Android
by Google
CVEs (8,504)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-21107 | Hig | 0.51 | 7.8 | 0.00 | May 15, 2023 | In retrieveAppEntry of NotificationAccessDetails.java, there is a missing permission check. This could lead to local escalation of privilege across user boundaries with no additional execution privileges needed. User interaction is not needed for exploitation.Product:… | ||
| CVE-2023-21106 | Hig | 0.51 | 7.8 | 0.00 | May 15, 2023 | In adreno_set_param of adreno_gpu.c, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android… | ||
| CVE-2023-21102 | Hig | 0.51 | 7.8 | 0.00 | May 15, 2023 | In __efi_rt_asm_wrapper of efi-rt-wrapper.S, there is a possible bypass of shadow stack protection due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for… | ||
| CVE-2022-48388 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In powerEx service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-48384 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In srtd service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-48383 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | .In srtd service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-48369 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-48368 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-48250 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-48249 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-48248 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-48247 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-48246 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-48245 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-48244 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-48243 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2022-44433 | Hig | 0.51 | 7.8 | 0.00 | May 9, 2023 | In phoneEx service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. | ||
| CVE-2023-21100 | Hig | 0.51 | 7.8 | 0.00 | Apr 19, 2023 | In inflate of inflate.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12… | ||
| CVE-2023-21099 | Hig | 0.51 | 7.8 | 0.00 | Apr 19, 2023 | In multiple methods of PackageInstallerSession.java, there is a possible way to start foreground services from the background due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is… | ||
| CVE-2023-21098 | Hig | 0.51 | 7.8 | 0.00 | Apr 19, 2023 | In multiple functions of AccountManagerService.java, there is a possible loading of arbitrary code into the System Settings app due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not… |
- risk 0.51cvss 7.8epss 0.00
In retrieveAppEntry of NotificationAccessDetails.java, there is a missing permission check. This could lead to local escalation of privilege across user boundaries with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…
- risk 0.51cvss 7.8epss 0.00
In adreno_set_param of adreno_gpu.c, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android…
- risk 0.51cvss 7.8epss 0.00
In __efi_rt_asm_wrapper of efi-rt-wrapper.S, there is a possible bypass of shadow stack protection due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for…
- risk 0.51cvss 7.8epss 0.00
In powerEx service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In srtd service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
.In srtd service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In phoneEx service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
- risk 0.51cvss 7.8epss 0.00
In inflate of inflate.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12…
- risk 0.51cvss 7.8epss 0.00
In multiple methods of PackageInstallerSession.java, there is a possible way to start foreground services from the background due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is…
- risk 0.51cvss 7.8epss 0.00
In multiple functions of AccountManagerService.java, there is a possible loading of arbitrary code into the System Settings app due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not…
Page 85 of 426