|
195681
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In ape extractor, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interactio…
|
CWE-125
Out-of-bounds Read
|
CVE-2021-0616
|
2024-11-21 14:43 |
2021-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195682
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In flv extractor, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction i…
|
CWE-125 CWE-190
Out-of-bounds Read Integer Overflow or Wraparound
|
CVE-2021-0615
|
2024-11-21 14:43 |
2021-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195683
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In asf extractor, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interac…
|
CWE-125
Out-of-bounds Read
|
CVE-2021-0614
|
2024-11-21 14:43 |
2021-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195684
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In asf extractor, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interac…
|
CWE-125
Out-of-bounds Read
|
CVE-2021-0613
|
2024-11-21 14:43 |
2021-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195685
|
8.1 |
HIGH
Network
|
google
|
android
|
In RW_SetActivatedTagType of rw_main.cc, there is possible memory corruption due to a race condition. This could lead to remote code execution with no additional execution privileges needed. User int…
|
CWE-362
Race Condition
|
CVE-2021-0870
|
2024-11-21 14:43 |
2021-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195686
|
7.8 |
HIGH
Local
|
google
|
android
|
In runDumpHeap of ActivityManagerShellCommand.java, there is a possible deletion of system files due to a confused deputy. This could lead to local escalation of privilege with no additional executio…
|
CWE-610
Externally Controlled Reference to a Resource in Another Sphere
|
CVE-2021-0708
|
2024-11-21 14:43 |
2021-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195687
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In startListening of PluginManagerImpl.java, there is a possible way to disable arbitrary app components due to a missing permission check. This could lead to local denial of service with no addition…
|
CWE-862
Missing Authorization
|
CVE-2021-0706
|
2024-11-21 14:43 |
2021-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195688
|
7.8 |
HIGH
Local
|
google
|
android
|
In sanitizeSbn of NotificationManagerService.java, there is a possible way to keep service running in foreground and keep granted permissions due to Bypass of Background Service Restrictions. This co…
|
NVD-CWE-Other
|
CVE-2021-0705
|
2024-11-21 14:43 |
2021-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195689
|
6.8 |
MEDIUM
Physics
|
google
|
android
|
In SecondStageMain of init.cpp, there is a possible use after free due to incorrect shared_ptr usage. This could lead to local escalation of privilege if the attacker has physical access to the devic…
|
CWE-416
Use After Free
|
CVE-2021-0703
|
2024-11-21 14:43 |
2021-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195690
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In RevertActiveSessions of apexd.cpp, there is a possible way to share the wrong file due to an unintentional MediaStore downgrade. This could lead to local information disclosure with no additional …
|
NVD-CWE-noinfo
|
CVE-2021-0702
|
2024-11-21 14:43 |
2021-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|