Vulnerabilities
Vulnerable Software
Google:  >> Android  >> 11.0  Security Vulnerabilities
In ShortcutInfo of ShortcutInfo.java, there is a possible way for an app to retain notification listening access due to an uncaught exception. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVSS Score
3.3
EPSS Score
0.0
Published
2023-07-13
In gatt_end_operation of gatt_utils.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
CVSS Score
9.8
EPSS Score
0.006
Published
2023-07-13
In onCreate of ConfirmDialog.java, there is a possible way to connect to VNP bypassing user's consent due to improper input validation. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.
CVSS Score
7.3
EPSS Score
0.0
Published
2023-07-13
In hci_server, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.
CVSS Score
4.4
EPSS Score
0.0
Published
2023-07-12
In iwnpi server, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.
CVSS Score
4.4
EPSS Score
0.0
Published
2023-07-12
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-07-12
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-07-12
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-07-12
In fastDial service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-07-12
In fastDial service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-07-12


Contact Us

Shodan ® - All rights reserved