|
196071
|
7.8 |
HIGH
Local
|
google
|
android
|
In memory management driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. Us…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-0490
|
2024-11-21 14:42 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196072
|
7.8 |
HIGH
Local
|
google
|
android
|
In memory management driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. Us…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-0489
|
2024-11-21 14:42 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196073
|
7.8 |
HIGH
Local
|
google
|
android
|
In onCreate of CalendarDebugActivity.java, there is a possible way to export calendar data to the sdcard without user consent due to a tapjacking/overlay attack. This could lead to local escalation o…
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2021-0487
|
2024-11-21 14:42 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196074
|
7.8 |
HIGH
Local
|
google
|
android
|
In getMinimalSize of PipBoundsAlgorithm.java, there is a possible bypass of restrictions on background processes due to a permissions bypass. This could lead to local escalation of privilege with no …
|
CWE-20
Improper Input Validation
|
CVE-2021-0485
|
2024-11-21 14:42 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196075
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In readVector of IMediaPlayer.cpp, there is a possible read of uninitialized heap data due to a missing bounds check. This could lead to local information disclosure with no additional execution priv…
|
CWE-909
Missing Initialization of Resource
|
CVE-2021-0484
|
2024-11-21 14:42 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196076
|
7.0 |
HIGH
Local
|
google
|
android
|
In BinderDiedCallback of MediaCodec.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed…
|
CWE-416
Use After Free
|
CVE-2021-0482
|
2024-11-21 14:42 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196077
|
7.8 |
HIGH
Local
|
google
|
android
|
In onActivityResult of EditUserPhotoController.java, there is a possible access of unauthorized files due to an unexpected URI handler. This could lead to local escalation of privilege with no additi…
|
CWE-20
Improper Input Validation
|
CVE-2021-0481
|
2024-11-21 14:42 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196078
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In createPendingIntent of SnoozeHelper.java, there is a possible broadcast intent containing a sensitive identifier. This could lead to local information disclosure with no additional execution privi…
|
NVD-CWE-Other
|
CVE-2021-0480
|
2024-11-21 14:42 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196079
|
7.8 |
HIGH
Local
|
google
|
android
|
In notifyScreenshotError of ScreenshotNotificationsController.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local escalation of privilege with User ex…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2021-0477
|
2024-11-21 14:42 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196080
|
7.0 |
HIGH
Local
|
google
|
android
|
In FindOrCreatePeer of btif_av.cc, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User in…
|
CWE-362
Race Condition
|
CVE-2021-0476
|
2024-11-21 14:42 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|