Android
by Google
CVEs (8,504)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-48231 | Med | 0.36 | 5.5 | 0.00 | May 9, 2023 | In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. | ||
| CVE-2022-47493 | Med | 0.36 | 5.5 | 0.00 | May 9, 2023 | In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. | ||
| CVE-2022-47492 | Med | 0.36 | 5.5 | 0.00 | May 9, 2023 | In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. | ||
| CVE-2022-47490 | Med | 0.36 | 5.5 | 0.00 | May 9, 2023 | In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. | ||
| CVE-2022-47487 | Med | 0.36 | 5.5 | 0.00 | May 9, 2023 | In thermal service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service local denial of service with no additional execution privileges. | ||
| CVE-2022-47340 | Med | 0.36 | 5.5 | 0.00 | May 9, 2023 | In h265 codec firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges. | ||
| CVE-2022-44420 | Med | 0.36 | 5.5 | 0.00 | May 9, 2023 | In modem, there is a possible missing verification of HashMME value in Security Mode Command. This could local denial of service with no additional execution privileges. | ||
| CVE-2022-44419 | Med | 0.36 | 5.5 | 0.00 | May 9, 2023 | In modem, there is a possible missing verification of NAS Security Mode Command Replay Attacks in LTE. This could local denial of service with no additional execution privileges. | ||
| CVE-2022-38685 | Med | 0.36 | 5.5 | 0.00 | May 9, 2023 | In bluetooth service, there is a possible missing permission check. This could lead to local denial of service in bluetooth service with no additional execution privileges needed. | ||
| CVE-2023-21091 | Med | 0.36 | 5.5 | 0.00 | Apr 19, 2023 | In canDisplayLocalUi of AppLocalePickerActivity.java, there is a possible way to change system app locales due to a missing permission check. This could lead to local denial of service across user boundaries with no additional execution privileges needed. User interaction is not… | ||
| CVE-2023-21087 | Med | 0.36 | 5.5 | 0.00 | Apr 19, 2023 | In PreferencesHelper.java, an uncaught exception may cause the device to get stuck in a boot loop. This could lead to local persistent denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:… | ||
| CVE-2023-21082 | Med | 0.36 | 5.5 | 0.00 | Apr 19, 2023 | In getNumberFromCallIntent of NewOutgoingCallIntentBroadcaster.java, there is a possible way to enumerate other user's contact phone number due to a confused deputy. This could lead to local information disclosure with User execution privileges needed. User interaction is not… | ||
| CVE-2023-21080 | Med | 0.36 | 5.5 | 0.00 | Apr 19, 2023 | In register_notification_rsp of btif_rc.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product:… | ||
| CVE-2023-20935 | Med | 0.36 | 5.5 | 0.00 | Apr 19, 2023 | In deserialize of multiple files, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:… | ||
| CVE-2023-20909 | Med | 0.36 | 5.5 | 0.00 | Apr 19, 2023 | In multiple functions of RunningTasks.java, there is a possible privilege escalation due to a missing privilege check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product:… | ||
| CVE-2022-47468 | Med | 0.36 | 5.5 | 0.00 | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. | ||
| CVE-2022-47467 | Med | 0.36 | 5.5 | 0.00 | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. | ||
| CVE-2022-47466 | Med | 0.36 | 5.5 | 0.00 | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. | ||
| CVE-2022-47465 | Med | 0.36 | 5.5 | 0.00 | Apr 11, 2023 | In vdsp service, there is a missing permission check. This could lead to local denial of service in vdsp service. | ||
| CVE-2022-47464 | Med | 0.36 | 5.5 | 0.00 | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. |
- risk 0.36cvss 5.5epss 0.00
In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
In thermal service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
In h265 codec firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
In modem, there is a possible missing verification of HashMME value in Security Mode Command. This could local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
In modem, there is a possible missing verification of NAS Security Mode Command Replay Attacks in LTE. This could local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
In bluetooth service, there is a possible missing permission check. This could lead to local denial of service in bluetooth service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In canDisplayLocalUi of AppLocalePickerActivity.java, there is a possible way to change system app locales due to a missing permission check. This could lead to local denial of service across user boundaries with no additional execution privileges needed. User interaction is not…
- risk 0.36cvss 5.5epss 0.00
In PreferencesHelper.java, an uncaught exception may cause the device to get stuck in a boot loop. This could lead to local persistent denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…
- risk 0.36cvss 5.5epss 0.00
In getNumberFromCallIntent of NewOutgoingCallIntentBroadcaster.java, there is a possible way to enumerate other user's contact phone number due to a confused deputy. This could lead to local information disclosure with User execution privileges needed. User interaction is not…
- risk 0.36cvss 5.5epss 0.00
In register_notification_rsp of btif_rc.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…
- risk 0.36cvss 5.5epss 0.00
In deserialize of multiple files, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…
- risk 0.36cvss 5.5epss 0.00
In multiple functions of RunningTasks.java, there is a possible privilege escalation due to a missing privilege check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…
- risk 0.36cvss 5.5epss 0.00
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
- risk 0.36cvss 5.5epss 0.00
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
- risk 0.36cvss 5.5epss 0.00
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
- risk 0.36cvss 5.5epss 0.00
In vdsp service, there is a missing permission check. This could lead to local denial of service in vdsp service.
- risk 0.36cvss 5.5epss 0.00
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
Page 311 of 426