|
196181
|
4.4 |
MEDIUM
Local
|
google
|
android
|
In the Titan M chip firmware, there is a possible disclosure of stack memory due to uninitialized data. This could lead to local information disclosure with System execution privileges needed. User i…
|
CWE-665
Improper Initialization
|
CVE-2021-0450
|
2024-11-21 14:42 |
2021-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196182
|
4.4 |
MEDIUM
Local
|
google
|
android
|
In the Titan M chip firmware, there is a possible disclosure of stack memory due to uninitialized data. This could lead to local information disclosure with System execution privileges needed. User i…
|
CWE-665
Improper Initialization
|
CVE-2021-0449
|
2024-11-21 14:42 |
2021-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196183
|
7.8 |
HIGH
Local
|
google
|
android
|
In setNightModeActivated of UiModeManagerService.java, there is a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User inter…
|
CWE-862
Missing Authorization
|
CVE-2021-0389
|
2024-11-21 14:42 |
2021-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196184
|
7.8 |
HIGH
Local
|
google
|
android
|
In onReceive of ImsPhoneCallTracker.java, there is a possible misattribution of data usage due to an incorrect broadcast handler. This could lead to local escalation of privilege resulting in attribu…
|
CWE-862
Missing Authorization
|
CVE-2021-0388
|
2024-11-21 14:42 |
2021-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196185
|
6.4 |
MEDIUM
Local
|
google
|
android
|
In FindQuotaDeviceForUuid of QuotaUtils.cpp, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User…
|
CWE-362
Race Condition
|
CVE-2021-0387
|
2024-11-21 14:42 |
2021-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196186
|
7.8 |
HIGH
Local
|
google
|
android
|
In onCreate of UsbConfirmActivity, there is a possible tapjacking vector due to an insecure default value. This could lead to local escalation of privilege with User execution privileges needed. User…
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2021-0386
|
2024-11-21 14:42 |
2021-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196187
|
7.8 |
HIGH
Local
|
google
|
android
|
In createConnectToAvailableNetworkNotification of ConnectToNetworkNotificationBuilder.java, there is a possible connection to untrusted WiFi networks due to notification interaction above the lockscr…
|
CWE-862
Missing Authorization
|
CVE-2021-0385
|
2024-11-21 14:42 |
2021-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196188
|
7.8 |
HIGH
Local
|
google
|
android
|
In done of CaptivePortalLoginActivity.java, there is a confused deputy. This could lead to local escalation of privilege in carrier settings with no additional execution privileges needed. User inter…
|
NVD-CWE-Other
|
CVE-2021-0383
|
2024-11-21 14:42 |
2021-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196189
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In checkSlicePermission of SliceManagerService.java, there is a possible resource exposure due to an incorrect permission check. This could lead to local information disclosure with no additional exe…
|
CWE-863
Incorrect Authorization
|
CVE-2021-0382
|
2024-11-21 14:42 |
2021-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196190
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In updateNotifications of DeviceStorageMonitorService.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution p…
|
CWE-276
Incorrect Default Permissions
|
CVE-2021-0381
|
2024-11-21 14:42 |
2021-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|