Total
7761 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2023-21183 | 1 Google | 1 Android | 2023-07-06 | N/A | 7.8 HIGH |
| In ForegroundUtils of ForegroundUtils.java, there is a possible way to read NFC tag data while the app is still in the background due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-235863754 | |||||
| CVE-2023-21181 | 1 Google | 1 Android | 2023-07-06 | N/A | 4.4 MEDIUM |
| In btm_ble_update_inq_result of btm_ble_gap.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-264880969 | |||||
| CVE-2023-21182 | 1 Google | 1 Android | 2023-07-06 | N/A | 4.4 MEDIUM |
| In Exynos_parsing_user_data_registered_itu_t_t35 of VendorVideoAPI.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-252764175 | |||||
| CVE-2023-21180 | 1 Google | 1 Android | 2023-07-06 | N/A | 7.5 HIGH |
| In xmlParseTryOrFinish of parser.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-261365944 | |||||
| CVE-2023-21167 | 1 Google | 1 Android | 2023-07-06 | N/A | 5.5 MEDIUM |
| In setProfileName of DevicePolicyManagerService.java, there is a possible way to crash the SystemUI menu due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-259942964 | |||||
| CVE-2023-21161 | 1 Google | 1 Android | 2023-07-06 | N/A | 6.7 MEDIUM |
| In Parse of simdata.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-263783702References: N/A | |||||
| CVE-2023-21194 | 1 Google | 1 Android | 2023-07-05 | N/A | 4.4 MEDIUM |
| In gatt_dbg_op_name of gatt_utils.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the Bluetooth server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-260079141 | |||||
| CVE-2023-21159 | 1 Google | 1 Android | 2023-07-05 | N/A | 6.7 MEDIUM |
| In Parse of simdata.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-263783565References: N/A | |||||
| CVE-2023-21160 | 1 Google | 1 Android | 2023-07-05 | N/A | 5.5 MEDIUM |
| In BuildSetTcsFci of protocolmiscbuilder.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-263784118References: N/A | |||||
| CVE-2023-21184 | 1 Google | 1 Android | 2023-07-05 | N/A | 7.8 HIGH |
| In getCurrentPrivilegedPackagesForAllUsers of CarrierPrivilegesTracker.java, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-267809568 | |||||
| CVE-2023-21185 | 1 Google | 1 Android | 2023-07-05 | N/A | 7.8 HIGH |
| In multiple functions of WifiNetworkFactory.java, there is a missing permission check. This could lead to local escalation of privilege from the guest user with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-266700762 | |||||
| CVE-2023-21209 | 1 Google | 1 Android | 2023-07-05 | N/A | 6.7 MEDIUM |
| In multiple functions of sta_iface.cpp, there is a possible out of bounds read due to unsafe deserialization. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262236273 | |||||
| CVE-2023-21186 | 1 Google | 1 Android | 2023-07-05 | N/A | 7.5 HIGH |
| In LogResponse of Dns.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-261079188 | |||||
| CVE-2023-21208 | 1 Google | 1 Android | 2023-07-05 | N/A | 4.4 MEDIUM |
| In setCountryCodeInternal of sta_iface.cpp, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262245254 | |||||
| CVE-2023-21207 | 1 Google | 1 Android | 2023-07-05 | N/A | 6.7 MEDIUM |
| In initiateTdlsSetupInternal of sta_iface.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262236670 | |||||
| CVE-2023-21205 | 1 Google | 1 Android | 2023-07-05 | N/A | 5.5 MEDIUM |
| In startWpsPinDisplayInternal of sta_iface.cpp, there is a possible out of bounds read due to unsafe deserialization. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262245376 | |||||
| CVE-2023-21206 | 1 Google | 1 Android | 2023-07-05 | N/A | 4.4 MEDIUM |
| In initiateVenueUrlAnqpQueryInternal of sta_iface.cpp, there is a possible out of bounds read due to unsafe deserialization. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262245630 | |||||
| CVE-2022-20443 | 1 Google | 1 Android | 2023-07-05 | N/A | 7.8 HIGH |
| In hasInputInfo of Layer.cpp, there is a possible bypass of user interaction requirements due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-194480991 | |||||
| CVE-2023-21158 | 1 Google | 1 Android | 2023-07-05 | N/A | 4.4 MEDIUM |
| In encode of miscdata.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-263783635References: N/A | |||||
| CVE-2023-21189 | 1 Google | 1 Android | 2023-07-05 | N/A | 7.3 HIGH |
| In startLockTaskMode of LockTaskController.java, there is a possible bypass of lock task mode due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-213942596 | |||||
