VYPR

Android

by Google

CVEs (8,504)

  • CVE-2022-20198MedJun 15, 2022
    risk 0.29cvss 4.4epss 0.00

    In llcp_dlc_proc_connect_pdu of llcp_dlc.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure from the NFC stack with System execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2022-20182MedJun 15, 2022
    risk 0.29cvss 4.4epss 0.00

    In handle_ramdump of pixel_loader.c, there is a possible way to create a ramdump of non-secure memory due to a missing permission check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for…

  • CVE-2022-20176MedJun 15, 2022
    risk 0.29cvss 4.4epss 0.00

    In auth_store of sjtag-driver.c, there is a possible read of uninitialized memory due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2022-20174MedJun 15, 2022
    risk 0.29cvss 4.4epss 0.00

    In exynos_secEnv_init of mach-gs101.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2022-20165MedJun 15, 2022
    risk 0.29cvss 4.4epss 0.00

    In asn1_parse of asn1.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android…

  • CVE-2022-20162MedJun 15, 2022
    risk 0.29cvss 4.4epss 0.00

    In asn1_p256_int of crypto/asn1.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android…

  • CVE-2022-20159MedJun 15, 2022
    risk 0.29cvss 4.4epss 0.00

    In asn1_ec_pkey_parse of acropora/crypto/asn1_common.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2022-21762MedJun 6, 2022
    risk 0.29cvss 4.4epss 0.00

    In apusys driver, there is a possible system crash due to an integer overflow. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06477946; Issue ID: ALPS06477946.

  • CVE-2022-21761MedJun 6, 2022
    risk 0.29cvss 4.4epss 0.00

    In apusys driver, there is a possible system crash due to an integer overflow. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06479532; Issue ID: ALPS06479532.

  • CVE-2022-21760MedJun 6, 2022
    risk 0.29cvss 4.4epss 0.00

    In apusys driver, there is a possible system crash due to an integer overflow. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06479562; Issue ID: ALPS06479562.

  • CVE-2022-21756MedJun 6, 2022
    risk 0.29cvss 4.4epss 0.00

    In WLAN driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06535950; Issue ID: ALPS06535950.

  • CVE-2022-21755MedJun 6, 2022
    risk 0.29cvss 4.4epss 0.00

    In WLAN driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06545464; Issue ID: ALPS06545464.

  • CVE-2022-21747MedJun 6, 2022
    risk 0.29cvss 4.4epss 0.00

    In imgsensor, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06478078; Issue ID: ALPS06478078.

  • CVE-2022-21746MedJun 6, 2022
    risk 0.29cvss 4.4epss 0.00

    In imgsensor, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06479698; Issue ID: ALPS06479698.

  • CVE-2022-20107MedMay 3, 2022
    risk 0.29cvss 4.4epss 0.00

    In subtitle service, there is a possible application crash due to an integer overflow. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: DTV03330673; Issue ID: DTV03330673.

  • CVE-2022-20103MedMay 3, 2022
    risk 0.29cvss 4.4epss 0.00

    In aee daemon, there is a possible information disclosure due to symbolic link following. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06383944; Issue ID: ALPS06282684.

  • CVE-2022-20102MedMay 3, 2022
    risk 0.29cvss 4.4epss 0.00

    In aee daemon, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06296442; Issue ID: ALPS06296405.

  • CVE-2022-20100MedMay 3, 2022
    risk 0.29cvss 4.4epss 0.00

    In aee daemon, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06383944; Issue ID: ALPS06270804.

  • CVE-2022-20098MedMay 3, 2022
    risk 0.29cvss 4.4epss 0.00

    In aee daemon, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06419017; Issue ID: ALPS06419017.

  • CVE-2022-20096MedMay 3, 2022
    risk 0.29cvss 4.4epss 0.00

    In camera, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with System execution privileges needed. User interaction is no needed for exploitation. Patch ID: ALPS06419003; Issue ID: ALPS06419003.

Page 391 of 426