U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search Results (Refine Search)

Search Parameters:
  • Results Type: Overview
  • Keyword (text search): cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*
  • CPE Name Search: true
There are 2,593 matching records.
Displaying matches 1 through 20.
Vuln ID Summary CVSS Severity
CVE-2023-52160

The implementation of PEAP in wpa_supplicant through 2.10 allows authentication bypass. For a successful attack, wpa_supplicant must be configured to not verify the network's TLS certificate during Phase 1 authentication, and an eap_peap_decrypt vulnerability can then be abused to skip Phase 2 authentication. The attack vector is sending an EAP-TLV Success packet instead of starting Phase 2. This allows an adversary to impersonate Enterprise Wi-Fi networks.

Published: February 22, 2024; 12:15:08 PM -0500
V3.1: 6.5 MEDIUM
V2.0:(not available)
CVE-2024-20016

In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation Patch ID: ALPS07835901; Issue ID: ALPS07835901.

Published: February 05, 2024; 1:15:47 AM -0500
V3.1: 4.4 MEDIUM
V2.0:(not available)
CVE-2024-20013

In keyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08471742; Issue ID: ALPS08308608.

Published: February 05, 2024; 1:15:47 AM -0500
V3.1: 6.7 MEDIUM
V2.0:(not available)
CVE-2024-20011

In alac decoder, there is a possible information disclosure due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08441146; Issue ID: ALPS08441146.

Published: February 05, 2024; 1:15:47 AM -0500
V3.1: 9.8 CRITICAL
V2.0:(not available)
CVE-2024-20010

In keyInstall, there is a possible escalation of privilege due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08358560; Issue ID: ALPS08358560.

Published: February 05, 2024; 1:15:47 AM -0500
V3.1: 6.7 MEDIUM
V2.0:(not available)
CVE-2024-20006

In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08477148; Issue ID: ALPS08477148.

Published: February 05, 2024; 1:15:47 AM -0500
V3.1: 6.7 MEDIUM
V2.0:(not available)
CVE-2024-20002

In TVAPI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: DTV03961715; Issue ID: DTV03961715.

Published: February 05, 2024; 1:15:47 AM -0500
V3.1: 6.7 MEDIUM
V2.0:(not available)
CVE-2024-20001

In TVAPI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: DTV03961601; Issue ID: DTV03961601.

Published: February 05, 2024; 1:15:47 AM -0500
V3.1: 6.7 MEDIUM
V2.0:(not available)
CVE-2023-48359

In autotest driver, there is a possible out of bounds write due to improper input validation. This could lead to local denial of service with System execution privileges needed

Published: January 17, 2024; 10:15:58 PM -0500
V3.1: 4.4 MEDIUM
V2.0:(not available)
CVE-2023-48358

In drm driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

Published: January 17, 2024; 10:15:58 PM -0500
V3.1: 4.4 MEDIUM
V2.0:(not available)
CVE-2023-48357

In vsp driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

Published: January 17, 2024; 10:15:58 PM -0500
V3.1: 4.4 MEDIUM
V2.0:(not available)
CVE-2023-48356

In jpg driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

Published: January 17, 2024; 10:15:58 PM -0500
V3.1: 4.4 MEDIUM
V2.0:(not available)
CVE-2023-48355

In jpg driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

Published: January 17, 2024; 10:15:58 PM -0500
V3.1: 4.4 MEDIUM
V2.0:(not available)
CVE-2023-48354

In telephone service, there is a possible improper input validation. This could lead to local information disclosure with no additional execution privileges needed

Published: January 17, 2024; 10:15:58 PM -0500
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2023-48353

In vsp driver, there is a possible use after free due to a logic error. This could lead to local denial of service with System execution privileges needed

Published: January 17, 2024; 10:15:57 PM -0500
V3.1: 4.4 MEDIUM
V2.0:(not available)
CVE-2023-48352

In phasecheckserver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed

Published: January 17, 2024; 10:15:57 PM -0500
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2023-48351

In video decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed

Published: January 17, 2024; 10:15:57 PM -0500
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2023-48350

In video decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed

Published: January 17, 2024; 10:15:57 PM -0500
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2023-48349

In video decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed

Published: January 17, 2024; 10:15:57 PM -0500
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2023-48348

In video decoder, there is a possible out of bounds write due to improper input validation. This could lead to local denial of service with no additional execution privileges needed

Published: January 17, 2024; 10:15:57 PM -0500
V3.1: 5.5 MEDIUM
V2.0:(not available)