Product:

Android

(Google)
Repositories https://github.com/torvalds/linux
#Vulnerabilities 6835
Date Id Summary Products Score Patch Annotated
2022-09-13 CVE-2021-0871 In PVRSRVBridgePMRPDumpSymbolicAddr of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-238921253 Android 7.8
2022-09-13 CVE-2021-0942 The path in this case is a little bit convoluted. The end result is that via an ioctl an untrusted app can control the ui32PageIndex offset in the expression:sPA.uiAddr = page_to_phys(psOSPageArrayData->pagearray[ui32PageIndex]);With the current PoC this crashes as an OOB read. However, given that the OOB read value is ending up as the address field of a struct I think i seems plausible that this could lead to an OOB write if the attacker is able to cause the OOB read to pull an interesting... Android 9.8
2022-09-13 CVE-2021-0943 In MMU_MapPages of TBD, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-238916921 Android 7.8
2022-09-13 CVE-2022-20386 Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227328 Android 9.8
2022-09-13 CVE-2022-20387 Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227324 Android 9.8
2022-09-13 CVE-2022-20388 Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227323 Android 9.8
2022-09-13 CVE-2022-20389 Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257004 Android 9.8
2022-09-13 CVE-2022-20390 Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257002 Android 9.8
2022-09-13 CVE-2022-20391 Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257000 Android 9.8
2022-09-09 CVE-2022-39119 In network service, there is a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed Android 7.8