7.8

CVSS3.1

CVE-2025-32325 -

In appendFrom of Parcel.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Sept. 4, 2025, 6:33 p.m. ๐Ÿ”„ Last Modified: Sept. 8, 2025, 2:09 p.m.

7.8

CVSS3.1

CVE-2025-32324 -

In onCommand of ActivityManagerShellCommand.java, there is a possible arbitrary activity launch due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Sept. 4, 2025, 6:33 p.m. ๐Ÿ”„ Last Modified: Sept. 8, 2025, 2:09 p.m.

7.8

CVSS3.1

CVE-2025-32323 -

In getCallingAppName of Shared.java, there is a possible way to trick users into granting file access via deceptive text in a permission popup due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not nโ€ฆ

๐Ÿ“… Published: Sept. 4, 2025, 6:33 p.m. ๐Ÿ”„ Last Modified: Sept. 8, 2025, 2:09 p.m.

7.8

CVSS3.1

CVE-2025-32321 -

In isSafeIntent of AccountTypePreferenceLoader.java, there is a possible way to bypass an intent type check due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Sept. 4, 2025, 6:33 p.m. ๐Ÿ”„ Last Modified: Sept. 8, 2025, 2:09 p.m.

7.8

CVSS3.1

CVE-2025-26464 -

In executeAppFunction of AppSearchManagerService.java, there is a possible background activity launch due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Sept. 4, 2025, 6:33 p.m. ๐Ÿ”„ Last Modified: Sept. 8, 2025, 2:10 p.m.

7.8

CVSS3.1

CVE-2025-26454 -

In validateUriSchemeAndPermission of DisclaimersParserImpl.java , there is a possible way to access data from another user due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Sept. 4, 2025, 6:33 p.m. ๐Ÿ”„ Last Modified: Sept. 8, 2025, 2:10 p.m.

7.8

CVSS3.1

CVE-2025-0089 -

In multiple locations, there is a possible way to hijack the Launcher app due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Sept. 4, 2025, 6:33 p.m. ๐Ÿ”„ Last Modified: Sept. 8, 2025, 4:40 p.m.

3.3

CVSS3.1

CVE-2025-0076 -

In multiple locations, there is a possible way to view icons belonging to another user due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Sept. 4, 2025, 6:33 p.m. ๐Ÿ”„ Last Modified: Sept. 5, 2025, 7:14 p.m.

7.8

CVSS3.1

CVE-2024-49714 -

In avrc_vendor_msg of avrc_opt.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to paired device escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Sept. 4, 2025, 6:33 p.m. ๐Ÿ”„ Last Modified: Sept. 6, 2025, 3:55 a.m.

0.0

CVE-2025-48533 -

In multiple locations, there is a possible way to use apps linked from a context menu of a lockscreen app due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Sept. 4, 2025, 6:17 p.m. ๐Ÿ”„ Last Modified: Sept. 4, 2025, 6:17 p.m.
Total resulsts: 309184
Page 94 of 30,919
ยซ previous page ยป next page
Filters