VYPR

Vendor CVEs

UNISOC

All CVEs

659 total · sorted by risk
  • CVE-2022-38696CriSep 1, 2025
    risk 0.64cvss 9.8epss 0.01

    In BootRom, there's a possible missing payload size check. This could lead to memory buffer overflow without requiring additional execution privileges.

  • CVE-2022-38693CriSep 1, 2025
    risk 0.64cvss 9.8epss 0.01

    In FDL1, there is a possible missing payload size check. This could lead to memory buffer overflow without requiring additional execution privileges.

  • CVE-2022-38692CriSep 1, 2025
    risk 0.64cvss 9.8epss 0.00

    In BootROM, there is a missing size check for RSA keys in Certificate Type 0 validation. This could lead to memory buffer overflow without requiring additional execution privileges.

  • CVE-2025-31715CriAug 18, 2025
    risk 0.64cvss 9.8epss 0.02

    In vowifi service, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege with no additional execution privileges needed.

  • CVE-2022-27250CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.01

    The UNISOC chipset through 2022-03-15 allows attackers to obtain remote control of a mobile phone, e.g., to obtain sensitive information from text messages or the device's screen, record video of the device's physical environment, or modify data.

  • CVE-2021-39658CriFeb 11, 2022
    risk 0.64cvss 9.8epss 0.01

    ismsEx service is a vendor service in unisoc equipment。ismsEx service is an extension of sms system service,but it does not check the permissions of the caller,resulting in permission leaks。Third-party apps can use this service to arbitrarily modify and set system…

  • CVE-2021-39635CriFeb 11, 2022
    risk 0.59cvss 9.1epss 0.01

    ims_ex is a vendor system service used to manage VoLTE in unisoc devices,But it does not verify the caller's permissions,so that normal apps (No phone permissions) can obtain some VoLTE sensitive information and manage VoLTE calls.Product: AndroidVersions: Android SoCAndroid…

  • CVE-2025-31713HigAug 18, 2025
    risk 0.55cvss 8.4epss 0.01

    In engineer mode service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed.

  • CVE-2024-39432HigSep 27, 2024
    risk 0.54cvss 8.3epss 0.00

    In UMTS RLC driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service with System execution privileges needed.

  • CVE-2024-39431HigSep 27, 2024
    risk 0.54cvss 8.3epss 0.00

    In UMTS RLC driver, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial of service with System execution privileges needed.

  • CVE-2022-38695HigSep 1, 2025
    risk 0.51cvss 7.8epss 0.00

    In BootRom, there's a possible unchecked command index. This could lead to local escalation of privilege with no additional execution privileges needed.

  • CVE-2022-38694HigSep 1, 2025
    risk 0.51cvss 7.8epss 0.01

    In BootRom, there is a possible unchecked write address. This could lead to local escalation of privilege with no additional execution privileges needed.

  • CVE-2022-38691HigSep 1, 2025
    risk 0.51cvss 7.8epss 0.00

    In BootROM, there is a possible missing validation for Certificate Type 0. This could lead to local escalation of privilege with no additional execution privileges needed.

  • CVE-2023-52351HigApr 8, 2024
    risk 0.51cvss 7.8epss 0.00

    In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-42748HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In telecom service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42747HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In camera service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42746HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In power manager, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42745HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In telecom service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42743HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In telecom service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42740HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In telecom service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42739HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In engineermode service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42738HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In telocom service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42736HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In telecom service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42696HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In telecom service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42695HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42694HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42693HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42692HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42691HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42690HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42689HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42688HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42687HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42686HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42685HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-42681HigDec 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In ion service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-40635HigOct 8, 2023
    risk 0.51cvss 7.8epss 0.00

    In linkturbo, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-40634HigOct 8, 2023
    risk 0.51cvss 7.8epss 0.00

    In phasechecksercer, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed

  • CVE-2023-38464HigSep 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges

  • CVE-2023-38460HigSep 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges

  • CVE-2023-38459HigSep 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges

  • CVE-2023-38458HigSep 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges

  • CVE-2023-38456HigSep 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges

  • CVE-2023-38455HigSep 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges

  • CVE-2023-38453HigSep 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges

  • CVE-2023-38452HigSep 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges

  • CVE-2023-38451HigSep 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges

  • CVE-2023-38450HigSep 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges

  • CVE-2023-38449HigSep 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges

  • CVE-2023-38444HigSep 4, 2023
    risk 0.51cvss 7.8epss 0.00

    In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges

Page 1 of 14