|
222761
|
7.8 |
HIGH
Local
|
google
|
android
|
In nfa_rw_store_ndef_rx_buf of nfa_rw_act.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privi…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2099
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222762
|
7.8 |
HIGH
Local
|
google
|
android
|
In areNotificationsEnabledForPackage of NotificationManagerService.java, there is a possible permissions bypass due to a missing permissions check. This could lead to local escalation of privilege, w…
|
CWE-862
Missing Authorization
|
CVE-2019-2098
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222763
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In HAliasAnalyzer.Query of hydrogen-alias-analysis.h, there is possible memory corruption due to type confusion. This could lead to remote code execution from a malicious proxy configuration, with no…
|
CWE-843
Type Confusion
|
CVE-2019-2097
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222764
|
7.8 |
HIGH
Local
|
google
|
android
|
In EffectRelease of EffectBundle.cpp, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege in the audio server with no additional execution pri…
|
CWE-415
Double Free
|
CVE-2019-2096
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222765
|
7.0 |
HIGH
Local
|
google
|
android
|
In callGenIDChangeListeners and related functions of SkPixelRef.cpp, there is a possible use after free due to a race condition. This could lead to remote code execution with no additional execution …
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2019-2095
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222766
|
7.8 |
HIGH
Local
|
google
|
android
|
In parseMPEGCCData of NuPlayerCCDecoder.cpp, there is a possible out of bounds write due to missing bounds checks. This could lead to remote code execution with no additional execution privileges nee…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2094
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222767
|
8.8 |
HIGH
Network
|
google
|
android
|
In huff_dec_1D of nlc_dec.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User int…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2093
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222768
|
7.8 |
HIGH
Local
|
google
|
android
|
In isSeparateProfileChallengeAllowed of DevicePolicyManagerService.java, there is a possible permissions bypass due to a missing permission check. This could lead to local escalation of privilege, wi…
|
CWE-862
Missing Authorization
|
CVE-2019-2092
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222769
|
7.8 |
HIGH
Local
|
google
|
android
|
In GetPermittedAccessibilityServicesForUser of DevicePolicyManagerService.java, there is a possible permissions bypass due to a missing permission check. This could lead to local escalation of privil…
|
CWE-862
Missing Authorization
|
CVE-2019-2091
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222770
|
7.8 |
HIGH
Local
|
google
|
android
|
In isPackageDeviceAdminOnAnyUser of PackageManagerService.java, there is a possible permissions bypass due to a missing permissions check. This could lead to local escalation of privilege, with no ad…
|
CWE-862
Missing Authorization
|
CVE-2019-2090
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|