Show filters
841 Total Results
Displaying 71-80 of 841
Sort by:
Attacker Value
Unknown
CVE-2021-1040
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In onCreate of BluetoothPairingSelectionFragment.java, there is a possible EoP due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-182810085
0
Attacker Value
Unknown
CVE-2021-1039
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In NotificationAccessActivity of AndroidManifest.xml, there is a possible EoP due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-182808318
0
Attacker Value
Unknown
CVE-2021-1038
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In UserDetailsActivity of AndroidManifest.xml, there is a possible DoS due to a tapjacking/overlay attack. This could lead to local denial of service with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-183411279
0
Attacker Value
Unknown
CVE-2021-0971
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In MPEG4Source::read of MPEG4Extractor.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-188893559
0
Attacker Value
Unknown
CVE-2021-0970
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In createFromParcel of GpsNavigationMessage.java, there is a possible Parcel serialization/deserialization mismatch. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-196970023
0
Attacker Value
Unknown
CVE-2021-0968
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In osi_malloc and osi_calloc of allocator.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-197868577
0
Attacker Value
Unknown
CVE-2021-0967
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In vorbis_book_decodev_set of codebook.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-199065614
0
Attacker Value
Unknown
CVE-2021-0965
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In AndroidManifest.xml of Settings, there is a possible pairing of a Bluetooth device without user's consent due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-194300867
0
Attacker Value
Unknown
CVE-2021-0964
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In C2SoftMP3::process() of C2SoftMp3Dec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-193363621
0
Attacker Value
Unknown
CVE-2021-0963
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In onCreate of KeyChainActivity.java, there is a possible way to use an app certificate stored in keychain due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-199754277
0