OOB read vulnerability in hdcp2 device node prior to SMR Mar-2022 Release 1 allow an attacker to view Kernel stack memory.
Improper boundary check in UWB stack prior to SMR Mar-2022 Release 1 allows arbitrary code execution.
PendingIntent hijacking vulnerability in Weather application prior to SMR Mar-2022 Release 1 allows local attackers to perform unauthorized action wi…
PendingIntent hijacking vulnerability in Wearable Manager Installer prior to SMR Mar-2022 Release 1 allows local attackers to perform unauthorized ac…
Improper access control vulnerability in dynamic receiver in ApkInstaller prior to SMR MAR-2022 Release allows unauthorized attackers to execute arbi…
Security misconfiguration of RKP in kernel prior to SMR Mar-2022 Release 1 allows a system not to be protected by RKP.
In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an a…
In preloader (usb), there is a possible permission bypass due to a missing proper image authentication. This could lead to local escalation of privil…
In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an a…
In btif, there is a possible memory corruption due to incorrect error handling. This could lead to local escalation of privilege with System executio…
In ims service, there is a possible AT command injection due to a missing permission check. This could lead to local escalation of privilege with no …
In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an a…
In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an a…
In ims service, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with …
In ims service, there is a possible unexpected application behavior due to incorrect privilege assignment. This could lead to local denial of service…
In vpu, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with System e…
In connsyslogger, there is a possible symbolic link following due to improper link resolution. This could lead to local escalation of privilege with …
In video decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no add…
In video decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no add…
When the device is in factory state, it can be access the shell without adb authentication process. The LG ID is LVE-SMP-210010.
The bash_completion script for fscrypt allows injection of commands via crafted mountpoint paths, allowing privilege escalation under a specific set …
fscrypt through v0.3.2 creates a world-writable directory by default when setting up a filesystem, allowing unprivileged users to exhaust filesystem …
The PAM module for fscrypt doesn't adequately validate fscrypt metadata files, allowing users to create malicious metadata files that prevent other u…
An issue exists in Fuchsia where VMO data can be modified through access to copy-on-write snapshots. A local attacker could modify objects in the VMO…
Use after free in Web packaging in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via a crafted…
Use after free in Omnibox in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced the user to engage is specific user interact…
Use after free in Printing in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced the user to engage is specific user interac…
Use after free in Vulkan in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…
Use after free in Scheduling in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…
Use after free in Text Input Method Editor in Google Chrome on Android prior to 97.0.4692.99 allowed a remote attacker who convinced a user to engage…