2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-1017 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In AdapterService and GattService definition of AndroidManifest.xml, there is a possible way to disable bluetooth connec... |
| CVE-2021-1016 | HIGH | 7.3 | 0.1% | Dec 15, 2021 | In onCreate of UsbPermissionActivity.java, there is a possible way to grant an app access to USB without informed user c... |
| CVE-2021-1004 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In getConfiguredNetworks of WifiServiceImpl.java, there is a possible way to determine whether an app is installed, with... |
| CVE-2021-1003 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In adjustStreamVolume of AudioService.java, there is a possible way for unprivileged app to change audio stream volume d... |
| CVE-2021-1002 | HIGH | 7.5 | 0.8% | Dec 15, 2021 | In WT_Interpolate of eas_wtengine.c, there is a possible out of bounds read due to a missing bounds check. This could le... |
| CVE-2021-0999 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In the broadcast definition in AndroidManifest.xml, there is a possible way to set the A2DP bluetooth device connection ... |
| CVE-2021-0985 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In onReceive of AlertReceiver.java, there is a possible way to dismiss system dialog due to a missing permission check. ... |
| CVE-2021-0984 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In onNullBinding of ManagedServices.java, there is a possible permission bypass due to an incorrectly unbound service. T... |
| CVE-2021-0981 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In enqueueNotificationInternal of NotificationManagerService.java, there is a possible way to run a foreground service w... |
| CVE-2021-0970 | HIGH | 7.8 | 0.2% | Dec 15, 2021 | In createFromParcel of GpsNavigationMessage.java, there is a possible Parcel serialization/deserialization mismatch. Thi... |
| CVE-2021-0968 | HIGH | 8.8 | 0.7% | Dec 15, 2021 | In osi_malloc and osi_calloc of allocator.cc, there is a possible out of bounds write due to an integer overflow. This c... |
| CVE-2021-0967 | HIGH | 8.8 | 1.0% | Dec 15, 2021 | In vorbis_book_decodev_set of codebook.c, there is a possible out of bounds write due to a missing bounds check. This co... |
| CVE-2021-0965 | HIGH | 8.8 | 0.2% | Dec 15, 2021 | In AndroidManifest.xml of Settings, there is a possible pairing of a Bluetooth device without user's consent due to a mi... |
| CVE-2021-0963 | HIGH | 7.1 | 0.2% | Dec 15, 2021 | In onCreate of KeyChainActivity.java, there is a possible way to use an app certificate stored in keychain due to a tapj... |
| CVE-2021-0955 | HIGH | 7 | 0.1% | Dec 15, 2021 | In pf_write_buf of FuseDaemon.cpp, there is possible memory corruption due to a race condition. This could lead to local... |
| CVE-2021-0954 | HIGH | 7.3 | 0.3% | Dec 15, 2021 | In ResolverActivity, there is a possible user interaction bypass due to a tapjacking/overlay attack. This could lead to ... |
| CVE-2021-0953 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In setOnClickActivityIntent of SearchWidgetProvider.java, there is a possible way to access contacts and history bookmar... |
| CVE-2021-0933 | HIGH | 8 | 0.4% | Dec 15, 2021 | In onCreate of CompanionDeviceActivity.java or DeviceChooserActivity.java, there is a possible way for HTML tags to inte... |
| CVE-2021-0932 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In showNotification of NavigationModeController.java, there is a possible confused deputy due to an unsafe PendingIntent... |
| CVE-2021-0930 | HIGH | 8.8 | 0.5% | Dec 15, 2021 | In phNxpNciHal_process_ext_rsp of phNxpNciHal_ext.cc, there is a possible out of bounds write due to a missing bounds ch... |
| CVE-2021-0929 | HIGH | 7.8 | 0.2% | Dec 15, 2021 | In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use aft... |
| CVE-2021-0928 | HIGH | 7.8 | 0.4% | Dec 15, 2021 | In createFromParcel of OutputConfiguration.java, there is a possible parcel serialization/deserialization mismatch due t... |
| CVE-2021-0927 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In requestChannelBrowsable of TvInputManagerService.java, there is a possible permission bypass due to a logic error in ... |
| CVE-2021-0926 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In onCreate of NfcImportVCardActivity.java, there is a possible way to add a contact without user's consent due to a mis... |
| CVE-2021-0925 | HIGH | 7.5 | 1.0% | Dec 15, 2021 | In rw_t4t_sm_detect_ndef of rw_t4t.cc, there is a possible out of bounds read due to an incorrect bounds check. This cou... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now