2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-0986 | MEDIUM | 5.5 | 0.1% | Dec 15, 2021 | In hasGrantedPolicy of DevicePolicyManagerService.java, there is a possible information disclosure about the device owne... |
| CVE-2021-0985 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In onReceive of AlertReceiver.java, there is a possible way to dismiss system dialog due to a missing permission check. ... |
| CVE-2021-0984 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In onNullBinding of ManagedServices.java, there is a possible permission bypass due to an incorrectly unbound service. T... |
| CVE-2021-0983 | LOW | 3.3 | 0.1% | Dec 15, 2021 | In createAdminSupportIntent of DevicePolicyManagerService.java, there is a possible disclosure of information about inst... |
| CVE-2021-0982 | LOW | 3.3 | 0.1% | Dec 15, 2021 | In getOrganizationNameForUser of DevicePolicyManagerService.java, there is a possible organization name disclosure due t... |
| CVE-2021-0981 | HIGH | 7.8 | 0.1% | Dec 15, 2021 | In enqueueNotificationInternal of NotificationManagerService.java, there is a possible way to run a foreground service w... |
| CVE-2021-0979 | MEDIUM | 5.5 | 0.1% | Dec 15, 2021 | In isRequestPinItemSupported of ShortcutService.java, there is a possible cross-user leak of packages in which the defau... |
| CVE-2021-0978 | LOW | 3.3 | 0.1% | Dec 15, 2021 | In getSerialForPackage of DeviceIdentifiersPolicyService.java, there is a possible way to determine whether an app is in... |
| CVE-2021-0977 | MEDIUM | 6.7 | 0.1% | Dec 15, 2021 | In phNxpNHal_DtaUpdate of phNxpNciHal_dta.cc, there is a possible out of bounds write due to an incorrect bounds check. ... |
| CVE-2021-0976 | MEDIUM | 6.5 | 0.6% | Dec 15, 2021 | In toBARK of floor0.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote i... |
| CVE-2021-0973 | MEDIUM | 5 | 0.1% | Dec 15, 2021 | In isFileUri of UriUtil.java, there is a possible way to bypass ignoring file://URI attachment due to improper handling ... |
| CVE-2021-0971 | MEDIUM | 6.5 | 0.6% | Dec 15, 2021 | In MPEG4Source::read of MPEG4Extractor.cpp, there is a possible out of bounds write due to a missing bounds check. This ... |
| CVE-2021-0970 | HIGH | 7.8 | 0.2% | Dec 15, 2021 | In createFromParcel of GpsNavigationMessage.java, there is a possible Parcel serialization/deserialization mismatch. Thi... |
| CVE-2021-0969 | MEDIUM | 6.5 | 0.6% | Dec 15, 2021 | In getTitle of AccessPoint.java, there is a possible unhandled exception due to a missing null check. This could lead to... |
| CVE-2021-0968 | HIGH | 8.8 | 0.7% | Dec 15, 2021 | In osi_malloc and osi_calloc of allocator.cc, there is a possible out of bounds write due to an integer overflow. This c... |
| CVE-2021-0967 | HIGH | 8.8 | 1.0% | Dec 15, 2021 | In vorbis_book_decodev_set of codebook.c, there is a possible out of bounds write due to a missing bounds check. This co... |
| CVE-2021-0966 | MEDIUM | 5.5 | 0.1% | Dec 15, 2021 | In code generated by BuildParcelFields of generate_cpp.cpp, there is a possible way for a crafted parcelable to reveal u... |
| CVE-2021-0965 | HIGH | 8.8 | 0.2% | Dec 15, 2021 | In AndroidManifest.xml of Settings, there is a possible pairing of a Bluetooth device without user's consent due to a mi... |
| CVE-2021-0964 | MEDIUM | 6.5 | 0.9% | Dec 15, 2021 | In C2SoftMP3::process() of C2SoftMp3Dec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This... |
| CVE-2021-0963 | HIGH | 7.1 | 0.2% | Dec 15, 2021 | In onCreate of KeyChainActivity.java, there is a possible way to use an app certificate stored in keychain due to a tapj... |
| CVE-2021-0961 | MEDIUM | 4.4 | 0.1% | Dec 15, 2021 | In quota_proc_write of xt_quota2.c, there is a possible way to read kernel memory due to uninitialized data. This could ... |
| CVE-2021-0958 | MEDIUM | 4.4 | 0.1% | Dec 15, 2021 | In update of km_compat.cpp, there is a possible loss of potentially sensitive data due to a logic error in the code. Thi... |
| CVE-2021-0956 | CRITICAL | 9.8 | 1.2% | Dec 15, 2021 | In NfcTag::discoverTechnologies (activation) of NfcTag.cpp, there is a possible out of bounds write due to an incorrect ... |
| CVE-2021-0955 | HIGH | 7 | 0.1% | Dec 15, 2021 | In pf_write_buf of FuseDaemon.cpp, there is possible memory corruption due to a race condition. This could lead to local... |
| CVE-2021-0954 | HIGH | 7.3 | 0.3% | Dec 15, 2021 | In ResolverActivity, there is a possible user interaction bypass due to a tapjacking/overlay attack. This could lead to ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now