In Dex2oat of dex2oat.cc, there is a possible way to inject bytecode into an app due to improper input validation. This could lead to local escalatio…
In __hidinput_change_resolution_multipliers of hid-input.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to…
In deleteNotificationChannel and related functions of NotificationManagerService.java, there is a possible permission bypass due to improper state va…
In memory management driver, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with n…
In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local escalation of privilege with…
In memory management driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no …
In memory management driver, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with no add…
In memory management driver, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege with no …
In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local escalation of privilege with…
In memory management driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no …
In updateCapabilities of ConnectivityService.java, there is a possible incorrect network state determination due to a logic error in the code. This c…
In ConnectionHandler::SdpCb of connection_handler.cc, there is a possible out of bounds read due to a use after free. This could lead to remote infor…
In ActivityPicker.java, there is a possible bypass of user interaction in intent resolution due to a tapjacking/overlay attack. This could lead to lo…
In onCreate of WifiScanModeActivity.java, there is a possible way to enable Wi-Fi scanning without user consent due to a tapjacking/overlay attack. T…
In various functions of DrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege w…
In various functions of CryptoPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privileg…
In several functions of MemoryFileSystem.cpp and related files, there is a possible use after free due to a race condition. This could lead to local …
In avrc_pars_browse_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informati…
In getAllPackages of PackageManagerService, there is a possible information disclosure due to a missing permission check. This could lead to local in…
Use after free in Accessibility in Google Chrome prior to 91.0.4472.101 allowed an attacker who convinced a user to install a malicious extension to …
Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Use after free in Extensions in Google Chrome prior to 91.0.4472.101 allowed an attacker who convinced a user to install a malicious extension to pot…
Use after free in Network service in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a craf…
Use after free in BFCache in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…
Use after free in Extensions in Google Chrome prior to 91.0.4472.101 allowed a remote attacker who had compromised the renderer process to potentiall…
Use after free in Autofill in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…
Out of bounds write in ANGLE in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially perform out of bounds memory access via…
Use after free in Loader in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …
Use after free in Spell check in Google Chrome prior to 91.0.4472.101 allowed an attacker who convinced a user to install a malicious extension to po…
Product: AndroidVersions: Android SoCAndroid ID: A-175402462