In kisd, there is a possible out of bounds read due to improper input validation. This could lead to local escalation of privilege with System execut…
In aee, there is a possible memory corruption due to a stack buffer overflow. This could lead to local escalation of privilege with System execution …
In mobile_log_d, there is a possible command injection due to a missing bounds check. This could lead to local escalation of privilege with System ex…
In mobile_log_d, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with System…
In kisd, there is a possible memory corruption due to a heap buffer overflow. This could lead to local escalation of privilege with System execution …
In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution pr…
In kisd, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution p…
In netdiag, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with System exec…
In netdiag, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execu…
In netdiag, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with System exec…
In checkGrantUriPermission of UriGrantsManagerService.java, there is a possible permissions bypass. This could lead to local information disclosure w…
In checkGrantUriPermission of UriGrantsManagerService.java, there is a possible way to access contacts due to a permissions bypass. This could lead t…
In A2DP_GetCodecType of a2dp_codec_config, there is a possible out-of-bounds read due to improper input validation. This could lead to remote informa…
Kubernetes Secrets Store CSI Driver Vault Plugin prior to v0.0.6, Azure Plugin prior to v0.0.10, and GCP Plugin prior to v0.2.0 allow an attacker who…
Use after Free in Payments in Google Chrome on Android prior to 87.0.4280.66 allowed a remote attacker who had compromised the renderer process to po…
Use after free in Media in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to execute arbitrary code via a crafted HTML page.
Script injection in iOSWeb in Google Chrome on iOS prior to 84.0.4147.105 allowed a remote attacker to execute arbitrary code via a crafted HTML page.
In avrc_pars_vendor_cmd of avrc_pars_tg.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code exe…
In addAllPermissions of PermissionManagerService.java, there is a possible permissions bypass when upgrading major Android versions which allows an a…
In updatePermissionSourcePackage of PermissionManagerService.java, there is a possible automatic runtime permission grant due to a confused deputy. T…
In LazyServiceRegistrar of LazyServiceRegistrar.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalati…
In createOrUpdate of Permission.java and related code, there is possible permission escalation due to a logic error. This could lead to local escalat…
In appendEventsToCacheLocked of SensorEventConnection.cpp, there is a possible out of bounds write due to a use-after-free. This could lead to local …
In isWordBreakAfter of LayoutUtils.cpp, there is a possible way to slow or crash a TextView due to improper input validation. This could lead to remo…
In onCreate of GrantCredentialsPermissionActivity.java, there is a possible way to convince the user to grant an app access to an account due to a ta…
In checkCallerIsSystemOr of CompanionDeviceManagerService.java, there is a possible way to get a nearby Bluetooth device's MAC address without approp…
In ElementaryStreamQueue::dequeueAccessUnitH264() of ESQueue.cpp, there is a possible out of bounds write due to a missing bounds check. This could l…
In WAVSource::read of WAVExtractor.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote information dis…
In several functions of GlobalScreenshot.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local informa…
In onCreate of grantCredentialsPermissionActivity, there is a confused deputy. This could lead to local information disclosure and account access wit…