Show filters
841 Total Results
Displaying 91-100 of 841
Sort by:
Attacker Value
Unknown
CVE-2021-0904
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In SRAMROM, there is a possible permission bypass due to an insecure permission setting. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06076938; Issue ID: ALPS06076938.
0
Attacker Value
Unknown
CVE-2021-0889
Disclosure Date: December 15, 2021 (last updated October 07, 2023)
In Android TV , there is a possible silent pairing due to lack of rate limiting in the pairing flow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-8.1 Android-9Android ID: A-180745296
0
Attacker Value
Unknown
CVE-2021-0704
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In createNoCredentialsPermissionNotification and related functions of AccountManagerService.java, there is a possible way to retrieve accounts from the device without permissions due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-9Android ID: A-179338675
0
Attacker Value
Unknown
CVE-2021-0675
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In alac decoder, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06064258; Issue ID: ALPS06064258.
0
Attacker Value
Unknown
CVE-2021-0653
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In enqueueNotification of NetworkPolicyManagerService.java, there is a possible way to retrieve a trackable identifier due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-9Android ID: A-177931370
0
Attacker Value
Unknown
CVE-2021-0650
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In WT_InterpolateNoLoop of eas_wtengine.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-9Android ID: A-190286685
0
Attacker Value
Unknown
CVE-2021-0434
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In onReceive of BluetoothPermissionRequest.java, there is a possible phishing attack allowing a malicious Bluetooth device to acquire permissions based on insufficient information presented to the user in the consent dialog. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-9Android ID: A-167403112
0
Attacker Value
Unknown
CVE-2021-25519
Disclosure Date: December 08, 2021 (last updated February 23, 2025)
An improper access control vulnerability in CPLC prior to SMR Dec-2021 Release 1 allows local attackers to access CPLC information without permission.
0
Attacker Value
Unknown
CVE-2021-25518
Disclosure Date: December 08, 2021 (last updated February 23, 2025)
An improper boundary check in secure_log of LDFW and BL31 prior to SMR Dec-2021 Release 1 allows arbitrary memory write and code execution.
0
Attacker Value
Unknown
CVE-2021-25516
Disclosure Date: December 08, 2021 (last updated February 23, 2025)
An improper check or handling of exceptional conditions in Exynos baseband prior to SMR Dec-2021 Release 1 allows attackers to track locations.
0