2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-0986MEDIUM5.5In hasGrantedPolicy of DevicePolicyManagerService.java, there is a possible information disclosure about the device owne...
CVE-2021-0985HIGH7.8In onReceive of AlertReceiver.java, there is a possible way to dismiss system dialog due to a missing permission check. ...
CVE-2021-0984HIGH7.8In onNullBinding of ManagedServices.java, there is a possible permission bypass due to an incorrectly unbound service. T...
CVE-2021-0983LOW3.3In createAdminSupportIntent of DevicePolicyManagerService.java, there is a possible disclosure of information about inst...
CVE-2021-0982LOW3.3In getOrganizationNameForUser of DevicePolicyManagerService.java, there is a possible organization name disclosure due t...
CVE-2021-0981HIGH7.8In enqueueNotificationInternal of NotificationManagerService.java, there is a possible way to run a foreground service w...
CVE-2021-0979MEDIUM5.5In isRequestPinItemSupported of ShortcutService.java, there is a possible cross-user leak of packages in which the defau...
CVE-2021-0978LOW3.3In getSerialForPackage of DeviceIdentifiersPolicyService.java, there is a possible way to determine whether an app is in...
CVE-2021-0977MEDIUM6.7In phNxpNHal_DtaUpdate of phNxpNciHal_dta.cc, there is a possible out of bounds write due to an incorrect bounds check. ...
CVE-2021-0976MEDIUM6.5In toBARK of floor0.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote i...
CVE-2021-0973MEDIUM5In isFileUri of UriUtil.java, there is a possible way to bypass ignoring file://URI attachment due to improper handling ...
CVE-2021-0971MEDIUM6.5In MPEG4Source::read of MPEG4Extractor.cpp, there is a possible out of bounds write due to a missing bounds check. This ...
CVE-2021-0970HIGH7.8In createFromParcel of GpsNavigationMessage.java, there is a possible Parcel serialization/deserialization mismatch. Thi...
CVE-2021-0969MEDIUM6.5In getTitle of AccessPoint.java, there is a possible unhandled exception due to a missing null check. This could lead to...
CVE-2021-0968HIGH8.8In osi_malloc and osi_calloc of allocator.cc, there is a possible out of bounds write due to an integer overflow. This c...
CVE-2021-0967HIGH8.8In vorbis_book_decodev_set of codebook.c, there is a possible out of bounds write due to a missing bounds check. This co...
CVE-2021-0966MEDIUM5.5In code generated by BuildParcelFields of generate_cpp.cpp, there is a possible way for a crafted parcelable to reveal u...
CVE-2021-0965HIGH8.8In AndroidManifest.xml of Settings, there is a possible pairing of a Bluetooth device without user's consent due to a mi...
CVE-2021-0964MEDIUM6.5In C2SoftMP3::process() of C2SoftMp3Dec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This...
CVE-2021-0963HIGH7.1In onCreate of KeyChainActivity.java, there is a possible way to use an app certificate stored in keychain due to a tapj...
CVE-2021-0961MEDIUM4.4In quota_proc_write of xt_quota2.c, there is a possible way to read kernel memory due to uninitialized data. This could ...
CVE-2021-0958MEDIUM4.4In update of km_compat.cpp, there is a possible loss of potentially sensitive data due to a logic error in the code. Thi...
CVE-2021-0956CRITICAL9.8In NfcTag::discoverTechnologies (activation) of NfcTag.cpp, there is a possible out of bounds write due to an incorrect ...
CVE-2021-0955HIGH7In pf_write_buf of FuseDaemon.cpp, there is possible memory corruption due to a race condition. This could lead to local...
CVE-2021-0954HIGH7.3In ResolverActivity, there is a possible user interaction bypass due to a tapjacking/overlay attack. This could lead to ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now