Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Android
(Google)Repositories | https://github.com/torvalds/linux |
#Vulnerabilities | 6835 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2022-09-13 | CVE-2021-0871 | In PVRSRVBridgePMRPDumpSymbolicAddr of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-238921253 | Android | 7.8 | ||
2022-09-13 | CVE-2021-0942 | The path in this case is a little bit convoluted. The end result is that via an ioctl an untrusted app can control the ui32PageIndex offset in the expression:sPA.uiAddr = page_to_phys(psOSPageArrayData->pagearray[ui32PageIndex]);With the current PoC this crashes as an OOB read. However, given that the OOB read value is ending up as the address field of a struct I think i seems plausible that this could lead to an OOB write if the attacker is able to cause the OOB read to pull an interesting... | Android | 9.8 | ||
2022-09-13 | CVE-2021-0943 | In MMU_MapPages of TBD, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-238916921 | Android | 7.8 | ||
2022-09-13 | CVE-2022-20386 | Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227328 | Android | 9.8 | ||
2022-09-13 | CVE-2022-20387 | Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227324 | Android | 9.8 | ||
2022-09-13 | CVE-2022-20388 | Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227323 | Android | 9.8 | ||
2022-09-13 | CVE-2022-20389 | Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257004 | Android | 9.8 | ||
2022-09-13 | CVE-2022-20390 | Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257002 | Android | 9.8 | ||
2022-09-13 | CVE-2022-20391 | Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257000 | Android | 9.8 | ||
2022-09-09 | CVE-2022-39119 | In network service, there is a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed | Android | 7.8 |