Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android HIGH 7.8
CVE-2021-39678

In <TBD> of <TBD>, there is a possible bypass of Factory Reset Protection due to <TBD>. This could lead to local escalation of privilege with no addi…

No fix yet
Fix from $1,950 2022-01-14
Android HIGH 7.8
CVE-2021-39681

In delete_protocol of main.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege …

Mitigation only
Fix from $1,950 2022-01-14
Android HIGH 7.8
CVE-2021-39682

In mgm_alloc_page of memory_group_manager.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escal…

Mitigation only
Fix from $1,950 2022-01-14
Android HIGH 7.8
CVE-2021-39684

In target_init of gs101/abl/target/slider/target.c, there is a possible allocation of RWX memory due to a logic error in the code. This could lead to…

Mitigation only
Fix from $1,950 2022-01-14
Android HIGH 7.0
CVE-2021-39629

In phTmlNfc_Init and phTmlNfc_CleanUp of phTmlNfc.cc, there is a possible use after free due to a race condition. This could lead to local escalation…

Mitigation only
Fix from $1,950 2022-01-14
Android HIGH 7.0
CVE-2021-39679

In init of vendor_graphicbuffer_meta.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privileg…

Mitigation only
Fix from $1,950 2022-01-14
Android MEDIUM 6.7
CVE-2021-39683

In copy_from_mbox of sss_ice_util.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr…

Mitigation only
Fix from $1,600 2022-01-14
Android MEDIUM 5.5
CVE-2021-39633

In gre_handle_offloads of ip_gre.c, there is a possible page fault due to an invalid memory access. This could lead to local information disclosure w…

Patch available
Fix from $1,600 2022-01-14
Android MEDIUM 5.5
CVE-2021-39659

In sortSimPhoneAccountsForEmergency of CreateConnectionProcessor.java, there is a possible prevention of access to emergency calling due to an unhand…

Mitigation only
Fix from $1,600 2022-01-14
Android CRITICAL 9.8
CVE-2021-39623

In doRead of SimpleDecodingSource.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation…

Mitigation only
Fix from $2,300 2022-01-14
Android HIGH 7.8
CVE-2021-39618

In multiple methods of EuiccNotificationManager.java, there is a possible way to install existing packages without user consent due to an unsafe Pend…

Mitigation only
Fix from $1,950 2022-01-14
Android HIGH 7.8
CVE-2021-39620

In ipcSetDataReference of Parcel.cpp, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privi…

Mitigation only
Fix from $1,950 2022-01-14
Android HIGH 7.8
CVE-2021-39621

In sendLegacyVoicemailNotification of LegacyModeSmsHandler.java, there is a possible permissions bypass due to an unsafe PendingIntent. This could le…

Mitigation only
Fix from $1,950 2022-01-14
Android HIGH 7.8
CVE-2021-39622

In GBoard, there is a possible way to bypass Factory Reset Protection due to a missing permission check. This could lead to local escalation of privi…

Mitigation only
Fix from $1,950 2022-01-14
Android HIGH 7.8
CVE-2021-39626

In onAttach of ConnectedDeviceDashboardFragment.java, there is a possible permission bypass due to a confused deputy. This could lead to local escala…

Mitigation only
Fix from $1,950 2022-01-14
Android HIGH 7.8
CVE-2021-39627

In sendLegacyVoicemailNotification of LegacyModeSmsHandler.java, there is a possible permissions bypass due to an unsafe PendingIntent. This could le…

Mitigation only
Fix from $1,950 2022-01-14
Android HIGH 7.3
CVE-2021-39625

In showCarrierAppInstallationNotification of EuiccNotificationManager.java, there is a possible way to gain an access to MediaProvider content due to…

Mitigation only
Fix from $1,950 2022-01-14
Android CRITICAL 9.8
CVE-2021-1049

Hacker one bug ID: 1343975Product: AndroidVersions: Android SoCAndroid ID: A-204256722

No fix yet
Fix from $2,300 2022-01-14
Android HIGH 7.8
CVE-2021-0959

In jit_memory_region.cc, there is a possible bypass of memory restrictions due to a logic error in the code. This could lead to local escalation of p…

Mitigation only
Fix from $1,950 2022-01-14
Android HIGH 7.8
CVE-2021-1035

In setLaunchIntent of BluetoothDevicePickerPreferenceController.java, there is a possible way to invoke an arbitrary broadcast receiver due to a conf…

Mitigation only
Fix from $1,950 2022-01-14
Android HIGH 7.8
CVE-2021-1036

In LocationSettingsActivity of AndroidManifest.xml, there is a possible EoP due to a tapjacking/overlay attack. This could lead to local escalation o…

Mitigation only
Fix from $1,950 2022-01-14
Android MEDIUM 5.3
CVE-2021-1037

The broadcast that DevicePickerFragment sends when a new device is paired doesn't have any permission checks, so any app can register to listen for i…

Mitigation only
Fix from $1,600 2022-01-14
Android MEDIUM 5.5
CVE-2022-22271

A missing input validation before memory copy in TIMA trustlet prior to SMR Jan-2022 Release 1 allows attackers to copy data from arbitrary memory.

Mitigation only
Fix from $1,600 2022-01-10
Android MEDIUM 6.1
CVE-2022-22268

Incorrect implementation of Knox Guard prior to SMR Jan-2022 Release 1 allows physically proximate attackers to temporary unlock the Knox Guard via S…

Mitigation only
Fix from $1,600 2022-01-10
Android HIGH 7.8
CVE-2022-22265 KEV

An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code executio…

Mitigation only
Fix from $1,950 2022-01-10
Android HIGH 7.1
CVE-2022-22264

Improper sanitization of incoming intent in Dressroom prior to SMR Jan-2022 Release 1 allows local attackers to read and write arbitrary files withou…

Mitigation only
Fix from $1,950 2022-01-10
Android MEDIUM 5.5
CVE-2022-22263

Unprotected dynamic receiver in SecSettings prior to SMR Jan-2022 Release 1 allows untrusted applications to launch arbitrary activity.

Mitigation only
Fix from $1,600 2022-01-10
Google Protobuf MEDIUM 5.5
CVE-2021-22569

An issue in protobuf-java allowed the interleaving of com.google.protobuf.UnknownFieldSet fields in such a way that would be processed out of order. …

Fix: 3.16.1 / 3.18.2+
Fix from $1,600 2022-01-10
Android HIGH 7.8
CVE-2022-20012

In mdp driver, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of privilege with no additional …

Mitigation only
Fix from $1,950 2022-01-04
Android MEDIUM 6.7
CVE-2022-20014

In vow driver, there is a possible memory corruption due to improper input validation. This could lead to local escalation of privilege with System e…

Mitigation only
Fix from $1,600 2022-01-04