Android
by Google
CVEs (8,504)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-35677 | Med | 0.36 | 5.5 | 0.00 | Sep 11, 2023 | In onCreate of DeviceAdminAdd.java, there is a possible way to forcibly add a device admin due to a missing permission check. This could lead to local denial of service (factory reset or continuous locking) with no additional execution privileges needed. User interaction is not… | ||
| CVE-2023-35675 | Med | 0.36 | 5.5 | 0.00 | Sep 11, 2023 | In loadMediaResumptionControls of MediaResumeListener.kt, there is a possible way to play and listen to media files played by another user on the same device due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges… | ||
| CVE-2023-35671 | Med | 0.36 | 5.5 | 0.00 | Sep 11, 2023 | In onHostEmulationData of HostEmulationManager.java, there is a possible way for a general purpose NFC reader to read the full card number and expiry details when the device is in locked screen mode due to a logic error in the code. This could lead to local information… | ||
| CVE-2023-35664 | Med | 0.36 | 5.5 | 0.00 | Sep 11, 2023 | In convertSubgraphFromHAL of ShimConverter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. | ||
| CVE-2023-20826 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In cta, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: ALPS07978550; Issue ID: ALPS07978550. | ||
| CVE-2023-20825 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In duraspeed, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: ALPS07951402; Issue ID:… | ||
| CVE-2023-20824 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In duraspeed, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: ALPS07951402; Issue ID:… | ||
| CVE-2023-38554 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In wcn bsp driver, there is a possible out of bounds write due to a missing bounds check.This could lead to local denial of service with no additional execution privileges | ||
| CVE-2023-38466 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In ims service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges | ||
| CVE-2023-38465 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In ims service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges | ||
| CVE-2023-38463 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges | ||
| CVE-2023-38462 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges | ||
| CVE-2023-38461 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges | ||
| CVE-2023-38457 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges | ||
| CVE-2023-38454 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In vowifi service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges | ||
| CVE-2023-38448 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges | ||
| CVE-2023-38447 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges | ||
| CVE-2023-38446 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges | ||
| CVE-2023-38445 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges | ||
| CVE-2023-38442 | Med | 0.36 | 5.5 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges |
- risk 0.36cvss 5.5epss 0.00
In onCreate of DeviceAdminAdd.java, there is a possible way to forcibly add a device admin due to a missing permission check. This could lead to local denial of service (factory reset or continuous locking) with no additional execution privileges needed. User interaction is not…
- risk 0.36cvss 5.5epss 0.00
In loadMediaResumptionControls of MediaResumeListener.kt, there is a possible way to play and listen to media files played by another user on the same device due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges…
- risk 0.36cvss 5.5epss 0.00
In onHostEmulationData of HostEmulationManager.java, there is a possible way for a general purpose NFC reader to read the full card number and expiry details when the device is in locked screen mode due to a logic error in the code. This could lead to local information…
- risk 0.36cvss 5.5epss 0.00
In convertSubgraphFromHAL of ShimConverter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
- risk 0.36cvss 5.5epss 0.00
In cta, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: ALPS07978550; Issue ID: ALPS07978550.
- risk 0.36cvss 5.5epss 0.00
In duraspeed, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: ALPS07951402; Issue ID:…
- risk 0.36cvss 5.5epss 0.00
In duraspeed, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: ALPS07951402; Issue ID:…
- risk 0.36cvss 5.5epss 0.00
In wcn bsp driver, there is a possible out of bounds write due to a missing bounds check.This could lead to local denial of service with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In ims service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In ims service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In vowifi service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
Page 303 of 426