VYPR
Vendor

Android X86

Products
1
CVEs
1,312
Across products
1,312
Status
Private

Products

1

Recent CVEs

1,312
View all 1,312 CVEs →
  • CVE-2025-48595HigKEVJun 1, 2026
    risk 0.67cvss 8.4epss 0.02

    In multiple locations, there is a possible way to achieve code execution due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-48418CriJan 2, 2024
    risk 0.65cvss 10.0epss 0.00

    In checkDebuggingDisallowed of DeviceVersionFragment.java, there is a     possible way to access adb before SUW completion due to an insecure default     value. This could lead to local escalation of privilege with no additional     execution privileges needed. User…

  • CVE-2026-55366CriSep 15, 2026
    risk 0.64cvss 9.8epss 0.00

    In IP Multimedia Subsystem, there is a possible authentication bypass due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2026-58822CriSep 8, 2026
    risk 0.64cvss 9.8epss 0.00

    In multiple functions of ftsmooth.c, there is a possible memory safety issue due to improper casting. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2026-49921CriSep 8, 2026
    risk 0.64cvss 9.8epss 0.00

    In multiple locations, there is a possible memory safety issue due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2026-28606CriSep 8, 2026
    risk 0.64cvss 9.8epss 0.00

    In handleBondStateChanged of AdapterService.java, there is a possible way to skip pairing due to a logic error in the code. This could lead to remote escalation of privilege without user consent with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2026-0116CriMar 10, 2026
    risk 0.64cvss 9.8epss 0.00

    In __mfc_handle_released_buf of mfc_core_isr.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2026-0113CriMar 10, 2026
    risk 0.64cvss 9.8epss 0.00

    In ns_GetUserData of ns_SmscbUtilities.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2026-0111CriMar 10, 2026
    risk 0.64cvss 9.8epss 0.00

    In ns_GetUserData of ns_SmscbUtilities.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2026-0110CriMar 10, 2026
    risk 0.64cvss 9.8epss 0.00

    In MM_DATA_IND of cn_NrSmMsgHdlrFromMM.cpp, there is a possible EoP due to memory corruption. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2026-0006CriMar 2, 2026
    risk 0.64cvss 9.8epss 0.01

    In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-49748CriJan 21, 2025
    risk 0.64cvss 9.8epss 0.00

    In gatts_process_primary_service_req of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-49747CriJan 21, 2025
    risk 0.64cvss 9.8epss 0.00

    In gatts_process_read_by_type_req of gatt_sr.cc, there is a possible out of bounds write due to a logic error in the code. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2018-9478CriNov 20, 2024
    risk 0.64cvss 9.8epss 0.00

    In process_service_attr_req and process_service_search_attr_req of sdp_server.cc, there is an out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed.  User interaction is not needed for…

  • CVE-2018-9467CriNov 20, 2024
    risk 0.64cvss 9.8epss 0.00

    In the getHost() function of UriTest.java, there is the possibility of incorrect web origin determination. This could lead to incorrect security decisions with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-21217CriDec 4, 2023
    risk 0.64cvss 9.8epss 0.00

    In PMRWritePMPageList of TBD, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-21287CriAug 14, 2023
    risk 0.64cvss 9.8epss 0.01

    In multiple locations, there is a possible code execution due to type confusion. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-20965CriAug 14, 2023
    risk 0.64cvss 9.8epss 0.01

    In processMessageImpl of ClientModeImpl.java, there is a possible credential disclosure in the TOFU flow due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2023-20918CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    In getPendingIntentLaunchFlags of ActivityOptions.java, there is a possible elevation of privilege due to a confused deputy with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-21130CriJun 15, 2023
    risk 0.64cvss 9.8epss 0.01

    In btm_ble_periodic_adv_sync_lost of btm_ble_gap.cc, there is a possible remote code execution due to a buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…