2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-1041MEDIUM5.5In (TBD) of (TBD), there is a possible out of bounds read due to memory corruption. This could lead to local information...
CVE-2021-1040HIGH7.8In onCreate of BluetoothPairingSelectionFragment.java, there is a possible EoP due to a tapjacking/overlay attack. This ...
CVE-2021-1039HIGH7.8In NotificationAccessActivity of AndroidManifest.xml, there is a possible EoP due to a tapjacking/overlay attack. This c...
CVE-2021-1038MEDIUM5.5In UserDetailsActivity of AndroidManifest.xml, there is a possible DoS due to a tapjacking/overlay attack. This could le...
CVE-2021-1034LOW3.3In getLine1NumberForDisplay of PhoneInterfaceManager.java, there is apossible way to determine whether an app is install...
CVE-2021-1032LOW3.3In getMimeGroup of PackageManagerService.java, there is a possible way to determine whether an app is installed, without...
CVE-2021-1031LOW3.3In cancelNotificationsFromListener of NotificationManagerService.java, there is a possible way to determine whether an a...
CVE-2021-1030MEDIUM5.5In setNotificationsShownFromListener of NotificationManagerService.java, there is a possible way to determine whether an...
CVE-2021-1029HIGH7.8In setClientStateLocked of SurfaceFlinger.cpp, there is a possible out of bounds write due to a use after free. This cou...
CVE-2021-1028HIGH7.8In setClientStateLocked of SurfaceFlinger.cpp, there is a possible out of bounds write due to a use after free. This cou...
CVE-2021-1027HIGH7.8In setTransactionState of SurfaceFlinger, there is possible arbitrary code execution in a privileged process due to impr...
CVE-2021-1026MEDIUM5.5In startRanging of RttServiceImpl.java, there is a possible way to determine whether an app is installed, without query ...
CVE-2021-1025MEDIUM5.5In hasNamedWallpaper of WallpaperManagerService.java, there is a possible way to determine whether an app is installed, ...
CVE-2021-1024MEDIUM6.7In onEventReceived of EventResultPersister.java, there is a possible intent redirection due to a confused deputy. This c...
CVE-2021-1023MEDIUM5In onCreate of RequestIgnoreBatteryOptimizations.java, there is a possible way to determine whether an app is installed,...
CVE-2021-1022HIGH7.5In btif_in_hf_client_generic_evt of btif_hf_client.cc, there is a possible Bluetooth service crash due to a missing null...
CVE-2021-1021HIGH7.3In snoozeNotificationInt of NotificationManagerService.java, there is a possible way to disable notification for an arbi...
CVE-2021-1020HIGH7.3In snoozeNotification of NotificationListenerService.java, there is a possible way to disable notification for an arbitr...
CVE-2021-1019HIGH7.3In snoozeNotification of NotificationListenerService.java, there is a possible permission confusion due to a misleading ...
CVE-2021-1018LOW3.3In adjustStreamVolume of AudioService.java, there is a possible way to determine whether an app is installed, without qu...
CVE-2021-1017HIGH7.8In AdapterService and GattService definition of AndroidManifest.xml, there is a possible way to disable bluetooth connec...
CVE-2021-1016HIGH7.3In onCreate of UsbPermissionActivity.java, there is a possible way to grant an app access to USB without informed user c...
CVE-2021-1015LOW3.3In getMeidForSlot of PhoneInterfaceManager.java, there is a possible way to determine whether an app is installed, witho...
CVE-2021-1014MEDIUM5.5In getNetworkTypeForSubscriber of PhoneInterfaceManager.java, there is a possible way to determine whether an app is ins...
CVE-2021-1013MEDIUM5.5In checkExistsAndEnforceCannotModifyImmutablyRestrictedPermission of PermissionManagerService.java, there is a possible ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now