Security News

CVE-2019-9403

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In cn-cbor, there is a possible out of bounds read due to improper casting. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-113512324
Categories: Security News

CVE-2019-9404

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In Bluetooth, there is possible controlled termination due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112923309
Categories: Security News

CVE-2019-9405

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In libAACdec, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112890225
Categories: Security News

CVE-2019-9406

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In libhevc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112552517
Categories: Security News

CVE-2019-9407

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In notification management of the service manager, there is a possible permissions bypass. This could lead to local escalation of privilege by preventing user notification, with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112434609
Categories: Security News

CVE-2019-9376

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In the Accounts package, there is a possible crash due to improper input validation. This could lead to permanent local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-129287265
Categories: Security News

CVE-2019-9377

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In FingerprintService, there is a possible bypass for operating system protections that isolate user profiles from each other due to a missing permission check. This could lead to a local information disclosure of metadata about the biometrics of another user on the device with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-128599663
Categories: Security News

CVE-2019-9378

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In the Activity Manager service, there is a possible permission bypass due to incorrect permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-124539196
Categories: Security News

CVE-2019-9379

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In libstagefright, there is a possible resource exhaustion due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-124329638
Categories: Security News

CVE-2019-9380

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In the settings UI, there is a possible spoofing vulnerability due to a missing permission check. This could lead to a user mistakenly changing permission settings with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-123700098
Categories: Security News

CVE-2019-9381

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In netd, there is a possible out of bounds read due to a use after free. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-122677612
Categories: Security News

CVE-2019-9382

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In libeffects, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-120874654
Categories: Security News

CVE-2019-9383

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In NFC server, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-120843827
Categories: Security News

CVE-2019-9384

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In LockPatternUtils, there is a possible escalation of privilege due to an improper permissions check. This could lead to local bypass of the Lockguard with System execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-120568007
Categories: Security News

CVE-2019-9385

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-120452956
Categories: Security News

CVE-2019-9386

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In NFC server, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the system server with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-122361874
Categories: Security News

CVE-2019-9387

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-117569833
Categories: Security News

CVE-2019-9388

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-117567437
Categories: Security News

CVE-2019-9389

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-117567058
Categories: Security News

CVE-2019-9390

National Vulnerability Database - Fri, 09/27/2019 - 15:15
In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-117551475
Categories: Security News

Pages