VYPR

Android

by Google

CVEs (8,504)

  • CVE-2021-39658CriFeb 11, 2022
    risk 0.64cvss 9.8epss 0.01

    ismsEx service is a vendor service in unisoc equipment。ismsEx service is an extension of sms system service,but it does not check the permissions of the caller,resulting in permission leaks。Third-party apps can use this service to arbitrarily modify and set system…

  • CVE-2021-39616CriFeb 11, 2022
    risk 0.64cvss 9.8epss 0.01

    Summary:Product: AndroidVersions: Android SoCAndroid ID: A-204686438

  • CVE-2021-39623CriJan 14, 2022
    risk 0.64cvss 9.8epss 0.02

    In doRead of SimpleDecodingSource.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2021-1049CriJan 14, 2022
    risk 0.64cvss 9.8epss 0.01

    Hacker one bug ID: 1343975Product: AndroidVersions: Android SoCAndroid ID: A-204256722

  • CVE-2021-39655CriDec 15, 2021
    risk 0.64cvss 9.8epss 0.00

    Product: AndroidVersions: Android kernelAndroid ID: A-192641593References: N/A

  • CVE-2021-39645CriDec 15, 2021
    risk 0.64cvss 9.8epss 0.01

    Product: AndroidVersions: Android kernelAndroid ID: A-199805112References: N/A

  • CVE-2021-39644CriDec 15, 2021
    risk 0.64cvss 9.8epss 0.00

    Product: AndroidVersions: Android kernelAndroid ID: A-199809304References: N/A

  • CVE-2021-39641CriDec 15, 2021
    risk 0.64cvss 9.8epss 0.00

    Product: AndroidVersions: Android kernelAndroid ID: A-126949257References: N/A

  • CVE-2021-0956CriDec 15, 2021
    risk 0.64cvss 9.8epss 0.01

    In NfcTag::discoverTechnologies (activation) of NfcTag.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege with no additionalSystem execution privileges needed. User interaction is not needed for…

  • CVE-2021-0889CriDec 15, 2021
    risk 0.64cvss 9.8epss 0.02

    In Android TV , there is a possible silent pairing due to lack of rate limiting in the pairing flow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10…

  • CVE-2021-0869CriSep 21, 2021
    risk 0.64cvss 9.8epss 0.01

    In GetTimeStampAndPkt of DumpstateDevice.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android…

  • CVE-2021-0515CriJul 14, 2021
    risk 0.64cvss 9.8epss 0.01

    In Factory::CreateStrictFunctionMap of factory.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2021-0516CriJun 21, 2021
    risk 0.64cvss 9.8epss 0.02

    In p2p_process_prov_disc_req of p2p_pd.c, there is a possible out of bounds read and write due to a use after free. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2021-0324CriJun 14, 2021
    risk 0.64cvss 9.8epss 0.01

    Product: AndroidVersions: Android SoCAndroid ID: A-175402462

  • CVE-2021-0474CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.03

    In avrc_msg_cback of avrc_api.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11…

  • CVE-2021-0430CriApr 13, 2021
    risk 0.64cvss 9.8epss 0.03

    In rw_mfc_handle_read_op of rw_mfc.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution via a malicious NFC packet with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2021-0397CriMar 10, 2021
    risk 0.64cvss 9.8epss 0.06

    In sdp_copy_raw_data of sdp_discovery.cc, there is a possible system compromise due to a double free. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11…

  • CVE-2021-0396CriMar 10, 2021
    risk 0.64cvss 9.8epss 0.02

    In Builtins::Generate_ArgumentsAdaptorTrampoline of builtins-arm.cc and related files, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed.…

  • CVE-2021-26689CriFeb 4, 2021
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software. The USB laf gadget has a use-after-free. The LG ID is LVE-SMP-200031 (February 2021).

  • CVE-2021-26688CriFeb 4, 2021
    risk 0.64cvss 9.8epss 0.00

    An issue was discovered on LG Wing mobile devices with Android OS 10 software. The biometric sensor has weak security properties. The LG ID is LVE-SMP-200030 (February 2021).

Page 9 of 426