Latest CVE Feed
-
6.7
MEDIUMCVE-2021-0546
In phNxpNciHal_print_res_status of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploita... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2021-0545
In phNxpNciHal_print_res_status of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the NFC server with System execution privileges needed. User interaction is not n... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2021-0544
In phNxpNciHal_print_res_status of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploita... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2021-0543
In phNxpNciHal_process_ext_rsp of phNxpNciHal_ext.cc, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploita... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-0542
In updateNotification of BeamTransferManager.java, there is a missing permission check. This could lead to local information disclosure of paired Bluetooth addresses with no additional execution privileges needed. User interaction is needed for exploitati... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
4.4
MEDIUMCVE-2021-0541
In phNxpNciHal_ext_process_nfc_init_rsp of phNxpNciHal_ext.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the NFC server with System execution privileges needed. User interactio... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2021-0540
In halWrapperDataCallback of hal_wrapper.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.P... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-0539
In archiveStoredConversation of MmsService.java, there is a possible way to archive message conversation without user consent due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges neede... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
7.3
HIGHCVE-2021-0538
In onCreate of EmergencyCallbackModeExitDialog.java, there is a possible exit of emergency callback mode due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
7.3
HIGHCVE-2021-0537
In onCreate of WiFiInstaller.java, there is a possible way to install a malicious Hotspot 2.0 configuration due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is nee... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-0536
In dropFile of WiFiInstaller, there is a way to delete files accessible to CertInstaller due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploita... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2021-0535
In wpas_ctrl_msg_queue_timeout of ctrl_iface_unix.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.P... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-0534
In permission declarations of DeviceAdminReceiver.java, there is a possible lack of broadcast protection due to an insecure default value. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is... Read more
Affected Products : android- Published: Jun. 22, 2021
- Modified: Nov. 21, 2024
-
7.0
HIGHCVE-2021-0533
In memory management driver, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVe... Read more
Affected Products : android- Published: Jun. 21, 2021
- Modified: Nov. 21, 2024
-
7.0
HIGHCVE-2021-0532
In memory management driver, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVe... Read more
Affected Products : android- Published: Jun. 21, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-0531
In memory management driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVe... Read more
Affected Products : android- Published: Jun. 21, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-0530
In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: Andro... Read more
Affected Products : android- Published: Jun. 21, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-0529
In memory management driver, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVe... Read more
Affected Products : android- Published: Jun. 21, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-0528
In memory management driver, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersi... Read more
Affected Products : android- Published: Jun. 21, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-0527
In memory management driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVe... Read more
Affected Products : android- Published: Jun. 21, 2021
- Modified: Nov. 21, 2024