CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2021-23158

    Last Modified: 21 Nov 2024

    A flaw was found in htmldoc in v1.9.12. Double-free in function pspdf_export(),in ps-pdf.cxx may result in a write-what-where condition, allowing an attacker to execute arbitrary code and denial of service.

    Published: 16 Mar 2022
    9.8
    Critical

    CVE-2022-0982

    Last Modified: 21 Nov 2024

    The telnet_input_char function in opt/src/accel-pppd/cli/telnet.c suffers from a memory corruption vulnerability, whereby user input cmdline_len is copied into a fixed buffer b->buf without any bound checks. If the server connects with a malicious client, crafted client requests can remotely trigger this vulnerability.

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39709

    Last Modified: 21 Nov 2024

    In sendSipAccountsRemovedNotification of SipAccountRegistry.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-208817618

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39707

    Last Modified: 21 Nov 2024

    In onReceive of AppRestrictionsFragment.java, there is a possible way to start a phone call without permissions due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12Android ID: A-200688991

    Published: 16 Mar 2022
    9.8
    Critical

    CVE-2021-39708

    Last Modified: 21 Nov 2024

    In gatt_process_notification of gatt_cl.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-206128341

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39706

    Last Modified: 21 Nov 2024

    In onResume of CredentialStorage.java, there is a possible way to cleanup content of credentials storage due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12Android ID: A-200164168

    Published: 16 Mar 2022
    —
    Unknown

    CVE-2021-39705

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39704

    Last Modified: 21 Nov 2024

    In deleteNotificationChannelGroup of NotificationManagerService.java, there is a possible way to run foreground service without user notification due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12Android ID: A-209965481

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39703

    Last Modified: 21 Nov 2024

    In updateState of UsbDeviceManager.java, there is a possible unauthorized access of files due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-207057578

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39701

    Last Modified: 21 Nov 2024

    In serviceConnection of ControlsProviderLifecycleManager.kt, there is a possible way to keep service running in foreground without notification or permission due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11 Android-12Android ID: A-212286849

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39702

    Last Modified: 21 Nov 2024

    In onCreate of RequestManageCredentials.java, there is a possible way for a third party app to install certificates without user approval due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-205150380

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39697

    Last Modified: 21 Nov 2024

    In checkFileUriDestination of DownloadProvider.java, there is a possible way to bypass external storage private directories protection due to a missing permission check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12Android ID: A-200813547

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39694

    Last Modified: 21 Nov 2024

    In parse of RoleParser.java, there is a possible way for default apps to get permissions explicitly denied by the user due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-202312327

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39695

    Last Modified: 21 Nov 2024

    In createOrUpdate of BasePermission.java, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-209607944

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39693

    Last Modified: 21 Nov 2024

    In onUidStateChanged of AppOpsService.java, there is a possible way to access location without a visible indicator due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-208662370

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39692

    Last Modified: 21 Nov 2024

    In onCreate of SetupLayoutActivity.java, there is a possible way to setup a work profile bypassing user consent due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12Android ID: A-209611539

    Published: 16 Mar 2022
    5.5
    Medium

    CVE-2021-39690

    Last Modified: 21 Nov 2024

    In setDisplayPadding of WallpaperManagerService.java, there is a possible way to cause a persistent DoS due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-204316511

    Published: 16 Mar 2022
    6.7
    Medium

    CVE-2021-39689

    Last Modified: 21 Nov 2024

    In multiple functions of odsign_main.cpp, there is a possible way to persist system attack due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-206090748

    Published: 16 Mar 2022
    6.5
    Medium

    CVE-2021-39667

    Last Modified: 21 Nov 2024

    In ih264d_parse_decode_slice of ih264d_parse_slice.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12Android ID: A-205702093

    Published: 16 Mar 2022
    5.5
    Medium

    CVE-2021-39624

    Last Modified: 21 Nov 2024

    In PackageManager, there is a possible permanent denial of service due to resource exhaustion. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-67862680

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-0957

    Last Modified: 21 Nov 2024

    In NotificationStackScrollLayout of NotificationStackScrollLayout.java, there is a possible way to bypass Factory Reset Protections. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12Android ID: A-193149550

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39793

    Last Modified: 23 Oct 2025

    In kbase_jd_user_buf_pin_pages of mali_kbase_mem.c, there is a possible out of bounds write due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-210470189References: N/A

    Published: 16 Mar 2022
    4.1
    Medium

    CVE-2021-39792

    Last Modified: 21 Nov 2024

    In usb_gadget_giveback_request of core.c, there is a possible use after free out of bounds read due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-161010552References: Upstream kernel

    Published: 16 Mar 2022
    9.8
    Critical

    CVE-2021-39737

    Last Modified: 21 Nov 2024

    Product: AndroidVersions: Android kernelAndroid ID: A-208229524References: N/A

    Published: 16 Mar 2022
    6.7
    Medium

    CVE-2021-39736

    Last Modified: 21 Nov 2024

    In prepare_io_entry and prepare_response of lwis_ioctl.c and lwis_periodic_io.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-205995773References: N/A

    Published: 16 Mar 2022
    6.4
    Medium

    CVE-2021-39735

    Last Modified: 21 Nov 2024

    In gasket_alloc_coherent_memory of gasket_page_table.c, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-151455484References: N/A

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39734

    Last Modified: 21 Nov 2024

    In sendMessage of OneToOneChatImpl.java (? TBD), there is a possible way to send an RCS message without permissions due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-208650395References: N/A

    Published: 16 Mar 2022
    6.7
    Medium

    CVE-2021-39733

    Last Modified: 21 Nov 2024

    In amcs_cdev_unlocked_ioctl of audiometrics.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-206128522References: N/A

    Published: 16 Mar 2022
    6.7
    Medium

    CVE-2021-39731

    Last Modified: 21 Nov 2024

    In ProtocolStkProactiveCommandAdapter::Init of protocolstkadapter.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-205036834References: N/A

    Published: 16 Mar 2022
    7.8
    High

    CVE-2021-39732

    Last Modified: 21 Nov 2024

    In copy_io_entries of lwis_ioctl.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-205992503References: N/A

    Published: 16 Mar 2022
    4.4
    Medium

    CVE-2021-39730

    Last Modified: 21 Nov 2024

    In TBD of TBD, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-206472503References: N/A

    Published: 16 Mar 2022
    6.7
    Medium

    CVE-2021-39729

    Last Modified: 21 Nov 2024

    In the TitanM chip, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-202006191References: N/A

    Published: 16 Mar 2022
    7.5
    High

    CVE-2021-39726

    Last Modified: 21 Nov 2024

    In cd_ParseMsg of cd_codec.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-181782896References: N/A

    Published: 16 Mar 2022
    4.1
    Medium

    CVE-2021-39727

    Last Modified: 21 Nov 2024

    In eicPresentationRetrieveEntryValue of acropora/app/identity/libeic/EicPresentation.c, there is a possible information disclosure due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-196388042References: N/A

    Published: 16 Mar 2022
    6.7
    Medium

    CVE-2021-39725

    Last Modified: 21 Nov 2024

    In gasket_free_coherent_memory_all of gasket_page_table.c, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-151454974References: N/A

    Published: 16 Mar 2022
    4.4
    Medium

    CVE-2021-39724

    Last Modified: 21 Nov 2024

    In TuningProviderBase::GetTuningTreeSet of tuning_provider_base.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-205753190References: N/A

    Published: 16 Mar 2022
    9.8
    Critical

    CVE-2021-39723

    Last Modified: 21 Nov 2024

    Product: AndroidVersions: Android kernelAndroid ID: A-209014813References: N/A

    Published: 16 Mar 2022
    6.7
    Medium

    CVE-2021-39721

    Last Modified: 21 Nov 2024

    In TBD of TBD, there is a possible out of bounds write due to memory corruption. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-195726151References: N/A

    Published: 16 Mar 2022
    4.4
    Medium

    CVE-2021-39722

    Last Modified: 21 Nov 2024

    In ProtocolStkProactiveCommandAdapter::Init of protocolstkadapter.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-204585345References: N/A

    Published: 16 Mar 2022
    9.8
    Critical

    CVE-2021-39720

    Last Modified: 21 Nov 2024

    Product: AndroidVersions: Android kernelAndroid ID: A-207433926References: N/A

    Published: 16 Mar 2022
    6.7
    Medium

    CVE-2021-39719

    Last Modified: 21 Nov 2024

    In lwis_top_register_io of lwis_device_top.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-205995178References: N/A

    Published: 16 Mar 2022
    4.4
    Medium

    CVE-2021-39717

    Last Modified: 21 Nov 2024

    In iaxxx_btp_write_words of iaxxx-btp.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-198653629References: N/A

    Published: 16 Mar 2022
    6.7
    Medium

    CVE-2021-39718

    Last Modified: 21 Nov 2024

    In ProtocolStkProactiveCommandAdapter::Init of protocolstkadapter.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-205035540References: N/A

    Published: 16 Mar 2022
    7.5
    High

    CVE-2021-39716

    Last Modified: 21 Nov 2024

    Product: AndroidVersions: Android kernelAndroid ID: A-206977562References: N/A

    Published: 16 Mar 2022
    6.4
    Medium

    CVE-2021-39712

    Last Modified: 21 Nov 2024

    In TBD of TBD, there is a possible user after free vulnerability due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-176918884References: N/A

    Published: 16 Mar 2022
    9.8
    Critical

    CVE-2021-39710

    Last Modified: 21 Nov 2024

    Product: AndroidVersions: Android kernelAndroid ID: A-202160245References: N/A

    Published: 16 Mar 2022
    6.5
    Medium

    CVE-2022-0959

    Last Modified: 17 Mar 2025

    A malicious, but authorised and authenticated user can construct an HTTP request using their existing CSRF token and session cookie to manually upload files to any location that the operating system user account under which pgAdmin is running has permission to write.

    Published: 16 Mar 2022
    5.4
    Medium

    CVE-2021-33853

    Last Modified: 21 Nov 2024

    A Cross-Site Scripting (XSS) attack can cause arbitrary code (javascript) to run in a user’s browser while the browser is connected to a trusted website. As the vehicle for the attack, the application targets the users and not the application itself. Additionally, the XSS payload is executed when the user attempts to access any page of the CRM.

    Published: 16 Mar 2022
    9.8
    Critical

    CVE-2022-25251

    Last Modified: 16 Apr 2025

    When connecting to a certain port Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) may allow an attacker to send certain XML messages to a specific port without proper authentication. Successful exploitation of this vulnerability could allow a remote unauthenticated attacker to read and modify the affected product’s configuration.

    Published: 16 Mar 2022
    7.5
    High

    CVE-2022-25252

    Last Modified: 16 Apr 2025

    When connecting to a certain port Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) when receiving certain input throws an exception. Services using said function do not handle the exception. Successful exploitation of this vulnerability could allow a remote unauthenticated attacker to crash the affected product.

    Published: 16 Mar 2022