VYPR

Android

by Google

CVEs (8,504)

  • CVE-2023-21164CriDec 4, 2023
    risk 0.64cvss 9.8epss 0.00

    In DevmemIntMapPMR of devicemem_server.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-21163CriDec 4, 2023
    risk 0.64cvss 9.8epss 0.00

    In PMR_ReadBytes of pmr.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-21162CriDec 4, 2023
    risk 0.64cvss 9.8epss 0.00

    In RGXUnbackingZSBuffer of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2022-42541CriNov 29, 2023
    risk 0.64cvss 9.8epss 0.01

    Remote code execution

  • CVE-2022-42540CriNov 29, 2023
    risk 0.64cvss 9.8epss 0.00

    Elevation of privilege

  • CVE-2022-42538CriNov 29, 2023
    risk 0.64cvss 9.8epss 0.00

    Elevation of privilege

  • CVE-2022-42537CriNov 29, 2023
    risk 0.64cvss 9.8epss 0.00

    Remote code execution

  • CVE-2022-42536CriNov 29, 2023
    risk 0.64cvss 9.8epss 0.00

    Remote code execution

  • CVE-2023-35662CriOct 11, 2023
    risk 0.64cvss 9.8epss 0.00

    there is a possible out of bounds write due to buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-35648CriOct 11, 2023
    risk 0.64cvss 9.8epss 0.00

    In ProtocolMiscLceIndAdapter::GetConfLevel() of protocolmiscadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with baseband firmware compromise required. User interaction is not needed for…

  • CVE-2023-35647CriOct 11, 2023
    risk 0.64cvss 9.8epss 0.00

    In ProtocolEmbmsGlobalCellIdAdapter::Init() of protocolembmsadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with baseband firmware compromise required. User interaction is not needed for…

  • CVE-2023-35646CriOct 11, 2023
    risk 0.64cvss 9.8epss 0.00

    In TBD of TBD, there is a possible stack buffer overflow due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-35681CriSep 11, 2023
    risk 0.64cvss 9.8epss 0.01

    In eatt_l2cap_reconfig_completed of eatt_impl.h, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-21287CriAug 14, 2023
    risk 0.64cvss 9.8epss 0.01

    In multiple locations, there is a possible code execution due to type confusion. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-21242CriAug 14, 2023
    risk 0.64cvss 9.8epss 0.01

    In isServerCertChainValid of InsecureEapNetworkHandler.java, there is a possible way to trust an imposter server due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2023-20965CriAug 14, 2023
    risk 0.64cvss 9.8epss 0.01

    In processMessageImpl of ClientModeImpl.java, there is a possible credential disclosure in the TOFU flow due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2023-21250CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    In gatt_end_operation of gatt_utils.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-20918CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    In getPendingIntentLaunchFlags of ActivityOptions.java, there is a possible elevation of privilege due to a confused deputy with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-21066CriJun 28, 2023
    risk 0.64cvss 9.8epss 0.01

    In cd_CodeMsg of cd_codec.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android…

  • CVE-2023-21130CriJun 15, 2023
    risk 0.64cvss 9.8epss 0.01

    In btm_ble_periodic_adv_sync_lost of btm_ble_gap.cc, there is a possible remote code execution due to a buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…

Page 5 of 426