Android
by Google
CVEs (8,504)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-21266 | Hig | 0.51 | 7.8 | 0.00 | Oct 6, 2023 | In multiple functions of ActivityManagerService.java, there is a possible way to escape Google Play protection due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for… | ||
| CVE-2023-35687 | Hig | 0.51 | 7.8 | 0.00 | Sep 11, 2023 | In MtpPropertyValue of MtpProperty.h, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. | ||
| CVE-2023-35682 | Hig | 0.51 | 7.8 | 0.00 | Sep 11, 2023 | In hasPermissionForActivity of PackageManagerHelper.java, there is a possible way to start arbitrary components due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation. | ||
| CVE-2023-35676 | Hig | 0.51 | 7.8 | 0.00 | Sep 11, 2023 | In createQuickShareAction of SaveImageInBackgroundTask.java, there is a possible way to trigger a background activity launch due to an unsafe PendingIntent. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not… | ||
| CVE-2023-35670 | Hig | 0.51 | 7.8 | 0.00 | Sep 11, 2023 | In computeValuesFromData of FileUtils.java, there is a possible way to insert files to other apps' external private directories due to a path traversal error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not… | ||
| CVE-2023-35669 | Hig | 0.51 | 7.8 | 0.00 | Sep 11, 2023 | In checkKeyIntentParceledCorrectly of AccountManagerService.java, there is a possible way to control other running activities due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not… | ||
| CVE-2023-35667 | Hig | 0.51 | 7.8 | 0.00 | Sep 11, 2023 | In updateList of NotificationAccessSettings.java, there is a possible way to hide approved notification listeners in the settings due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction… | ||
| CVE-2023-35666 | Hig | 0.51 | 7.8 | 0.00 | Sep 11, 2023 | In bta_av_rc_msg of bta_av_act.cc, there is a possible use after free due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. | ||
| CVE-2023-35665 | Hig | 0.51 | 7.8 | 0.00 | Sep 11, 2023 | In multiple files, there is a possible way to import a contact from another user due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. | ||
| CVE-2023-38464 | Hig | 0.51 | 7.8 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges | ||
| CVE-2023-38460 | Hig | 0.51 | 7.8 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges | ||
| CVE-2023-38459 | Hig | 0.51 | 7.8 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges | ||
| CVE-2023-38458 | Hig | 0.51 | 7.8 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges | ||
| CVE-2023-38456 | Hig | 0.51 | 7.8 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges | ||
| CVE-2023-38455 | Hig | 0.51 | 7.8 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges | ||
| CVE-2023-38453 | Hig | 0.51 | 7.8 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges | ||
| CVE-2023-38452 | Hig | 0.51 | 7.8 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges | ||
| CVE-2023-38451 | Hig | 0.51 | 7.8 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges | ||
| CVE-2023-38450 | Hig | 0.51 | 7.8 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges | ||
| CVE-2023-38449 | Hig | 0.51 | 7.8 | 0.00 | Sep 4, 2023 | In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges |
- risk 0.51cvss 7.8epss 0.00
In multiple functions of ActivityManagerService.java, there is a possible way to escape Google Play protection due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for…
- risk 0.51cvss 7.8epss 0.00
In MtpPropertyValue of MtpProperty.h, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- risk 0.51cvss 7.8epss 0.00
In hasPermissionForActivity of PackageManagerHelper.java, there is a possible way to start arbitrary components due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
- risk 0.51cvss 7.8epss 0.00
In createQuickShareAction of SaveImageInBackgroundTask.java, there is a possible way to trigger a background activity launch due to an unsafe PendingIntent. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not…
- risk 0.51cvss 7.8epss 0.00
In computeValuesFromData of FileUtils.java, there is a possible way to insert files to other apps' external private directories due to a path traversal error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not…
- risk 0.51cvss 7.8epss 0.00
In checkKeyIntentParceledCorrectly of AccountManagerService.java, there is a possible way to control other running activities due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not…
- risk 0.51cvss 7.8epss 0.00
In updateList of NotificationAccessSettings.java, there is a possible way to hide approved notification listeners in the settings due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction…
- risk 0.51cvss 7.8epss 0.00
In bta_av_rc_msg of bta_av_act.cc, there is a possible use after free due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- risk 0.51cvss 7.8epss 0.00
In multiple files, there is a possible way to import a contact from another user due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- risk 0.51cvss 7.8epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
- risk 0.51cvss 7.8epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
- risk 0.51cvss 7.8epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
- risk 0.51cvss 7.8epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
- risk 0.51cvss 7.8epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
- risk 0.51cvss 7.8epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
- risk 0.51cvss 7.8epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
- risk 0.51cvss 7.8epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
- risk 0.51cvss 7.8epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
- risk 0.51cvss 7.8epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
- risk 0.51cvss 7.8epss 0.00
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
Page 81 of 426