Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android HIGH 7.8
CVE-2023-20985

In BTA_GATTS_HandleValueIndication of bta_gatts_api.cc, there is a possible out of bounds write due to improper input validation. This could lead to …

Mitigation only
Fix from $1,950 2023-03-24
Android HIGH 7.3
CVE-2023-20976

In getConfirmationMessage of DefaultAutofillPicker.java, there is a possible way to mislead the user to select default autofill application due to im…

Mitigation only
Fix from $1,950 2023-03-24
Android MEDIUM 5.5
CVE-2023-20972

In btm_vendor_specific_evt of btm_devctl.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local informati…

Mitigation only
Fix from $1,600 2023-03-24
Android MEDIUM 5.5
CVE-2023-20973

In btm_create_conn_cancel_complete of btm_sec.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local info…

Mitigation only
Fix from $1,600 2023-03-24
Android MEDIUM 5.5
CVE-2023-20974

In btm_ble_add_resolving_list_entry_complete of btm_ble_privacy.cc, there is a possible out of bounds read due to a missing bounds check. This could …

Mitigation only
Fix from $1,600 2023-03-24
Android MEDIUM 5.5
CVE-2023-20979

In GetNextSourceDataPacket of bta_av_co.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio…

Mitigation only
Fix from $1,600 2023-03-24
Android MEDIUM 5.5
CVE-2023-20980

In btu_ble_ll_conn_param_upd_evt of btu_hcif.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local infor…

Mitigation only
Fix from $1,600 2023-03-24
Android HIGH 7.8
CVE-2023-20963 KEV

In WorkSource, there is a possible parcel mismatch. This could lead to local escalation of privilege with no additional execution privileges needed. …

Patch available
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20964

In multiple functions of MediaSessionRecord.java, there is a possible Intent rebroadcast due to a confused deputy. This could lead to local denial of…

Mitigation only
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20966

In inflate of inflate.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with…

Mitigation only
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20971

In removePermission of PermissionManagerServiceImpl.java, there is a possible way to obtain dangerous permissions without user consent due to a logic…

Mitigation only
Fix from $1,950 2023-03-24
Android CRITICAL 9.8
CVE-2023-20951

In gatt_process_prep_write_rsp of gatt_cl.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code e…

Patch available
Fix from $2,300 2023-03-24
Android CRITICAL 9.8
CVE-2023-20954

In SDP_AddAttribute of sdp_db.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution …

Patch available
Fix from $2,300 2023-03-24
Android HIGH 8.8
CVE-2023-20960

In launchDeepLinkIntentToRight of SettingsHomepageActivity.java, there is a possible way to launch arbitrary activities due to improper input validat…

Mitigation only
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20906

In onPackageAddedInternal of PermissionManagerService.java, there is a possible way to silently grant a permission after a Target SDK update due to a…

Mitigation only
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20911

In addPermission of PermissionManagerServiceImpl.java , there is a possible failure to persist permission settings due to resource exhaustion. This c…

Patch available
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20917

In onTargetSelected of ResolverActivity.java, there is a possible way to share a wrong file due to a logic error in the code. This could lead to loca…

Patch available
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20931

In avdt_scb_hdl_write_req of avdt_scb_act.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalat…

Patch available
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20936

In bta_av_rc_disc_done of bta_av_act.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o…

Patch available
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20947

In getGroupState of GrantPermissionsViewModel.kt, there is a possible way to keep a one-time permission granted due to a permissions bypass. This cou…

Patch available
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20953

In onPrimaryClipChanged of ClipboardListener.java, there is a possible way to bypass factory reset protection due to incorrect UI being shown prior t…

Patch available
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20955

In onPrepareOptionsMenu of AppInfoDashboardFragment.java, there is a possible way to bypass admin restrictions and uninstall applications for all use…

Patch available
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20957

In onAttach of SettingsPreferenceFragment.java, there is a possible bypass of Factory Reset Protections due to a confused deputy. This could lead to …

Patch available
Fix from $1,950 2023-03-24
Android HIGH 7.8
CVE-2023-20959

In AddSupervisedUserActivity, guest users are not prevented from starting the activity due to missing permissions checks. This could lead to local es…

Mitigation only
Fix from $1,950 2023-03-24
Android HIGH 7.1
CVE-2023-20958

In read_paint of ttcolr.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with…

Patch available
Fix from $1,950 2023-03-24
Android MEDIUM 6.8
CVE-2023-20926

In onParentVisible of HeaderPrivacyIconsController.kt, there is a possible way to bypass factory reset protections due to a missing permission check.…

Patch available
Fix from $1,600 2023-03-24
Android MEDIUM 5.5
CVE-2022-42528

In ffa_mrd_prot of shared_mem.c, there is a possible ID due to a logic error in the code. This could lead to local information disclosure with no add…

Mitigation only
Fix from $1,600 2023-03-24
Android MEDIUM 5.5
CVE-2023-20910

In add of WifiNetworkSuggestionsManager.java, there is a possible way to trigger permanent DoS due to resource exhaustion. This could lead to local d…

Mitigation only
Fix from $1,600 2023-03-24
Android MEDIUM 5.5
CVE-2023-20929

In sendHalfSheetCancelBroadcast of HalfSheetActivity.java, there is a possible way to learn nearby BT MAC addresses due to an unrestricted broadcast …

Patch available
Fix from $1,600 2023-03-24
Android MEDIUM 5.5
CVE-2023-20952

In A2DP_BuildCodecHeaderSbc of a2dp_sbc.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local informati…

Patch available
Fix from $1,600 2023-03-24