|
211
|
7.8
-
|
HIGH
Local
|
there is a possible way to bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for ex…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2024-29748
|
cpe:2.3:o:google:android:-:*
|
|
|
|
|
2024-11-21 18:08
2024-04-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212
|
5.5
-
|
MEDIUM
Local
|
there is a possible Information Disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed fo…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2024-29745
|
cpe:2.3:o:google:android:-:*
|
|
|
|
|
2024-11-21 18:08
2024-04-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213
|
7.8
-
|
HIGH
Local
|
there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed …
|
CWE-787
Out-of-bounds Write
|
CVE-2024-22012
|
cpe:2.3:o:google:android:-:*
|
|
|
|
|
2024-11-21 17:55
2024-02-8
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
214
|
6.7
-
|
MEDIUM
Local
|
In keyInstall, there is a possible escalation of privilege due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not nee…
|
CWE-843
Type Confusion
|
CVE-2024-20010
|
cpe:2.3:o:google:android:13.0:* cpe:2.3:o:google:android:12.0:* cpe:2.3:o:google:android:11.0:*
|
|
|
|
|
2024-11-21 17:51
2024-02-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
215
|
6.7
-
|
MEDIUM
Local
|
In TVAPI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not need…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-20002
|
cpe:2.3:o:google:android:14.0:* cpe:2.3:o:google:android:13.0:* cpe:2.3:o:google:android:12.0:* cpe:2.3:o:goog…
|
|
|
|
|
2024-11-21 17:51
2024-02-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
216
|
4.4
-
|
MEDIUM
Local
|
In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for expl…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2024-20016
|
cpe:2.3:o:google:android:14.0:* cpe:2.3:o:google:android:13.0:* cpe:2.3:o:google:android:12.0:* cpe:2.3:o:goog…
|
|
|
|
|
2024-11-21 17:51
2024-02-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
217
|
7.8
-
|
HIGH
Local
|
In telephony, there is a possible escalation of privilege due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interactio…
|
NVD-CWE-noinfo
|
CVE-2024-20015
|
cpe:2.3:o:google:android:14.0:* cpe:2.3:o:google:android:13.0:* cpe:2.3:o:google:android:12.0:*
|
|
|
|
|
2024-11-21 17:51
2024-02-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218
|
6.7
-
|
MEDIUM
Local
|
In keyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-20013
|
cpe:2.3:o:google:android:14.0:* cpe:2.3:o:google:android:13.0:* cpe:2.3:o:google:android:12.0:* cpe:2.3:o:goog…
|
|
|
|
|
2024-11-21 17:51
2024-02-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219
|
6.7
-
|
MEDIUM
Local
|
In keyInstall, there is a possible escalation of privilege due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not nee…
|
CWE-843
Type Confusion
|
CVE-2024-20012
|
cpe:2.3:o:google:android:13.0:* cpe:2.3:o:google:android:12.0:*
|
|
|
|
|
2024-11-21 17:51
2024-02-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
220
|
9.8
-
|
CRITICAL
Network
|
In alac decoder, there is a possible information disclosure due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2024-20011
|
cpe:2.3:o:google:android:13.0:* cpe:2.3:o:google:android:12.0:* cpe:2.3:o:google:android:11.0:*
|
|
|
|
|
2024-11-21 17:51
2024-02-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|