoming intent in SecSettings prior to SMR MAY-2021 Release 1 allows local attackers to get permissions to access system uid data.

Page 259 of 426