Vulnerability Library

ID
Packages
Summary
Affected versions
Published
Fix
ASB-A-279428283
  • Android/platform/frameworks/base
BG-FGS restrictions bypass via set app-owned IIntentSender to contentIntent.mTarget and call `PendingIntent.send` with callbacked whitelistToken
  • 12
  • 12L
  • 13
  • 14
2024-05-01T00:00:00Z Fix available
ASB-A-293301736
  • Android/platform/frameworks/base
Task Hijacking Using startActivityForResults - Phone by Google Example
  • 12
  • 12L
  • 13
  • 14
2024-05-01T00:00:00Z Fix available
ASB-A-293602317
  • Android/platform/frameworks/base
[STS SDK Grant] Create and persist a new secondary user without any restrictions via a super large seed account type
  • 12
  • 12L
  • 13
  • 14
2024-05-01T00:00:00Z Fix available
ASB-A-293602970
  • Android/platform/frameworks/base
Create and persist a new secondary user without any restrictions via a super large seed account option
  • 12
  • 12L
  • 13
  • 14
2024-05-01T00:00:00Z Fix available
ASB-A-295549388
  • Android/platform/packages/modules/Permission
Enable NotificationListenerService in the work profile via setDeviceProfile#AssociationRequest.DEVICE_PROFILE_WATCH
  • 12
  • 12L
  • 13
  • 14
2024-05-01T00:00:00Z Fix available
ASB-A-299123598
  • Android/:linux_kernel:
Linux Kernel Race Condition leads to UAF in Unix Domain Socket and causes LPE in Android
  • Kernel
2024-05-01T00:00:00Z Fix available
ASB-A-316891059
  • Android/platform/packages/apps/Settings
SearchResultTrampoline in Settings app trusts getCallingActivity()
  • 14
2024-05-01T00:00:00Z Fix available
ASB-A-317780080
  • Android/platform/external/sonivox
[Out of Bounds Read in WT_VoiceGain in eas_wtengine.c]
  • 12
  • 12L
  • 13
  • 14
2024-05-01T00:00:00Z Fix available
ASB-A-328068777
  • Android/platform/packages/modules/HealthFitness
Sassy Mantis: Privacy Incident
  • 14
2024-05-01T00:00:00Z Fix available
ASB-A-218495634
  • Android/platform/frameworks/base
Lockdown vs. Screen pinning mode
  • 12
  • 12L
  • 13
  • 14
2024-04-01T00:00:00Z Fix available
ASB-A-298635078
  • Android/platform/frameworks/base
Requesting and setting notfication access on behalf of another user profile by CompanionDeviceManagerService#requestNotificationAccess
  • 13
  • 14
2024-04-01T00:00:00Z Fix available
ASB-A-299931761
  • Android/platform/packages/apps/Settings
Bypass DISALLOW_ADD_WIFI_CONFIG to connect to an untrusted Wi-Fi network by WifiDialogActivity
  • 13
  • 14
2024-04-01T00:00:00Z Fix available
ASB-A-304983146
  • Android/platform/frameworks/base
Permanent device denial of service due to improper input validation in AppOpsService
  • 12
  • 12L
  • 13
  • 14
2024-04-01T00:00:00Z Fix available
ASB-A-305926929
  • Android/platform/frameworks/base
Failure to persist privacy settings due to improper input validation leads to EoP
  • 12
  • 12L
  • 13
  • 14
2024-04-01T00:00:00Z Fix available
ASB-A-307948424
  • Android/platform/frameworks/base
Permanent device denial of service due to bypassing snoozed notifications limit number
  • 12
  • 12L
  • 13
  • 14
2024-04-01T00:00:00Z Fix available
ASB-A-308414141
  • Android/platform/frameworks/base
Permanent device denial of service due to a huge amount of scheduled alarms
  • 12
  • 12L
  • 13
  • 14
2024-04-01T00:00:00Z Fix available