Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2021-1003 In adjustStreamVolume of AudioService.java, there is a possible way for unprivileged app to change audio stream volume due to a confused deputy. This… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-1004 In getConfiguredNetworks of WifiServiceImpl.java, there is a possible way to determine whether an app is installed, without query permissions, due to… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-1017 In AdapterService and GattService definition of AndroidManifest.xml, there is a possible way to disable bluetooth connection due to a missing permiss… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.5 CVE-2021-1002 In WT_Interpolate of eas_wtengine.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disc… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.3 CVE-2021-1016 In onCreate of UsbPermissionActivity.java, there is a possible way to grant an app access to USB without informed user consent due to a tapjacking/ov… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.3 CVE-2021-1019 In snoozeNotification of NotificationListenerService.java, there is a possible permission confusion due to a misleading user consent dialog. This cou… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.3 CVE-2021-1020 In snoozeNotification of NotificationListenerService.java, there is a possible way to disable notification for an arbitrary user due to improper inpu… Android Mitigation only Fix from $1,9502021-12-15 MEDIUM 5.5 CVE-2021-0997 In handleUpdateNetworkState of GnssNetworkConnectivityHandler.java , there is a possible APN disclosure due to log information disclosure. This could… Android Patch available Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-0998 In 'ih264e_find_bskip_params()' of ih264e_me.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local inform… Android Patch available Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1001 In PVInitVideoEncoder of mp4enc_api.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information d… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1005 In getDeviceIdWithFeature of PhoneInterfaceManager.java, there is a possible way to determine whether an app is installed, without query permissions,… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1009 In setApplicationCategoryHint of PackageManagerService.java, there is a possible way to determine whether an app is installed, without query permissi… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1010 In getSigningKeySet of PackageManagerService.java, there is a missing permission check. This could lead to local information disclosure with no addit… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1011 In setPackageStoppedState of PackageManagerService.java, there is a missing permission check. This could lead to local information disclosure with no… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1012 In onResume of NotificationAccessDetails.java, there is a possible way to determine whether an app is installed, without query permissions, due to si… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1013 In checkExistsAndEnforceCannotModifyImmutablyRestrictedPermission of PermissionManagerService.java, there is a possible way to determine whether an a… Android Mitigation only Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-1014 In getNetworkTypeForSubscriber of PhoneInterfaceManager.java, there is a possible way to determine whether an app is installed, without query permiss… Android Mitigation only Fix from $1,6002021-12-15 HIGH 8.8 CVE-2021-0967 In vorbis_book_decodev_set of codebook.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote informatio… Android Patch available Fix from $1,9502021-12-15 HIGH 8.8 CVE-2021-0968 In osi_malloc and osi_calloc of allocator.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote code exec… Android Patch available Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0970 In createFromParcel of GpsNavigationMessage.java, there is a possible Parcel serialization/deserialization mismatch. This could lead to local escalat… Android Patch available Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0981 In enqueueNotificationInternal of NotificationManagerService.java, there is a possible way to run a foreground service without showing a notification… Android Patch available Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0984 In onNullBinding of ManagedServices.java, there is a possible permission bypass due to an incorrectly unbound service. This could lead to local escal… Android Patch available Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-0985 In onReceive of AlertReceiver.java, there is a possible way to dismiss system dialog due to a missing permission check. This could lead to local esca… Android Patch available Fix from $1,9502021-12-15 MEDIUM 6.7 CVE-2021-0977 In phNxpNHal_DtaUpdate of phNxpNciHal_dta.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local esca… Android Patch available Fix from $1,6002021-12-15 MEDIUM 6.5 CVE-2021-0969 In getTitle of AccessPoint.java, there is a possible unhandled exception due to a missing null check. This could lead to remote denial of service if … Android Patch available Fix from $1,6002021-12-15 MEDIUM 6.5 CVE-2021-0971 In MPEG4Source::read of MPEG4Extractor.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote informat… Android Patch available Fix from $1,6002021-12-15 MEDIUM 6.5 CVE-2021-0976 In toBARK of floor0.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no… Android Patch available Fix from $1,6002021-12-15 MEDIUM 6.5 CVE-2021-0993 In getOffsetBeforeAfter of TextLine.java, there is a possible denial of service due to resource exhaustion. This could lead to remote denial of servi… Android Patch available Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-0979 In isRequestPinItemSupported of ShortcutService.java, there is a possible cross-user leak of packages in which the default launcher supports requests… Android Patch available Fix from $1,6002021-12-15 MEDIUM 5.5 CVE-2021-0986 In hasGrantedPolicy of DevicePolicyManagerService.java, there is a possible information disclosure about the device owner, profile owner, or device a… Android Patch available Fix from $1,6002021-12-15