Vulnerability index

Browse CVEs

4,645 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2021-1004 In getConfiguredNetworks of WifiServiceImpl.java, there is a possible way to determine whether an app is installed, without query permissions, due to… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-1017 In AdapterService and GattService definition of AndroidManifest.xml, there is a possible way to disable bluetooth connection due to a missing permiss… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.5 CVE-2021-1002 In WT_Interpolate of eas_wtengine.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disc… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.3 CVE-2021-1016 In onCreate of UsbPermissionActivity.java, there is a possible way to grant an app access to USB without informed user consent due to a tapjacking/ov… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.3 CVE-2021-1019 In snoozeNotification of NotificationListenerService.java, there is a possible permission confusion due to a misleading user consent dialog. This cou… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.3 CVE-2021-1020 In snoozeNotification of NotificationListenerService.java, there is a possible way to disable notification for an arbitrary user due to improper inpu… Android Mitigation only Fix from $1,9502021-12-15 MEDIUM 5.5 CVE-2021-1001 In PVInitVideoEncoder of mp4enc_api.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information d… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1005 In getDeviceIdWithFeature of PhoneInterfaceManager.java, there is a possible way to determine whether an app is installed, without query permissions,… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1009 In setApplicationCategoryHint of PackageManagerService.java, there is a possible way to determine whether an app is installed, without query permissi… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1010 In getSigningKeySet of PackageManagerService.java, there is a missing permission check. This could lead to local information disclosure with no addit… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1011 In setPackageStoppedState of PackageManagerService.java, there is a missing permission check. This could lead to local information disclosure with no… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1012 In onResume of NotificationAccessDetails.java, there is a possible way to determine whether an app is installed, without query permissions, due to si… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1013 In checkExistsAndEnforceCannotModifyImmutablyRestrictedPermission of PermissionManagerService.java, there is a possible way to determine whether an a… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1014 In getNetworkTypeForSubscriber of PhoneInterfaceManager.java, there is a possible way to determine whether an app is installed, without query permiss… Android Mitigation only Fix from $1,6002021-12-15 CRITICAL 9.8 CVE-2021-0956 In NfcTag::discoverTechnologies (activation) of NfcTag.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead… Android Mitigation only Fix from $2,3002021-12-15 HIGH 8.8 CVE-2021-0930 In phNxpNciHal_process_ext_rsp of phNxpNciHal_ext.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remot… Android Mitigation only Fix from $1,9502021-12-15 HIGH 8.0 CVE-2021-0933 In onCreate of CompanionDeviceActivity.java or DeviceChooserActivity.java, there is a possible way for HTML tags to interfere with a consent dialog d… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0921 In ParsingPackageImpl of ParsingPackageImpl.java, there is a possible parcel serialization/deserialization mismatch due to improper input validation.… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0922 In enforceCrossUserOrProfilePermission of PackageManagerService.java, there is a possible bypass of INTERACT_ACROSS_PROFILES permission due to a miss… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0923 In createOrUpdate of Permission.java, there is a possible way to gain internal permissions due to a missing permission check. This could lead to loca… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0924 In xhci_vendor_get_ops of xhci.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privil… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0926 In onCreate of NfcImportVCardActivity.java, there is a possible way to add a contact without user's consent due to a missing permission check. This c… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0927 In requestChannelBrowsable of TvInputManagerService.java, there is a possible permission bypass due to a logic error in the code. This could lead to … Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0928 In createFromParcel of OutputConfiguration.java, there is a possible parcel serialization/deserialization mismatch due to improper input validation. … Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0929 In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use after free. This could lead to l… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0932 In showNotification of NavigationModeController.java, there is a possible confused deputy due to an unsafe PendingIntent. This could lead to local es… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0953 In setOnClickActivityIntent of SearchWidgetProvider.java, there is a possible way to access contacts and history bookmarks without permission due to … Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.5 CVE-2021-0925 In rw_t4t_sm_detect_ndef of rw_t4t.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.3 CVE-2021-0954 In ResolverActivity, there is a possible user interaction bypass due to a tapjacking/overlay attack. This could lead to local escalation of privilege… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.1 CVE-2021-0963 In onCreate of KeyChainActivity.java, there is a possible way to use an app certificate stored in keychain due to a tapjacking/overlay attack. This c… Android Mitigation only Fix from $1,9502021-12-15