Vulnerability index

Browse CVEs

4,645 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Android HIGH 7.8
CVE-2021-1004

In getConfiguredNetworks of WifiServiceImpl.java, there is a possible way to determine whether an app is installed, without query permissions, due to…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-1017

In AdapterService and GattService definition of AndroidManifest.xml, there is a possible way to disable bluetooth connection due to a missing permiss…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.5
CVE-2021-1002

In WT_Interpolate of eas_wtengine.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disc…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.3
CVE-2021-1016

In onCreate of UsbPermissionActivity.java, there is a possible way to grant an app access to USB without informed user consent due to a tapjacking/ov…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.3
CVE-2021-1019

In snoozeNotification of NotificationListenerService.java, there is a possible permission confusion due to a misleading user consent dialog. This cou…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.3
CVE-2021-1020

In snoozeNotification of NotificationListenerService.java, there is a possible way to disable notification for an arbitrary user due to improper inpu…

Mitigation only
Fix from $1,950 2021-12-15
Android MEDIUM 5.5
CVE-2021-1001

In PVInitVideoEncoder of mp4enc_api.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information d…

Mitigation only
Fix from $1,600 2021-12-15
Android MEDIUM 5.5
CVE-2021-1005

In getDeviceIdWithFeature of PhoneInterfaceManager.java, there is a possible way to determine whether an app is installed, without query permissions,…

Mitigation only
Fix from $1,600 2021-12-15
Android MEDIUM 5.5
CVE-2021-1009

In setApplicationCategoryHint of PackageManagerService.java, there is a possible way to determine whether an app is installed, without query permissi…

Mitigation only
Fix from $1,600 2021-12-15
Android MEDIUM 5.5
CVE-2021-1010

In getSigningKeySet of PackageManagerService.java, there is a missing permission check. This could lead to local information disclosure with no addit…

Mitigation only
Fix from $1,600 2021-12-15
Android MEDIUM 5.5
CVE-2021-1011

In setPackageStoppedState of PackageManagerService.java, there is a missing permission check. This could lead to local information disclosure with no…

Mitigation only
Fix from $1,600 2021-12-15
Android MEDIUM 5.5
CVE-2021-1012

In onResume of NotificationAccessDetails.java, there is a possible way to determine whether an app is installed, without query permissions, due to si…

Mitigation only
Fix from $1,600 2021-12-15
Android MEDIUM 5.5
CVE-2021-1013

In checkExistsAndEnforceCannotModifyImmutablyRestrictedPermission of PermissionManagerService.java, there is a possible way to determine whether an a…

Mitigation only
Fix from $1,600 2021-12-15
Android MEDIUM 5.5
CVE-2021-1014

In getNetworkTypeForSubscriber of PhoneInterfaceManager.java, there is a possible way to determine whether an app is installed, without query permiss…

Mitigation only
Fix from $1,600 2021-12-15
Android CRITICAL 9.8
CVE-2021-0956

In NfcTag::discoverTechnologies (activation) of NfcTag.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead…

Mitigation only
Fix from $2,300 2021-12-15
Android HIGH 8.8
CVE-2021-0930

In phNxpNciHal_process_ext_rsp of phNxpNciHal_ext.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remot…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 8.0
CVE-2021-0933

In onCreate of CompanionDeviceActivity.java or DeviceChooserActivity.java, there is a possible way for HTML tags to interfere with a consent dialog d…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-0921

In ParsingPackageImpl of ParsingPackageImpl.java, there is a possible parcel serialization/deserialization mismatch due to improper input validation.…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-0922

In enforceCrossUserOrProfilePermission of PackageManagerService.java, there is a possible bypass of INTERACT_ACROSS_PROFILES permission due to a miss…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-0923

In createOrUpdate of Permission.java, there is a possible way to gain internal permissions due to a missing permission check. This could lead to loca…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-0924

In xhci_vendor_get_ops of xhci.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privil…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-0926

In onCreate of NfcImportVCardActivity.java, there is a possible way to add a contact without user's consent due to a missing permission check. This c…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-0927

In requestChannelBrowsable of TvInputManagerService.java, there is a possible permission bypass due to a logic error in the code. This could lead to …

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-0928

In createFromParcel of OutputConfiguration.java, there is a possible parcel serialization/deserialization mismatch due to improper input validation. …

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-0929

In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use after free. This could lead to l…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-0932

In showNotification of NavigationModeController.java, there is a possible confused deputy due to an unsafe PendingIntent. This could lead to local es…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-0953

In setOnClickActivityIntent of SearchWidgetProvider.java, there is a possible way to access contacts and history bookmarks without permission due to …

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.5
CVE-2021-0925

In rw_t4t_sm_detect_ndef of rw_t4t.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.3
CVE-2021-0954

In ResolverActivity, there is a possible user interaction bypass due to a tapjacking/overlay attack. This could lead to local escalation of privilege…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.1
CVE-2021-0963

In onCreate of KeyChainActivity.java, there is a possible way to use an app certificate stored in keychain due to a tapjacking/overlay attack. This c…

Mitigation only
Fix from $1,950 2021-12-15