Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android HIGH 7.8
CVE-2024-0023

In ConvertRGBToPlanarYUV of Codec2BufferUtils.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local…

Patch available
Fix from $1,950 2024-02-16
Android MEDIUM 5.5
CVE-2024-0017

In shouldUseNoOpLocation of CameraActivity.java, there is a possible confused deputy due to a permissions bypass. This could lead to local informatio…

Patch available
Fix from $1,600 2024-02-16
Android MEDIUM 5.5
CVE-2024-0020

In onActivityResult of NotificationSoundPreference.java, there is a possible way to hear audio files belonging to a different user due to a confused …

Patch available
Fix from $1,600 2024-02-16
Android MEDIUM 5.3
CVE-2024-0016

In multiple locations, there is a possible out of bounds read due to a missing bounds check. This could lead to paired device information disclosure …

Patch available
Fix from $1,600 2024-02-16
Android MEDIUM 5.0
CVE-2024-0019

In setListening of AppOpsControllerImpl.java, there is a possible way to hide the microphone privacy indicator when restarting systemUI due to a miss…

Patch available
Fix from $1,600 2024-02-16
Android HIGH 7.8
CVE-2023-21165

In DevmemIntUnmapPMR of devicemem_server.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation…

Patch available
Fix from $1,950 2024-02-16
Android HIGH 7.8
CVE-2024-0015

In convertToComponentName of DreamService.java, there is a possible way to launch arbitrary protected activities due to intent redirection. This coul…

Patch available
Fix from $1,950 2024-02-16
Android MEDIUM 5.5
CVE-2023-40085

In convertSubgraphFromHAL of ShimConverter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local inform…

Patch available
Fix from $1,600 2024-02-16
Android HIGH 7.8
CVE-2024-0036

In startNextMatchingActivity of ActivityTaskManagerService.java, there is a possible way to bypass the restrictions on starting activities from the b…

Patch available
Fix from $1,950 2024-02-16
Android HIGH 7.8
CVE-2024-0038

In injectInputEventToInputFilter of AccessibilityManagerService.java, there is a possible arbitrary input event injection due to a missing permission…

Patch available
Fix from $1,950 2024-02-16
Android HIGH 7.5
CVE-2024-0040

In setParameter of MtpPacket.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclos…

Patch available
Fix from $1,950 2024-02-16
Android HIGH 7.0
CVE-2024-0041

In removePersistentDot of SystemStatusAnimationSchedulerImpl.kt, there is a possible race condition due to a logic error in the code. This could lead…

Patch available
Fix from $1,950 2024-02-16
Android CRITICAL 9.8
CVE-2024-0031

In attp_build_read_by_type_value_cmd of att_protocol.cc , there is a possible out of bounds write due to improper input validation. This could lead t…

Patch available
Fix from $2,300 2024-02-16
Android HIGH 7.8
CVE-2024-0014

In startInstall of UpdateFetcher.java, there is a possible way to trigger a malicious config update due to a logic error. This could lead to local es…

Mitigation only
Fix from $1,950 2024-02-16
Android HIGH 7.8
CVE-2024-0029

In multiple files, there is a possible way to capture the device screen when disallowed by device policy due to a logic error in the code. This could…

Patch available
Fix from $1,950 2024-02-16
Android HIGH 7.8
CVE-2024-0033

In multiple functions of ashmem-dev.cpp, there is a possible missing seal due to a heap buffer overflow. This could lead to local escalation of privi…

Patch available
Fix from $1,950 2024-02-16
Android HIGH 7.8
CVE-2024-0034

In BackgroundLaunchProcessController, there is a possible way to launch arbitrary activity from the background due to BAL Bypass. This could lead to …

Patch available
Fix from $1,950 2024-02-16
Android HIGH 7.8
CVE-2024-0035

In onNullBinding of TileLifecycleManager.java, there is a possible way to launch an activity from the background due to a missing null check. This co…

Patch available
Fix from $1,950 2024-02-16
Android MEDIUM 6.5
CVE-2024-0032

In multiple locations, there is a possible way to request access to directories that should be hidden due to improper input validation. This could le…

Patch available
Fix from $1,600 2024-02-16
Android MEDIUM 5.5
CVE-2024-0030

In btif_to_bta_response of btif_gatt_util.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local infor…

Patch available
Fix from $1,600 2024-02-16
Android MEDIUM 5.5
CVE-2023-40093

In multiple files, there is a possible way that trimmed content could be included in PDF output due to a logic error in the code. This could lead to …

Patch available
Fix from $1,600 2024-02-16
Android HIGH 7.8
CVE-2023-40106

In sanitizeSbn of NotificationManagerService.java, there is a possible way to launch an activity from the background due to BAL Bypass. This could le…

Patch available
Fix from $1,950 2024-02-15
Android HIGH 7.8
CVE-2023-40107

In ARTPWriter of ARTPWriter.cpp, there is a possible use after free due to uninitialized data. This could lead to local escalation of privilege with …

Patch available
Fix from $1,950 2024-02-15
Android HIGH 7.8
CVE-2023-40109

In createFromParcel of UsbConfiguration.java, there is a possible background activity launch (BAL) due to a permissions bypass. This could lead to lo…

Patch available
Fix from $1,950 2024-02-15
Android HIGH 7.8
CVE-2023-40110

In multiple functions of MtpPacket.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of…

Patch available
Fix from $1,950 2024-02-15
Android HIGH 7.8
CVE-2023-40111

In setMediaButtonReceiver of MediaSessionRecord.java, there is a possible way to send a pending intent on behalf of system_server due to a confused d…

Patch available
Fix from $1,950 2024-02-15
Android HIGH 7.8
CVE-2023-40114

In multiple functions of MtpFfsHandle.cpp , there is a possible out of bounds write due to a use after free. This could lead to local escalation of p…

Patch available
Fix from $1,950 2024-02-15
Android HIGH 7.8
CVE-2023-40115

In readLogs of StatsService.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with…

Patch available
Fix from $1,950 2024-02-15
Android HIGH 7.5
CVE-2023-40104

In ca-certificates, there is a possible way to read encrypted TLS data due to untrusted cryptographic certificates. This could lead to remote informa…

Patch available
Fix from $1,950 2024-02-15
Android MEDIUM 5.5
CVE-2023-40105

In backupAgentCreated of ActivityManagerService.java, there is a possible way to leak sensitive data due to a missing permission check. This could le…

Patch available
Fix from $1,600 2024-02-15