|
31
|
5.5
-
|
MEDIUM
Local
|
In updateState of GraphicsDriverEnableAngleAsSystemDriverController.java, there is a possible persistent dos issue due to an unusual root cause. This could lead to local denial of service with no add…
|
NVD-CWE-noinfo
|
CVE-2026-0060
|
cpe:2.3:o:google:android:16.0:qpr2_beta_3 cpe:2.3:o:google:android:16.0:qpr2_beta_2 cpe:2.3:o:google:android:16.0…
|
|
|
|
|
2026-06-3 22:46
2026-06-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
32
|
8.0
-
|
HIGH
Adjacent
|
In multiple functions of sdp_discovery.cc, there is a possible way to achieve code execution due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code execution with no additi…
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-0059
|
cpe:2.3:o:google:android:16.0:qpr2_beta_3 cpe:2.3:o:google:android:16.0:qpr2_beta_2 cpe:2.3:o:google:android:16.0…
|
|
|
|
|
2026-06-3 22:46
2026-06-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
33
|
3.3
-
|
LOW
Local
|
In setTo of ResourceTypes.cpp, there is a possible read out of bounds due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed.…
|
CWE-120
Classic Buffer Overflow
|
CVE-2026-0056
|
cpe:2.3:o:google:android:16.0:qpr2_beta_3 cpe:2.3:o:google:android:16.0:qpr2_beta_2 cpe:2.3:o:google:android:16.0…
|
|
|
|
|
2026-06-3 22:47
2026-06-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
34
|
6.2
-
|
MEDIUM
Local
|
In createSessionInternal of PackageInstallerService.java, there is a possible to update a Device Policy Controller (DPC) into an invalid directory due to a path traversal error. This could lead to lo…
|
CWE-22 CWE-269
Path Traversal Improper Privilege Management
|
CVE-2026-0055
|
cpe:2.3:o:google:android:16.0:qpr2_beta_3 cpe:2.3:o:google:android:16.0:qpr2_beta_2 cpe:2.3:o:google:android:16.0…
|
|
|
|
|
2026-06-3 03:47
2026-06-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
35
|
6.5
-
|
MEDIUM
Network
|
In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a crash due to an integer overflow. This could lead to remote denial of service with no additional execution priv…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2026-0052
|
cpe:2.3:o:google:android:16.0:qpr2_beta_3 cpe:2.3:o:google:android:16.0:qpr2_beta_2 cpe:2.3:o:google:android:16.0…
|
|
|
|
|
2026-06-3 03:47
2026-06-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
36
|
6.5
-
|
MEDIUM
Network
|
In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a system crash due to improper input validation. This could lead to remote denial of service with no additional e…
|
CWE-20
Improper Input Validation
|
CVE-2026-0051
|
cpe:2.3:o:google:android:16.0:qpr2_beta_3 cpe:2.3:o:google:android:16.0:qpr2_beta_2 cpe:2.3:o:google:android:16.0…
|
|
|
|
|
2026-06-3 03:47
2026-06-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
37
|
3.3
-
|
LOW
Local
|
In handleBondStateChanged of AdapterService.java, there is a possible sensitive information disclosure due to a permissions bypass. This could lead to local information disclosure with no additional …
|
CWE-269
Improper Privilege Management
|
CVE-2026-0050
|
cpe:2.3:o:google:android:16.0:qpr2_beta_3 cpe:2.3:o:google:android:16.0:qpr2_beta_2 cpe:2.3:o:google:android:16.0…
|
|
|
|
|
2026-06-3 03:47
2026-06-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
38
|
6.8
-
|
MEDIUM
Local
|
In hide of WindowState.java, there is a possible way to trick the user into approving permissions due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no addition…
|
CWE-269
Improper Privilege Management
|
CVE-2026-0048
|
cpe:2.3:o:google:android:16.0:qpr2_beta_3 cpe:2.3:o:google:android:16.0:qpr2_beta_2 cpe:2.3:o:google:android:16.0…
|
|
|
|
|
2026-06-3 03:46
2026-06-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
39
|
6.2
-
|
MEDIUM
Local
|
In InputInterceptor of Letterbox.java, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no…
|
CWE-269
Improper Privilege Management
|
CVE-2026-0046
|
cpe:2.3:o:google:android:16.0:- cpe:2.3:o:google:android:15.0:* cpe:2.3:o:google:android:14.0:*
|
|
|
|
|
2026-06-3 03:46
2026-06-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
40
|
7.8
-
|
HIGH
Local
|
In bta_jv_rfcomm_connect of bta_jv_act.cc, there is a possible bypass of bonding for a secure connection due to a logic error in the code. This could lead to local escalation of privilege with no add…
|
CWE-693
Protection Mechanism Failure
|
CVE-2026-0045
|
cpe:2.3:o:google:android:16.0:qpr2_beta_3 cpe:2.3:o:google:android:16.0:qpr2_beta_2 cpe:2.3:o:google:android:16.0…
|
|
|
|
|
2026-06-3 23:21
2026-06-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|