|
196281
|
8.6 |
HIGH
Network
|
juniper
|
junos
|
On Juniper Networks EX and QFX5K Series platforms configured with Redundant Trunk Group (RTG), Storm Control profile applied on the RTG interface might not take affect when it reaches the threshold c…
|
NVD-CWE-noinfo
|
CVE-2021-0203
|
2024-11-21 14:42 |
2021-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196282
|
7.5 |
HIGH
Network
|
juniper
|
junos
|
On Juniper Networks MX Series and EX9200 Series platforms with Trio-based MPC (Modular Port Concentrator) where Integrated Routing and Bridging (IRB) interface is configured and it is mapped to a VPL…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2021-0202
|
2024-11-21 14:42 |
2021-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196283
|
5.0 |
MEDIUM
Local
|
google
|
android
|
In onCreate of SlicePermissionActivity.java, there is a possible misleading string displayed due to improper input validation. This could lead to local information disclosure with User execution priv…
|
CWE-20
Improper Input Validation
|
CVE-2021-0322
|
2024-11-21 14:42 |
2021-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196284
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In enforceDumpPermissionForPackage of ActivityManagerService.java, there is a possible way to determine if a package is installed due to side channel information disclosure. This could lead to local …
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2021-0321
|
2024-11-21 14:42 |
2021-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196285
|
4.7 |
MEDIUM
Local
|
google
|
android
|
In is_device_locked and set_device_locked of keystore_keymaster_enforcement.h, there is a possible bypass of lockscreen requirements for keyguard bound keys due to a race condition. This could lead t…
|
CWE-362
Race Condition
|
CVE-2021-0320
|
2024-11-21 14:42 |
2021-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196286
|
7.8 |
HIGH
Local
|
google
|
android
|
In appendEventsToCacheLocked of SensorEventConnection.cpp, there is a possible out of bounds write due to a use-after-free. This could lead to local escalation of privilege with no additional executi…
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2021-0318
|
2024-11-21 14:42 |
2021-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196287
|
7.8 |
HIGH
Local
|
google
|
android
|
In createOrUpdate of Permission.java and related code, there is possible permission escalation due to a logic error. This could lead to local escalation of privilege with no additional execution priv…
|
CWE-863
Incorrect Authorization
|
CVE-2021-0317
|
2024-11-21 14:42 |
2021-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196288
|
7.3 |
HIGH
Local
|
google
|
android
|
In checkCallerIsSystemOr of CompanionDeviceManagerService.java, there is a possible way to get a nearby Bluetooth device's MAC address without appropriate permissions due to a permissions bypass. Thi…
|
CWE-863
Incorrect Authorization
|
CVE-2021-0319
|
2024-11-21 14:42 |
2021-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196289
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In avrc_pars_vendor_cmd of avrc_pars_tg.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over Bluetooth with no additional execution…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-0316
|
2024-11-21 14:42 |
2021-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196290
|
7.3 |
HIGH
Local
|
google
|
android
|
In onCreate of GrantCredentialsPermissionActivity.java, there is a possible way to convince the user to grant an app access to an account due to a tapjacking/overlay attack. This could lead to local …
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2021-0315
|
2024-11-21 14:42 |
2021-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|