VYPR

Android

by Google

CVEs (8,504)

  • CVE-2025-32313HigMar 2, 2026
    risk 0.55cvss 8.4epss 0.00

    In UsageEvents of UsageEvents.java, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2025-48581HigSep 4, 2025
    risk 0.55cvss 8.4epss 0.00

    In VerifyNoOverlapInSessions of apexd.cpp, there is a possible way to block security updates due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2025-36899HigSep 4, 2025
    risk 0.55cvss 8.4epss 0.00

    There is a possible escalation of privilege due to test/debugging code left in a production build. This could lead to physical escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2025-22410HigAug 26, 2025
    risk 0.55cvss 8.4epss 0.00

    In multiple locations, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2025-22409HigAug 26, 2025
    risk 0.55cvss 8.4epss 0.00

    In rfc_send_buf_uih of rfc_ts_frames.cc, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2025-22406HigAug 26, 2025
    risk 0.55cvss 8.4epss 0.00

    In bnepu_check_send_packet of bnep_utils.cc, there is a possible way to achieve code execution due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2025-22405HigAug 26, 2025
    risk 0.55cvss 8.4epss 0.00

    In multiple locations, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2025-22404HigAug 26, 2025
    risk 0.55cvss 8.4epss 0.00

    In avct_lcb_msg_ind of avct_lcb_act.cc, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2025-27700HigMay 27, 2025
    risk 0.55cvss 8.4epss 0.00

    There is a possible bypass of carrier restrictions due to an unusual root cause. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2025-20979HigMay 7, 2025
    risk 0.55cvss 8.4epss 0.00

    Out-of-bounds write in libsavscmn prior to Android 15 allows local attackers to execute arbitrary code.

  • CVE-2024-56191HigMar 10, 2025
    risk 0.55cvss 8.4epss 0.00

    In dhd_process_full_gscan_result of dhd_pno.c, there is a possible EoP due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-40677HigJan 28, 2025
    risk 0.55cvss 8.4epss 0.00

    In shouldSkipForInitialSUW of AdvancedPowerUsageDetail.java, there is a possible way to bypass factory reset protections due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not…

  • CVE-2024-40672HigJan 28, 2025
    risk 0.55cvss 8.4epss 0.00

    In onCreate of ChooserActivity.java, there is a possible way to bypass factory reset protections due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-40670HigJan 28, 2025
    risk 0.55cvss 8.4epss 0.00

    In TBD of TBD, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-40669HigJan 28, 2025
    risk 0.55cvss 8.4epss 0.00

    In TBD of TBD, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-40651HigJan 28, 2025
    risk 0.55cvss 8.4epss 0.00

    In TBD of TBD, there is a possible use-after-free due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-40649HigJan 28, 2025
    risk 0.55cvss 8.4epss 0.00

    In TBD of TBD, there is a possible use-after-free due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-34748HigJan 28, 2025
    risk 0.55cvss 8.4epss 0.00

    In _DevmemXReservationPageAddress of devicemem_server.c, there is a possible use-after-free due to improper casting. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-34733HigJan 28, 2025
    risk 0.55cvss 8.4epss 0.00

    In DevmemXIntMapPages of devicemem_server.c, there is a possible arbitrary code execution due to an integer overflow. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-34732HigJan 28, 2025
    risk 0.55cvss 8.4epss 0.00

    In RGXMMUCacheInvalidate of rgxmem.c, there is a possible arbitrary code execution due to a race condition. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

Page 50 of 426