In Bluetooth, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution over Bluetooth with no add…
In ConnectivityService, there is a possible bypass of network permissions due to a missing permission check. This could lead to local information dis…
In DreamServices, there is a possible way to launch arbitrary protected activities due to a confused deputy. This could lead to local escalation of p…
In Media, there is a possible code execution due to a use after free. This could lead to local escalation of privilege with no additional execution p…
In Wifi, there is a possible way to enable Wifi without permissions due to a missing permission check. This could lead to local escalation of privile…
In the Framework, there is a possible way to enable a work profile without user consent due to a tapjacking/overlay attack. This could lead to local …
In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System exe…
In KeyChain, there is a possible spoof keychain chooser activity request due to improper input validation. This could lead to local escalation of pri…
In Bluetooth, there is a possible crash due to a missing null check. This could lead to remote denial of service with no additional execution privile…
In Bluetooth, there are possible process crashes due to dereferencing a null pointer. This could lead to remote denial of service with no additional …
In WifiP2pManager, there is a possible toobtain WiFi P2P MAC address without user consent due to missing permission check. This could lead to local i…
In SystemUI, there is a possible way to unexpectedly enable the external speaker due to a logic error in the code. This could lead to local informati…
In PackageManager, there is a possible installed package disclosure due to a missing permission check. This could lead to local information disclosur…
In PackageManager, there is a possible package installation disclosure due to a missing permission check. This could lead to local information disclo…
In Framework, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure…
In Telephony, there is a possible disclosure of SIM identifiers due to a missing permission check. This could lead to local information disclosure wi…
In PackageManager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information discl…
In Settings, there is a possible way to bypass factory reset protections due to a logic error in the code. This could lead to local escalation of pri…
In Settings, there is a possible way to bypass factory reset protections due to a logic error in the code. This could lead to local escalation of pri…
In Settings, there is a possible way to bypass factory reset protections due to a sandbox escape. This could lead to local escalation of privilege if…
In hostapd, there is a possible insecure configuration due to an insecure default value. This could lead to remote denial of service of the wifi hots…
In Camera Provider HAL, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System e…
In LauncherApps, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclos…
In Content, there is a possible way to learn about an account present on the device due to a missing permission check. This could lead to local infor…
In ContentService, there is a possible way to check if an account exists on the device due to a missing permission check. This could lead to local in…
In ContentService, there is a possible way to check if an account exists on the device due to a missing permission check. This could lead to local in…
In ContentService, there is a possible way to check if an account exists on the device due to a missing permission check. This could lead to local in…
In ContentService, there is a possible way to check if the given account exists on the device due to a missing permission check. This could lead to l…
In Content, there is a possible way to check if the given account exists on the device due to a missing permission check. This could lead to local in…
In Content, there is a possible way to check if an account exists on the device due to a missing permission check. This could lead to local informati…