In multiple locations, there is a possible way to create a large amount of app ops due to a logic error in the code. This could lead to local denial o...
In multiple locations, there is a possible way to read files from another user due to a missing permission check. This could lead to local information...
In InputMethodInfo of InputMethodInfo.java, there is a possible permanent denial of service due to resource exhaustion. This could lead to local denia...
In multiple locations, there is a possible permanent denial of service due to improper input validation. This could lead to local escalation of privil...
In multiple files, there is a possible way to reveal information across users due to a missing permission check. This could lead to local information ...
In multiple functions of WifiScanModeActivity.java, there is a possible way to bypass a device config restriction due to a missing permission check. T...
In multiple locations, there is a possible way to alter the primary user's face unlock settings due to a confused deputy. This could lead to physical ...
In multiple locations, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead to loca...
In appendFrom of Parcel.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege wi...
In onUidImportance of DisassociationProcessor.java, there is a possible way to retain companion application privileges after disassociation due to imp...
In initDecoder of C2SoftDav1dDec.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disc...
In multiple locations, there is a possible way to read files from another user due to a missing permission check. This could lead to local information...
In verifyAndGetBypass of AppOpsService.java, there is a possible method for a malicious app to prevent dialing emergency services under limited circum...
In multiple functions of HeaderPrivacyIconsController.kt, there is a possible way to grand permissions across user due to a logic error in the code. ...
In startAlwaysOnVpn of Vpn.java, there is a possible way to disable always-on VPN due to a logic error in the code. This could lead to local escalatio...