Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2023-21388 In Settings, there is a possible restriction bypass due to a missing permission check. This could lead to local escalation of privilege with no addit… Android 14.0+ Fix from $1,9502023-10-30 HIGH 7.8 CVE-2023-21389 In Settings, there is a possible bypass of profile owner restrictions due to a missing permission check. This could lead to local escalation of privi… Android 14.0+ Fix from $1,9502023-10-30 HIGH 7.8 CVE-2023-21390 In Sim, there is a possible way to evade mobile preference restrictions due to a permission bypass. This could lead to local escalation of privilege … Android 14.0+ Fix from $1,9502023-10-30 HIGH 7.8 CVE-2023-21393 In Settings, there is a possible way for the user to change SIM due to a missing permission check. This could lead to local escalation of privilege w… Android 14.0+ Fix from $1,9502023-10-30 HIGH 7.8 CVE-2023-21396 In Activity Manager, there is a possible background activity launch due to a logic error in the code. This could lead to local escalation of privileg… Android 14.0+ Fix from $1,9502023-10-30 HIGH 7.8 CVE-2023-21397 In Setup Wizard, there is a possible way to save a WiFi network due to an insecure default value. This could lead to local escalation of privilege wi… Android 14.0+ Fix from $1,9502023-10-30 HIGH 7.8 CVE-2023-21398 In sdksandbox, there is a possible strandhogg style overlay attack due to a logic error in the code. This could lead to local escalation of privilege… Android 14.0+ Fix from $1,9502023-10-30 HIGH 7.5 CVE-2023-21391 In Messaging, there is a possible way to disable the messaging application due to improper input validation. This could lead to remote denial of serv… Android 14.0+ Fix from $1,9502023-10-30 MEDIUM 6.7 CVE-2023-21380 In Bluetooth, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with System exe… Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 6.5 CVE-2023-21395 In Bluetooth, there is a possible out of bounds read due to a use after free. This could lead to remote information disclosure over Bluetooth with no… Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 5.5 CVE-2023-21376 In Telephony, there is a possible way to retrieve the ICCID due to a logic error in the code. This could lead to local information disclosure with no… Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 5.5 CVE-2023-21377 In SELinux Policy, there is a possible restriction bypass due to a permissions bypass. This could lead to local information disclosure with no additi… Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 5.5 CVE-2023-21382 In Content Resolver, there is a possible method to access metadata about existing content providers on the device due to a missing permission check. … Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 5.5 CVE-2023-21383 In Settings, there is a possible way for the user to unintentionally send extra data due to an unclear prompt. This could lead to local information d… Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 5.5 CVE-2023-21384 In Package Manager, there is a possible possible permissions bypass due to an unsafe PendingIntent. This could lead to local information disclosure w… Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 5.5 CVE-2023-21385 In Whitechapel, there is a possible out of bounds read due to memory corruption. This could lead to local information disclosure with no additional e… Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 5.5 CVE-2023-21394 In registerPhoneAccount of TelecomServiceImpl.java, there is a possible way to reveal images from another user due to a missing permission check. Thi… Android 14.0+ Fix from $1,6002023-10-30 HIGH 7.8 CVE-2023-21372 In libdexfile, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with no additio… Android 14.0+ Fix from $1,9502023-10-30 HIGH 7.8 CVE-2023-21373 In Telephony, there is a possible way for a guest user to change the preferred SIM due to a missing permission check. This could lead to local escala… Android Mitigation only Fix from $1,9502023-10-30 MEDIUM 6.7 CVE-2023-21370 In the Security Element API, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege wit… Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 6.7 CVE-2023-21371 In Secure Element, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System e… Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 5.5 CVE-2023-21367 In Scudo, there is a possible way to exploit certain heap OOB read/write issues due to an insecure implementation/design. This could lead to local in… Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 5.5 CVE-2023-21368 In Audio, there is a possible out of bounds read due to missing bounds check. This could lead to local information disclosure with no additional exec… Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 5.5 CVE-2023-21369 In Usage Access, there is a possible way to display a Settings usage access restriction toggle screen due to a permissions bypass. This could lead to… Android 14.0+ Fix from $1,6002023-10-30 HIGH 8.8 CVE-2023-21356 In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution wit… Android Mitigation only Fix from $1,9502023-10-30 HIGH 8.8 CVE-2023-21361 In Bluetooth, there is a possibility of code-execution due to a use after free. This could lead to paired device escalation of privilege in the privi… Android Mitigation only Fix from $1,9502023-10-30 HIGH 7.8 CVE-2023-21351 In multiple locations, there is a possible background activity launch due to a logic error in the code. This could lead to local escalation of privil… Android Mitigation only Fix from $1,9502023-10-30 HIGH 7.8 CVE-2023-21355 In libaudioclient, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with no addition… Android Mitigation only Fix from $1,9502023-10-30 HIGH 7.8 CVE-2023-21358 In UWB Google, there is a possible way for a malicious app to masquerade as system app com.android.uwb.resources due to improperly used crypto. This … Android Mitigation only Fix from $1,9502023-10-30 HIGH 7.5 CVE-2023-21347 In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no addition… Android 14.0+ Fix from $1,9502023-10-30