Show filters
420 Total Results
Displaying 51-60 of 420
Sort by:
Attacker Value
Unknown

CVE-2024-34682

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Improper authorization in Settings prior to SMR Nov-2024 Release 1 allows physical attackers to access stored WiFi password in Maintenance Mode.
Attacker Value
Unknown

CVE-2024-34680

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Use of implicit intent for sensitive communication in WlanTest prior to SMR Nov-2024 Release 1 allows local attackers to get sensitive information.
Attacker Value
Unknown

CVE-2024-34679

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Incorrect default permissions in Crane prior to SMR Nov-2024 Release 1 allows local attackers to access files with phone privilege.
Attacker Value
Unknown

CVE-2024-34678

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Out-of-bounds write in libsapeextractor.so prior to SMR Nov-2024 Release 1 allows local attackers to cause memory corruption.
Attacker Value
Unknown

CVE-2024-34677

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Exposure of sensitive information in System UI prior to SMR Nov-2024 Release 1 allow local attackers to make malicious apps appear as legitimate.
Attacker Value
Unknown

CVE-2024-34676

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Out-of-bounds write in parsing subtitle file in libsubextractor.so prior to SMR Nov-2024 Release 1 allows local attackers to cause memory corruption. User interaction is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2024-34675

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Improper access control in Dex Mode prior to SMR Nov-2024 Release 1 allows physical attackers to temporarily access to unlocked screen.
Attacker Value
Unknown

CVE-2024-34674

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Improper access control in Contacts prior to SMR Nov-2024 Release 1 allows physical attackers to access data across multiple user profiles.
Attacker Value
Unknown

CVE-2024-34673

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Improper Input Validation in IpcProtocol in Modem prior to SMR Nov-2024 Release 1 allows local attackers to cause Denial-of-Service.
Attacker Value
Unknown

CVE-2024-20114

Disclosure Date: November 04, 2024 (last updated November 06, 2024)
In ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09037038; Issue ID: MSV-1714.