In Keyguard, there is a missing permission check. This could lead to local escalation of privilege and prevention of screen timeout with User executi…
In Core, there is a possible way to start an activity from the background due to a missing permission check. This could lead to local escalation of p…
In AppWidget, there is a possible way to start an activity from the background due to a missing permission check. This could lead to local escalation…
In Telephony, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure of phone …
In Telephony, there is a possible leak of ICCID and EID due to a missing permission check. This could lead to local information disclosure with no ad…
In ActivityManager, there is a way to read process state for other users due to a missing permission check. This could lead to local information disc…
In PackageManager, there is a possible way to get information about installed packages ignoring limitations introduced in Android 11 due to a missing…
In setChecked of SecureNfcPreferenceController.java, there is a missing permission check. This could lead to local escalation of privilege from the g…
In updateState of LocationServicesWifiScanningPreferenceController.java, there is a possible admin restriction bypass due to a missing permission che…
In WifiScanningPreferenceController and BluetoothScanningPreferenceController, there is a possible admin restriction bypass due to a missing permissi…
In addProviderRequestListener of LocationManagerService.java, there is a possible way to learn which packages request location information due to a m…
In cta, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local escalation of…
In getSubscriptionProperty of SubscriptionController.java, there is a possible read of a sensitive identifier due to a missing permission check. This…
In Autoboot, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with no additi…
In telecom service, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure wit…
In telecom service, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure wit…
In registerRemoteBugreportReceivers of DevicePolicyManagerService.java, there is a possible reporting of falsified bug reports due to a missing permi…
In updateApState of SoftApManager.java, there is a possible leak of hotspot state due to a missing permission check. This could lead to local informa…
In setPackageOrComponentEnabled of NotificationManagerService.java, there is a missing permission check. This could lead to local information disclos…
In onbind of ShannonRcsService.java, there is a possible access to protect data due to a missing permission check. This could lead to local informati…
In ACTION_MANAGED_PROFILE_PROVISIONED of DevicePolicyManagerService.java, there is a possible way for unprivileged app to send MANAGED_PROFILE_PROVIS…
In setDiscoverableTimeout of AdapterService.java, there is a possible bypass of user interaction due to a missing permission check. This could lead t…
In setScanMode of AdapterService.java, there is a possible way to enable Bluetooth discovery mode without user interaction due to a missing permissio…
In onCreateContextMenu of NetworkProviderSettings.java, there is a possible way for non-owner users to change WiFi settings due to a missing permissi…
In telephony, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with User…
In telephony, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no a…
In getNodeValue of USCCDMPlugin.java, there is a possible disclosure of ICCID due to a missing permission check. This could lead to local information…
In CarSetings, there is a possible to pair BT device bypassing user's consent due to a missing permission check. This could lead to local escalation …
In getArray of NotificationManagerService.java , there is a possible leak of one user notifications to another due to missing check. This could lead …
In broadcastServiceStateChanged of TelephonyRegistry.java, there is a possible way to learn base station information without location permission due …