Search CVE reports
21 – 30 of 614 results
In multiple functions of multiple files, there is a possible way to bypass the DISALLOW_DEBUGGING_FEATURES restriction for tracing due to a missing permission check. This could lead to local escalation of privilege with...
2 affected packages
android-framework-23, android-platform-frameworks-base
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| android-framework-23 | Ignored | Ignored | Ignored | Ignored |
| android-platform-frameworks-base | Ignored | Ignored | Ignored | Ignored |
In various functions of various files, there is a possible way to bypass the DISALLOW_DEBUGGING_FEATURES restriction for tracing due to a missing permission check. This could lead to local escalation of privilege with...
2 affected packages
android-framework-23, android-platform-frameworks-base
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| android-framework-23 | Ignored | Ignored | Ignored | Ignored |
| android-platform-frameworks-base | Ignored | Ignored | Ignored | Ignored |
In multiple functions of ChooserActivity.java, there is a possible cross-user media read due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is...
2 affected packages
android-framework-23, android-platform-frameworks-base
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| android-framework-23 | Ignored | Ignored | Ignored | Ignored |
| android-platform-frameworks-base | Ignored | Ignored | Ignored | Ignored |
In multiple functions of BackupHelper.java, there is a possible way for an app to get permissions previously granted to another app with the same package name due to a permissions bypass. This could lead to local escalation of...
1 affected package
android-framework-23
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| android-framework-23 | Ignored | Ignored | Ignored | Ignored |
In multiple functions of SensorService.cpp, there is a possible access of accurate sensor data due to a permissions bypass. This could lead to local escalation of privilege with User execution privileges needed. User interaction...
1 affected package
android-platform-tools
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| android-platform-tools | Ignored | Ignored | Not in release | Not in release |
In setPowerMode of HWC2.cpp, there is a possible out of bounds read due to a race condition. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed...
2 affected packages
android-platform-frameworks-native, android-platform-tools
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| android-platform-frameworks-native | Ignored | Ignored | Ignored | Ignored |
| android-platform-tools | Ignored | Ignored | Not in release | Not in release |
In multiple functions of MediaSessionRecord.java, there is a possible Intent rebroadcast due to a confused deputy. This could lead to local denial of service or escalation of privilege with no additional execution privileges...
1 affected package
android-framework-23
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| android-framework-23 | Ignored | Ignored | Ignored | Ignored |
In onPrimaryClipChanged of ClipboardListener.java, there is a possible way to bypass factory reset protection due to incorrect UI being shown prior to setup completion. This could lead to local escalation of privilege with...
2 affected packages
android-framework-23, android-platform-frameworks-base
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| android-framework-23 | Ignored | Ignored | Ignored | Ignored |
| android-platform-frameworks-base | Ignored | Ignored | Ignored | Ignored |
In onTargetSelected of ResolverActivity.java, there is a possible way to share a wrong file due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User...
2 affected packages
android-framework-23, android-platform-frameworks-base
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| android-framework-23 | Ignored | Ignored | Ignored | Ignored |
| android-platform-frameworks-base | Ignored | Ignored | Ignored | Ignored |
In add of WifiNetworkSuggestionsManager.java, there is a possible way to trigger permanent DoS due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction...
1 affected package
android-platform-frameworks-base
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| android-platform-frameworks-base | Ignored | Ignored | Ignored | Ignored |