VYPR

Android

by Google

CVEs (8,504)

  • CVE-2021-0945CriJun 15, 2023
    risk 0.64cvss 9.8epss 0.00

    In _PMRCreate of the PowerVR kernel driver, a missing bounds check means it is possible to overwrite heap memory via PhysmemNewRamBackedPMR. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2021-0701CriJun 15, 2023
    risk 0.64cvss 9.8epss 0.00

    In PVRSRVBridgeSyncPrimOpCreate of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privileges needed. User…

  • CVE-2021-0877CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.00

    Product: AndroidVersions: Android SoCAndroid ID: A-273754094

  • CVE-2023-21096CriApr 19, 2023
    risk 0.64cvss 9.8epss 0.00

    In OnWakelockReleased of attribution_processor.cc, there is a use after free that could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12 Android-12L…

  • CVE-2023-21058CriMar 24, 2023
    risk 0.64cvss 9.8epss 0.00

    In lcsm_SendRrAcquiAssist of lcsm_bcm_assist.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2023-21057CriMar 24, 2023
    risk 0.64cvss 9.8epss 0.00

    In ProfSixDecomTcpSACKoption of RohcPacketCommon, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2023-20954CriMar 24, 2023
    risk 0.64cvss 9.8epss 0.00

    In SDP_AddAttribute of sdp_db.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2023-20951CriMar 24, 2023
    risk 0.64cvss 9.8epss 0.00

    In gatt_process_prep_write_rsp of gatt_cl.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2022-42499CriMar 24, 2023
    risk 0.64cvss 9.8epss 0.01

    In sms_SendMmCpErrMsg of sms_MmConManagement.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2022-42498CriMar 24, 2023
    risk 0.64cvss 9.8epss 0.01

    In Pixel cellular firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android…

  • CVE-2022-20532CriMar 24, 2023
    risk 0.64cvss 9.8epss 0.00

    In parseTrackFragmentRun() of MPEG4Extractor.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2023-20946CriFeb 28, 2023
    risk 0.64cvss 9.8epss 0.00

    In onStart of BluetoothSwitchPreferenceController.java, there is a possible permission bypass due to a confused deputy. This could lead to remote escalation of privilege in Bluetooth settings with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2022-42529CriDec 16, 2022
    risk 0.64cvss 9.8epss 0.01

    Product: AndroidVersions: Android kernelAndroid ID: A-235292841References: N/A

  • CVE-2022-20473CriDec 13, 2022
    risk 0.64cvss 9.8epss 0.09

    In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2022-20472CriDec 13, 2022
    risk 0.64cvss 9.8epss 0.07

    In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2022-20391CriSep 13, 2022
    risk 0.64cvss 9.8epss 0.00

    Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257000

  • CVE-2022-20390CriSep 13, 2022
    risk 0.64cvss 9.8epss 0.00

    Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257002

  • CVE-2022-20389CriSep 13, 2022
    risk 0.64cvss 9.8epss 0.00

    Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257004

  • CVE-2022-20388CriSep 13, 2022
    risk 0.64cvss 9.8epss 0.00

    Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227323

  • CVE-2022-20387CriSep 13, 2022
    risk 0.64cvss 9.8epss 0.00

    Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227324

Page 6 of 426