Show filters
841 Total Results
Displaying 61-70 of 841
Sort by:
Attacker Value
Unknown

CVE-2021-1036

Disclosure Date: January 14, 2022 (last updated October 07, 2023)
In LocationSettingsActivity of AndroidManifest.xml, there is a possible EoP due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-182812255
Attacker Value
Unknown

CVE-2022-22271

Disclosure Date: January 10, 2022 (last updated October 07, 2023)
A missing input validation before memory copy in TIMA trustlet prior to SMR Jan-2022 Release 1 allows attackers to copy data from arbitrary memory.
Attacker Value
Unknown

CVE-2022-22270

Disclosure Date: January 10, 2022 (last updated October 07, 2023)
An implicit Intent hijacking vulnerability in Dialer prior to SMR Jan-2022 Release 1 allows unprivileged applications to access contact information.
Attacker Value
Unknown

CVE-2022-22269

Disclosure Date: January 10, 2022 (last updated October 07, 2023)
Keeping sensitive data in unprotected BluetoothSettingsProvider prior to SMR Jan-2022 Release 1 allows untrusted applications to get a local Bluetooth MAC address.
Attacker Value
Unknown

CVE-2022-22268

Disclosure Date: January 10, 2022 (last updated October 07, 2023)
Incorrect implementation of Knox Guard prior to SMR Jan-2022 Release 1 allows physically proximate attackers to temporary unlock the Knox Guard via Samsung DeX mode.
Attacker Value
Unknown

CVE-2022-22267

Disclosure Date: January 10, 2022 (last updated October 07, 2023)
Implicit Intent hijacking vulnerability in ActivityMetricsLogger prior to SMR Jan-2022 Release 1 allows attackers to get running application information.
Attacker Value
Unknown

CVE-2022-22266

Disclosure Date: January 10, 2022 (last updated October 07, 2023)
(Applicable to China models only) Unprotected WifiEvaluationService in TencentWifiSecurity application prior to SMR Jan-2022 Release 1 allows untrusted applications to get WiFi information without proper permission.
Attacker Value
Unknown

CVE-2022-22265

Disclosure Date: January 10, 2022 (last updated October 07, 2023)
An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code execution.
Attacker Value
Unknown

CVE-2021-0676

Disclosure Date: December 17, 2021 (last updated February 23, 2025)
In geniezone driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05863009; Issue ID: ALPS05863009.
Attacker Value
Unknown

CVE-2021-0674

Disclosure Date: December 17, 2021 (last updated February 23, 2025)
In alac decoder, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06064258; Issue ID: ALPS06064237.