Vendor CVEs
All CVEs
16,116 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-39123 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel. | ||
| CVE-2022-39122 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel. | ||
| CVE-2022-39121 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel. | ||
| CVE-2022-39120 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel. | ||
| CVE-2022-39117 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In messaging service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. | ||
| CVE-2022-39115 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed. | ||
| CVE-2022-39114 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed. | ||
| CVE-2022-39113 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed. | ||
| CVE-2022-39112 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed. | ||
| CVE-2022-39105 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel. | ||
| CVE-2022-39103 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In Gallery service, there is a missing permission check. This could lead to local denial of service in Gallery service with no additional execution privileges needed. | ||
| CVE-2022-38697 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In messaging service, there is a missing permission check. This could lead to access unexpected provider in contacts service with no additional execution privileges needed. | ||
| CVE-2022-38690 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In camera driver, there is a possible memory corruption due to improper locking. This could lead to local denial of service in kernel. | ||
| CVE-2022-38689 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. | ||
| CVE-2022-38688 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. | ||
| CVE-2022-38687 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In messaging service, there is a missing permission check. This could lead to local denial of service in messaging service with no additional execution privileges needed. | ||
| CVE-2022-38679 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In music service, there is a missing permission check. This could lead to local denial of service in music service with no additional execution privileges needed. | ||
| CVE-2022-38677 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In cell service, there is a missing permission check. This could lead to local denial of service in cell service with no additional execution privileges needed. | ||
| CVE-2022-38676 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In gpu driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel. | ||
| CVE-2022-38673 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel. | ||
| CVE-2022-38672 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel. | ||
| CVE-2022-38671 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In camera driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel. | ||
| CVE-2022-2984 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In jpg driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel. | ||
| CVE-2022-20464 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2022 | In various functions of ap_input_processor.c, there is a possible way to record audio during a phone call due to a logic error in the code. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for… | ||
| CVE-2022-20440 | Med | 0.36 | 5.5 | 0.00 | Oct 11, 2022 | In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android SoCAndroid ID: A-242259918 | ||
| CVE-2022-20439 | Med | 0.36 | 5.5 | 0.00 | Oct 11, 2022 | In Messaging, There has unauthorized provider, this could cause Local Deny of Service.Product: AndroidVersions: Android SoCAndroid ID: A-242266172 | ||
| CVE-2022-20438 | Med | 0.36 | 5.5 | 0.00 | Oct 11, 2022 | In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android SoCAndroid ID: A-242259920 | ||
| CVE-2022-20437 | Med | 0.36 | 5.5 | 0.00 | Oct 11, 2022 | In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android SoCAndroid ID: A-242258929 | ||
| CVE-2022-20425 | Med | 0.36 | 5.5 | 0.00 | Oct 11, 2022 | In addAutomaticZenRule of ZenModeHelper.java, there is a possible permanent degradation of performance due to resource exhaustion. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation.Product:… | ||
| CVE-2022-20413 | Med | 0.36 | 5.5 | 0.00 | Oct 11, 2022 | In start of Threads.cpp, there is a possible way to record audio during a phone call due to a logic error in the code. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:… | ||
| CVE-2022-20351 | Med | 0.36 | 5.5 | 0.00 | Oct 11, 2022 | In queryInternal of CallLogProvider.java, there is a possible access to voicemail information due to SQL injection. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product:… | ||
| CVE-2022-20399 | Med | 0.36 | 5.5 | 0.00 | Sep 13, 2022 | In the SEPolicy configuration of system apps, there is a possible access to the 'ip' utility due to an insecure default value. This could lead to local information disclosure of network data with no additional execution privileges needed. User interaction is not needed for… | ||
| CVE-2022-20396 | Med | 0.36 | 5.5 | 0.00 | Sep 13, 2022 | In SettingsActivity.java, there is a possible way to make a device discoverable over Bluetooth, without permission or user interaction, due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction… | ||
| CVE-2022-20393 | Med | 0.36 | 5.5 | 0.00 | Sep 13, 2022 | In extract3GPPGlobalDescriptions of TextDescriptions.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure from the media server with no additional execution privileges needed. User interaction is not needed for… | ||
| CVE-2021-0887 | Med | 0.36 | 5.5 | 0.00 | Aug 24, 2022 | In PVRSRVBridgeHeapCfgHeapConfigName, there is a possible leak of kernel heap content due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product:… | ||
| CVE-2021-0698 | Med | 0.36 | 5.5 | 0.00 | Aug 24, 2022 | In PVRSRVBridgeHeapCfgHeapDetails, there is a possible leak of kernel heap content due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:… | ||
| CVE-2022-20341 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In ConnectivityService, there is a possible bypass of network permissions due to a missing permission check. This could lead to local information disclosure of tethering interfaces with no additional execution privileges needed. User interaction is not needed for… | ||
| CVE-2022-20332 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In PackageManager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not… | ||
| CVE-2022-20326 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In Telephony, there is a possible disclosure of SIM identifiers due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android… | ||
| CVE-2022-20324 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In Framework, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed… | ||
| CVE-2022-20323 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In PackageManager, there is a possible package installation disclosure due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:… | ||
| CVE-2022-20322 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In PackageManager, there is a possible installed package disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:… | ||
| CVE-2022-20317 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In SystemUI, there is a possible way to unexpectedly enable the external speaker due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product:… | ||
| CVE-2022-20312 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In WifiP2pManager, there is a possible toobtain WiFi P2P MAC address without user consent due to missing permission check. This could lead to local information disclosure without additional execution privileges needed. User interaction is not needed forexploitationProduct:… | ||
| CVE-2022-20304 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In Content, there is a possible way to determinate the user's account due to side channel information disclosure. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:… | ||
| CVE-2022-20303 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In ContentService, there is a possible way to determine if an account is on the device without GET_ACCOUNTS permission due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for… | ||
| CVE-2022-20301 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In Content, there is a possible way to check if an account exists on the device due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:… | ||
| CVE-2022-20300 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In Content, there is a possible way to check if the given account exists on the device due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product:… | ||
| CVE-2022-20299 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In ContentService, there is a possible way to check if the given account exists on the device due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product:… | ||
| CVE-2022-20298 | Med | 0.36 | 5.5 | 0.00 | Aug 12, 2022 | In ContentService, there is a possible way to check if an account exists on the device due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product:… |
- risk 0.36cvss 5.5epss 0.00
In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
- risk 0.36cvss 5.5epss 0.00
In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
- risk 0.36cvss 5.5epss 0.00
In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
- risk 0.36cvss 5.5epss 0.00
In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
- risk 0.36cvss 5.5epss 0.00
In messaging service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
- risk 0.36cvss 5.5epss 0.00
In Gallery service, there is a missing permission check. This could lead to local denial of service in Gallery service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In messaging service, there is a missing permission check. This could lead to access unexpected provider in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In camera driver, there is a possible memory corruption due to improper locking. This could lead to local denial of service in kernel.
- risk 0.36cvss 5.5epss 0.00
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In messaging service, there is a missing permission check. This could lead to local denial of service in messaging service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In music service, there is a missing permission check. This could lead to local denial of service in music service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In cell service, there is a missing permission check. This could lead to local denial of service in cell service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In gpu driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
- risk 0.36cvss 5.5epss 0.00
In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
- risk 0.36cvss 5.5epss 0.00
In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
- risk 0.36cvss 5.5epss 0.00
In camera driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
- risk 0.36cvss 5.5epss 0.00
In jpg driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
- risk 0.36cvss 5.5epss 0.00
In various functions of ap_input_processor.c, there is a possible way to record audio during a phone call due to a logic error in the code. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for…
- risk 0.36cvss 5.5epss 0.00
In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android SoCAndroid ID: A-242259918
- risk 0.36cvss 5.5epss 0.00
In Messaging, There has unauthorized provider, this could cause Local Deny of Service.Product: AndroidVersions: Android SoCAndroid ID: A-242266172
- risk 0.36cvss 5.5epss 0.00
In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android SoCAndroid ID: A-242259920
- risk 0.36cvss 5.5epss 0.00
In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android SoCAndroid ID: A-242258929
- risk 0.36cvss 5.5epss 0.00
In addAutomaticZenRule of ZenModeHelper.java, there is a possible permanent degradation of performance due to resource exhaustion. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation.Product:…
- risk 0.36cvss 5.5epss 0.00
In start of Threads.cpp, there is a possible way to record audio during a phone call due to a logic error in the code. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…
- risk 0.36cvss 5.5epss 0.00
In queryInternal of CallLogProvider.java, there is a possible access to voicemail information due to SQL injection. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…
- risk 0.36cvss 5.5epss 0.00
In the SEPolicy configuration of system apps, there is a possible access to the 'ip' utility due to an insecure default value. This could lead to local information disclosure of network data with no additional execution privileges needed. User interaction is not needed for…
- risk 0.36cvss 5.5epss 0.00
In SettingsActivity.java, there is a possible way to make a device discoverable over Bluetooth, without permission or user interaction, due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction…
- risk 0.36cvss 5.5epss 0.00
In extract3GPPGlobalDescriptions of TextDescriptions.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure from the media server with no additional execution privileges needed. User interaction is not needed for…
- risk 0.36cvss 5.5epss 0.00
In PVRSRVBridgeHeapCfgHeapConfigName, there is a possible leak of kernel heap content due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…
- risk 0.36cvss 5.5epss 0.00
In PVRSRVBridgeHeapCfgHeapDetails, there is a possible leak of kernel heap content due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…
- risk 0.36cvss 5.5epss 0.00
In ConnectivityService, there is a possible bypass of network permissions due to a missing permission check. This could lead to local information disclosure of tethering interfaces with no additional execution privileges needed. User interaction is not needed for…
- risk 0.36cvss 5.5epss 0.00
In PackageManager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not…
- risk 0.36cvss 5.5epss 0.00
In Telephony, there is a possible disclosure of SIM identifiers due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android…
- risk 0.36cvss 5.5epss 0.00
In Framework, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed…
- risk 0.36cvss 5.5epss 0.00
In PackageManager, there is a possible package installation disclosure due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…
- risk 0.36cvss 5.5epss 0.00
In PackageManager, there is a possible installed package disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…
- risk 0.36cvss 5.5epss 0.00
In SystemUI, there is a possible way to unexpectedly enable the external speaker due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product:…
- risk 0.36cvss 5.5epss 0.00
In WifiP2pManager, there is a possible toobtain WiFi P2P MAC address without user consent due to missing permission check. This could lead to local information disclosure without additional execution privileges needed. User interaction is not needed forexploitationProduct:…
- risk 0.36cvss 5.5epss 0.00
In Content, there is a possible way to determinate the user's account due to side channel information disclosure. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…
- risk 0.36cvss 5.5epss 0.00
In ContentService, there is a possible way to determine if an account is on the device without GET_ACCOUNTS permission due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for…
- risk 0.36cvss 5.5epss 0.00
In Content, there is a possible way to check if an account exists on the device due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…
- risk 0.36cvss 5.5epss 0.00
In Content, there is a possible way to check if the given account exists on the device due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product:…
- risk 0.36cvss 5.5epss 0.00
In ContentService, there is a possible way to check if the given account exists on the device due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product:…
- risk 0.36cvss 5.5epss 0.00
In ContentService, there is a possible way to check if an account exists on the device due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product:…
Page 219 of 323