In the OMX encoder, there is a possible out of bounds read due to invalid input validation. This could lead to local information disclosure with no a…
In the Media extractor, there is a possible use after free due to improper locking. This could lead to remote code execution in the media extractor w…
In MediaProvider, there is a possible way to access ContentResolver and MediaStore entries the app shouldn't have access to due to a permissions bypa…
In NetworkPolicyManagerService, there is a possible permissions bypass due to a missing permission check. This could lead to local escalation of priv…
In tremolo, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional…
In the AAC parser, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no add…
In libmkvextractor, there is a possible resource exhaustion due to a missing bounds check. This could lead to remote denial of service with no additi…
In libstagefright, there is a possible resource exhaustion due to improper input validation. This could lead to remote denial of service with no addi…
In the OMX parser, there is a possible information disclosure due to a returned raw pointer. This could lead to local information disclosure with no …
In PackageManager, there is a missing permission check. This could lead to local information disclosure across user boundaries with no additional exe…
In PackageManager, there is a missing permission check. This could lead to local information disclosure across users with no additional execution pri…
In PackageManager, there is a missing permission check. This could lead to local information disclosure across users with no additional execution pri…
In Java network APIs, there is possible access to sensitive network state due to a missing permission check. This could lead to local information dis…
In ADB server and USB server, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure w…
In devicepolicy service, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with U…
In libstagefright, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional ex…
In screencap, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege in a system pr…
In factory reset protection, there is a possible FRP bypass due to a missing permission check. This could lead to local escalation of privilege with …
In WindowManager, there is a possible launch of an unexpected app due to a confused deputy. This could lead to local escalation of privilege due to l…
In mediadrm, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional…
In skb_headlen of /include/linux/skbuff.h, there is a possible out of bounds read due to memory corruption. This could lead to local escalation of pr…
In skb_to_mamac of networking.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege…
In blk_mq_queue_tag_busy_iter of blk-mq-tag.c, there is a possible use after free due to improper locking. This could lead to local escalation of pri…
In Pixel's use of the Catpipe library, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege …
In l2tp_session_delete and related functions of l2tp_core.c, there is possible memory corruption due to a use after free. This could lead to local es…
In kbd_keycode of keyboard.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege…
In manifest files of the SmartSpace package, there is a possible tapjacking vector due to a missing permission check. This could lead to local escala…
In the FPC TrustZone fingerprint App, there is a possible invalid command handler due to an exposed test feature. This could lead to local escalation…
In CamX code, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution priv…
In uvc_scan_chain_forward of uvc_driver.c, there is a possible linked list corruption due to an unusual root cause. This could lead to local escalati…