Google Security Advisories · January 2022 — Google Security Advisories
296 advisories 170 CVEs 12 EXPLOITED

GCVE / Google Cloud / Chrome / Android / Project Zero / OSS for 2022-01. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 12 are already weaponised in the wild.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

CVE-2022-21882

GoogleExploitedCISA KEV listedCRITICAL2022-01-11

Win32k Elevation of Privilege Vulnerability

CVEs:CVE-2022-21882

Affected products

ProductStatusVendorPackageEcosystem
windows_10_1809 affected microsoft
windows_10_1909 affected microsoft
windows_10_20h2 affected microsoft
windows_10_21h1 affected microsoft
windows_10_21h2 affected microsoft
Windows 10 Version 1809 affected Microsoft
windows_11_21h2 affected microsoft
windows_server_2019 affected microsoft
windows_server_2022 affected microsoft
windows_server_20h2 affected microsoft
Upstream advisory

DSA-5046-1

Open SourceExploitedCISA KEV listed2022-01-14

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
Upstream advisory

CVE-2022-22587

Project ZeroExploitedCISA KEV listed2022-01-26

A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 15.3 and iPadOS 15.3, macOS Big Sur 11.6.3, macOS Monterey 12.2. A malicious application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited..

CVEs:CVE-2022-22587

Upstream advisory

CVE-2022-22587

GoogleExploitedCISA KEV listedHIGH2022-01-26

A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 15.3 and iPadOS 15.3, macOS Big Sur 11.6.3, macOS Monterey 12.2. A malicious application may be able to execute arbitrary code with kernel privileges. Ap...

CVEs:CVE-2022-22587

Affected products

ProductStatusVendorPackageEcosystem
ipados affected apple
iphone_os affected apple
macos affected apple
Upstream advisory

CVE-2021-22600

GoogleExploitedCISA KEV listedHIGH2022-01-26

A double free bug in packet_set_ring() in net/packet/af_packet.c can be exploited by a local user through crafted syscalls to escalate privileges or deny service. We recommend upgrading kernel past the effected versions or rebuilding past ec6af094ea28f...

CVEs:CVE-2021-22600

Affected products

ProductStatusVendorPackageEcosystem
8300_firmware affected netapp
8700_firmware affected netapp
a400_firmware affected netapp
c400_firmware affected netapp
debian_linux affected debian
h300s_firmware affected netapp
h410c_firmware affected netapp
h410s_firmware affected netapp
h500s_firmware affected netapp
h700s_firmware affected netapp
linux_kernel affected linux
Upstream advisory

CVE-2022-22265

Open SourceExploitedCISA KEV listedCRITICAL2022-01-10

An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code execution.

CVEs:CVE-2022-22265

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

openSUSE-SU-2022:0091-1

Open SourceWeaponized exploitCRITICAL2022-01-17

Security update for apache2

Affected products

ProductStatusVendorPackageEcosystem
apache2 affected openSUSE:Leap 15.3 apache2
chromium affected openSUSE:Leap 15.3 chromium
chromium affected SUSE:Package Hub 15 SP3 chromium
Upstream advisory

GO-2021-0226

Open SourceWeaponized exploitCRITICAL2022-01-13

Cross-site scripting in net/http/cgi and net/http/fcgi

Affected products

ProductStatusVendorPackageEcosystem
stdlib affected Go stdlib
Upstream advisory

openSUSE-SU-2022:0019-1

Open SourceActive exploitation (sightings)CRITICAL2022-01-24

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected SUSE:Package Hub 15 SP3 chromium
chromium affected openSUSE:Leap 15.3 chromium
Upstream advisory

DSA-5054-1

Open SourceActive exploitation (sightings)2022-01-23

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
Upstream advisory

CVE-2022-0293

GoogleActive exploitation (sightings)CRITICAL2022-01-20

Use after free in Web packaging in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0293

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0295

GoogleActive exploitation (sightings)HIGH2022-01-20

Use after free in Omnibox in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced the user to engage is specific user interactions to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0295

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0296

GoogleActive exploitation (sightings)HIGH2022-01-20

Use after free in Printing in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced the user to engage is specific user interactions to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0296

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0297

GoogleActive exploitation (sightings)CRITICAL2022-01-20

Use after free in Vulkan in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0297

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0298

GoogleActive exploitation (sightings)CRITICAL2022-01-20

Use after free in Scheduling in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0298

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0307

GoogleActive exploitation (sightings)HIGH2022-01-20

Use after free in Optimization Guide in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced a user to engage in specific user interaction to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0307

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0308

GoogleActive exploitation (sightings)HIGH2022-01-20

Use after free in Data Transfer in Google Chrome on Chrome OS prior to 97.0.4692.99 allowed a remote attacker who convinced a user to engage in specific user interaction to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0308

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0291

GoogleActive exploitation (sightings)MEDIUM2022-01-20

Inappropriate implementation in Storage in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page.

CVEs:CVE-2022-0291

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0294

GoogleActive exploitation (sightings)MEDIUM2022-01-20

Inappropriate implementation in Push messaging in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page.

CVEs:CVE-2022-0294

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0305

GoogleActive exploitation (sightings)MEDIUM2022-01-20

Inappropriate implementation in Service Worker API in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page.

CVEs:CVE-2022-0305

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0303

Open SourceActive exploitation (sightings)2022-01-20

CVE-2022-0303

CVEs:CVE-2022-0303

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
Upstream advisory

openSUSE-SU-2022:0112-1

Open SourcePoC exploit2022-01-18

Security update for nodejs14

Affected products

ProductStatusVendorPackageEcosystem
chromium affected SUSE:Package Hub 15 SP3 chromium
chromium affected openSUSE:Leap 15.3 chromium
nodejs14 affected openSUSE:Leap 15.3 nodejs14
Upstream advisory

GO-2021-0159

Open SourcePoC exploitNONE2022-01-05

Request smuggling due to improper header parsing in net/http

Affected products

ProductStatusVendorPackageEcosystem
stdlib affected Go stdlib
Upstream advisory

DEBIAN-CVE-2021-39293

Open SourcePoC exploitHIGH2022-01-24

DEBIAN-CVE-2021-39293

Affected products

ProductStatusVendorPackageEcosystem
golang-1.15 affected Debian:11 golang-1.15
Upstream advisory

DLA-2891-1

Open SourcePoC exploit2022-01-21

golang-1.8 - security update

Affected products

ProductStatusVendorPackageEcosystem
golang-1.8 affected Debian:9 golang-1.8
Upstream advisory

DLA-2892-1

Open SourcePoC exploit2022-01-21

golang-1.7 - security update

Affected products

ProductStatusVendorPackageEcosystem
golang-1.7 affected Debian:9 golang-1.7
Upstream advisory

GO-2021-0263

Open SourcePoC exploit2022-01-13

Panic on invalid symbol tables in debug/macho

Affected products

ProductStatusVendorPackageEcosystem
stdlib affected Go stdlib
Upstream advisory

OESA-2022-1499

Open SourcePoC exploit2022-01-22

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:20.03-LTS-SP2 golang
golang affected openEuler:20.03-LTS-SP3 golang
golang affected openEuler:20.03-LTS-SP1 golang
Upstream advisory

GHSA-vc3p-29h2-gpcp

Open SourcePoC exploitHIGH2022-01-02

golang.org/x/net/http2 allows uncontrolled memory consumption

Affected products

ProductStatusVendorPackageEcosystem
x/net/http2 affected golang.org golang.org/x/net/http2
Upstream advisory

GHSA-vc3p-29h2-gpcp

Open SourcePoC exploitHIGH2022-01-02

golang.org/x/net/http2 allows uncontrolled memory consumption

Affected products

ProductStatusVendorPackageEcosystem
x/net/http2 affected golang.org golang.org/x/net/http2
Upstream advisory

AZL-33564

Open SourcePoC exploitHIGH2022-01-01

CVE-2021-44716 affecting package application-gateway-kubernetes-ingress for versions less than 1.4.0-19

Affected products

ProductStatusVendorPackageEcosystem
application-gateway-kubernetes-ingress affected Azure Linux:2 application-gateway-kubernetes-ingress
Upstream advisory

AZL-7125

Open SourcePoC exploitHIGH2022-01-01

CVE-2021-44716 affecting package golang for versions less than 1.17.8-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

DEBIAN-CVE-2021-44716

Open SourcePoC exploitHIGH2022-01-01

DEBIAN-CVE-2021-44716

Affected products

ProductStatusVendorPackageEcosystem
golang-1.15 affected Debian:11 golang-1.15
golang-golang-x-net affected Debian:14 golang-golang-x-net
golang-golang-x-net affected Debian:11 golang-golang-x-net
golang-golang-x-net affected Debian:12 golang-golang-x-net
golang-golang-x-net affected Debian:13 golang-golang-x-net
Upstream advisory

GO-2021-0264

Open SourcePoC exploit2022-01-13

Panic when opening certain archives in archive/zip

Affected products

ProductStatusVendorPackageEcosystem
stdlib affected Go stdlib
Upstream advisory

DEBIAN-CVE-2021-22570

Open SourcePoC exploitMEDIUM2022-01-26

DEBIAN-CVE-2021-22570

Affected products

ProductStatusVendorPackageEcosystem
protobuf affected Debian:13 protobuf
protobuf affected Debian:14 protobuf
protobuf affected Debian:11 protobuf
protobuf affected Debian:12 protobuf
Upstream advisory

PYSEC-2022-48

Open SourcePoC exploit2022-01-26

PYSEC-2022-48

Affected products

ProductStatusVendorPackageEcosystem
protobuf affected PyPI protobuf
Upstream advisory

CVE-2021-22570

Open SourcePoC exploitMEDIUM2022-01-26

Nullptr dereference when a null char is present in a proto symbol. The symbol is parsed incorrectly, leading to an unchecked call into the proto file's name during generation of the resulting error message. Since the symbol is incorrectly parsed, the f...

CVEs:CVE-2021-22570

Affected products

ProductStatusVendorPackageEcosystem
active_iq_unified_manager affected netapp
debian_linux affected debian
fedora affected fedoraproject
mysql affected oracle
oncommand_insight affected netapp
oncommand_workflow_automation affected netapp
protobuf affected google
snapcenter affected netapp
Upstream advisory

CVE-2021-22570

Open SourcePoC exploitHIGH2022-01-26

PYSEC-2022-48

CVEs:CVE-2021-22570

Affected products

ProductStatusVendorPackageEcosystem
com.google.protobuf:protobuf-java affected Maven com.google.protobuf:protobuf-java
Google.Protobuf affected NuGet Google.Protobuf
protobuf affected PyPI protobuf
protobuf affected google google/protobuf
protocolbuffers/protobuf affected github.com github.com/protocolbuffers/protobuf
Upstream advisory

CVE-2021-22570

Open SourcePoC exploitHIGH2022-01-26

Withdrawn Advisory: NULL Pointer Dereference in Protocol Buffers

CVEs:CVE-2021-22570

Affected products

ProductStatusVendorPackageEcosystem
com.google.protobuf:protobuf-java affected Maven com.google.protobuf:protobuf-java
Google.Protobuf affected NuGet Google.Protobuf
protobuf affected google google/protobuf
protobuf affected PyPI protobuf
protocolbuffers/protobuf affected github.com github.com/protocolbuffers/protobuf
Upstream advisory

CVE-2022-21970

Open SourcePoC exploitCRITICAL2022-01-07

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

CVEs:CVE-2022-21970

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

DEBIAN-CVE-2021-22569

Open SourcePoC exploitMEDIUM2022-01-10

DEBIAN-CVE-2021-22569

Affected products

ProductStatusVendorPackageEcosystem
protobuf affected Debian:11 protobuf
protobuf affected Debian:13 protobuf
protobuf affected Debian:14 protobuf
protobuf affected Debian:12 protobuf
Upstream advisory

GHSA-wrvw-hg22-4m67

Open SourcePoC exploitHIGH2022-01-07

A potential Denial of Service issue in protobuf-java

Affected products

ProductStatusVendorPackageEcosystem
com.google.protobuf:protobuf-java affected Maven com.google.protobuf:protobuf-java
com.google.protobuf:protobuf-kotlin affected Maven com.google.protobuf:protobuf-kotlin
google-protobuf affected RubyGems google-protobuf
Upstream advisory

GHSA-wrvw-hg22-4m67

Open SourcePoC exploitHIGH2022-01-07

A potential Denial of Service issue in protobuf-java

Affected products

ProductStatusVendorPackageEcosystem
celeborn-0.5 affected chainguard celeborn-0.5
celeborn-0.5 affected wolfi celeborn-0.5
celeborn-0.6 affected chainguard celeborn-0.6
celeborn-0.6 affected wolfi celeborn-0.6
com.google.protobuf:protobuf-java affected Maven com.google.protobuf:protobuf-java
com.google.protobuf:protobuf-kotlin affected Maven com.google.protobuf:protobuf-kotlin
dotty affected wolfi dotty
dotty affected chainguard dotty
druid affected wolfi druid
druid affected chainguard druid
google-protobuf affected RubyGems google-protobuf
hadoop-client-modules affected chainguard hadoop-client-modules
spark-3.5.0-compat affected chainguard spark-3.5.0-compat
trino affected wolfi trino
trino affected chainguard trino
Upstream advisory

CVE-2021-22569

Open SourcePoC exploitHIGH2022-01-07

An issue in protobuf-java allowed the interleaving of com.google.protobuf.UnknownFieldSet fields in such a way that would be processed out of order. A small malicious payload can occupy the parser for several minutes by creating large numbers of short-...

CVEs:CVE-2021-22569

Affected products

ProductStatusVendorPackageEcosystem
communications_cloud_native_core_console affected oracle
communications_cloud_native_core_network_repository_function affected oracle
communications_cloud_native_core_policy affected oracle
google-protobuf affected google
protobuf-java affected google
protobuf-kotlin affected google
spatial_and_graph_mapviewer affected oracle
Upstream advisory

CVE-2021-22569

Open SourcePoC exploitHIGH2022-01-07

A potential Denial of Service issue in protobuf-java

CVEs:CVE-2021-22569

Affected products

ProductStatusVendorPackageEcosystem
com.google.protobuf:protobuf-java affected Maven com.google.protobuf:protobuf-java
com.google.protobuf:protobuf-kotlin affected Maven com.google.protobuf:protobuf-kotlin
google-protobuf affected RubyGems google-protobuf
Upstream advisory

openSUSE-SU-2022:0014-1

Open SourcePoC exploitCRITICAL2022-01-17

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected SUSE:Package Hub 15 SP3 chromium
chromium affected openSUSE:Leap 15.3 chromium
Upstream advisory

CVE-2022-0108

GooglePoC exploitMEDIUM2022-01-05

Inappropriate implementation in Navigation in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

CVEs:CVE-2022-0108

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2021-43565

Open SourcePoC exploitHIGH2022-01-10

x/crypto/ssh vulnerable to panic via malformed packets

CVEs:CVE-2021-43565

Affected products

ProductStatusVendorPackageEcosystem
x/crypto affected golang.org golang.org/x/crypto
Upstream advisory

CVE-2021-43565

GooglePoC exploitHIGH2022-01-10

The x/crypto/ssh package before 0.0.0-20211202192323-5770296d904e of golang.org/x/crypto allows an attacker to panic an SSH server.

CVEs:CVE-2021-43565

Affected products

ProductStatusVendorPackageEcosystem
ssh affected golang
Upstream advisory

GHSA-f9jg-8p32-2f55

Open SourcePoC exploitLOW2022-01-08

kubectl ANSI escape characters not filtered

Affected products

ProductStatusVendorPackageEcosystem
argo-cd-2.7 affected chainguard argo-cd-2.7
argo-cd-2.7 affected wolfi argo-cd-2.7
argo-cd-2.8 affected wolfi argo-cd-2.8
argo-cd-2.8 affected chainguard argo-cd-2.8
argo-cd-2.9 affected wolfi argo-cd-2.9
argo-cd-2.9 affected chainguard argo-cd-2.9
argo-cd-fips-2.8 affected chainguard argo-cd-fips-2.8
argo-cd-fips-2.9 affected chainguard argo-cd-fips-2.9
aws-efs-csi-driver affected wolfi aws-efs-csi-driver
aws-efs-csi-driver affected chainguard aws-efs-csi-driver
aws-efs-csi-driver-fips affected chainguard aws-efs-csi-driver-fips
cluster-autoscaler-1.25 affected wolfi cluster-autoscaler-1.25
cluster-autoscaler-1.25 affected chainguard cluster-autoscaler-1.25
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
kubernetes-dns-node-cache affected chainguard kubernetes-dns-node-cache
kubernetes-dns-node-cache affected wolfi kubernetes-dns-node-cache
kubernetes-dns-node-cache-1.17 affected chainguard kubernetes-dns-node-cache-1.17
nodetaint affected chainguard nodetaint
nodetaint affected wolfi nodetaint
spark-operator affected chainguard spark-operator
spark-operator affected wolfi spark-operator
Upstream advisory

GHSA-f9jg-8p32-2f55

Open SourcePoC exploitLOW2022-01-08

kubectl ANSI escape characters not filtered

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

DEBIAN-CVE-2021-25743

Open SourcePoC exploitLOW2022-01-07

DEBIAN-CVE-2021-25743

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected Debian:11 kubernetes
kubernetes affected Debian:12 kubernetes
kubernetes affected Debian:13 kubernetes
kubernetes affected Debian:14 kubernetes
Upstream advisory

CVE-2021-25743

Open SourcePoC exploitLOW2022-01-06

kubectl does not neutralize escape, meta or control sequences contained in the raw data it outputs to a terminal. This includes but is not limited to the unstructured string fields in objects such as Events.

CVEs:CVE-2021-25743

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected kubernetes
Upstream advisory

CVE-2021-25743

Open SourcePoC exploitLOW2022-01-06

kubectl ANSI escape characters not filtered

CVEs:CVE-2021-25743

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

CVE-2021-39685

Open SourcePoC exploitHIGH2022-01-24

In various setup methods of the USB gadget subsystem, there is a possible out of bounds write due to an incorrect flag check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not neede...

CVEs:CVE-2021-39685

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-0306

GoogleEPSS > 79%CRITICAL2022-01-20

Heap buffer overflow in PDFium in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0306

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-21954

Open SourceCoalition ESS 30-63%CRITICAL2022-01-07

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

CVEs:CVE-2022-21954

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

CVE-2022-0289

GoogleCoalition ESS < 30%CRITICAL2022-01-20

Use after free in Safe browsing in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0289

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

ASB-A-207646334

GoogleCoalition ESS < 30%HIGH2022-01-01

ASB-A-207646334

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-207646335

GoogleCoalition ESS < 30%MEDIUM2022-01-01

ASB-A-207646335

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-207646336

GoogleCoalition ESS < 30%HIGH2022-01-01

ASB-A-207646336

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2021-39623

Open SourceCoalition ESS < 30%HIGH2022-01-05

In doRead of SimpleDecodingSource.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploi...

CVEs:CVE-2021-39623

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-0290

GoogleCoalition ESS < 30%CRITICAL2022-01-20

Use after free in Site isolation in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.

CVEs:CVE-2022-0290

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2021-38787

Open SourceCoalition ESS < 30%CRITICAL2022-01-19

There is an integer overflow in the ION driver "/dev/ion" of Allwinner R818 SoC Android Q SDK V1.0 that could use the ioctl cmd "COMPAT_ION_IOC_SUNXI_FLUSH_RANGE" to cause a system crash (denial of service).

CVEs:CVE-2021-38787

Affected products

ProductStatusVendorPackageEcosystem
android_q_sdk affected allwinnertech
Upstream advisory

DEBIAN-CVE-2021-44717

Open SourceCoalition ESS < 30%MEDIUM2022-01-01

DEBIAN-CVE-2021-44717

Affected products

ProductStatusVendorPackageEcosystem
golang-1.15 affected Debian:11 golang-1.15
Upstream advisory

CVE-2021-38785

Open SourceCoalition ESS < 30%HIGH2022-01-18

There is a NULL pointer deference in the Allwinner R818 SoC Android Q SDK V1.0 camera driver /dev/cedar_dev that could use the ioctl cmd IOCTL_GET_IOMMU_ADDR to cause a system crash.

CVEs:CVE-2021-38785

Affected products

ProductStatusVendorPackageEcosystem
android_q_sdk affected allwinnertech
Upstream advisory

CVE-2021-38788

Open SourceCoalition ESS < 30%HIGH2022-01-19

The Background service in Allwinner R818 SoC Android Q SDK V1.0 is used to manage background applications. Malicious apps can use the interface provided by the service to set the number of applications allowed to run in the background to 0 and add them...

CVEs:CVE-2021-38788

Affected products

ProductStatusVendorPackageEcosystem
android_q_sdk affected allwinnertech
Upstream advisory

ASB-A-207693368

GoogleCoalition ESS < 30%HIGH2022-01-01

ASB-A-207693368

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2022-0100

GoogleCoalition ESS < 30%CRITICAL2022-01-05

Heap buffer overflow in Media streams API in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0100

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0115

GoogleCoalition ESS < 30%HIGH2022-01-05

Uninitialized use in File API in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.

CVEs:CVE-2022-0115

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0117

GoogleCoalition ESS < 30%MEDIUM2022-01-05

Policy bypass in Blink in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

CVEs:CVE-2022-0117

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-21929

Open SourceCoalition ESS < 30%CRITICAL2022-01-07

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVEs:CVE-2022-21929

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

CVE-2022-0101

GoogleCoalition ESS < 30%CRITICAL2022-01-05

Heap buffer overflow in Bookmarks in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who convinced a user to perform specific user gesture to potentially exploit heap corruption via specific user gesture.

CVEs:CVE-2022-0101

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0104

GoogleCoalition ESS < 30%CRITICAL2022-01-05

Heap buffer overflow in ANGLE in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0104

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0096

GoogleCoalition ESS < 30%CRITICAL2022-01-05

Use after free in Storage in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0096

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0109

GoogleCoalition ESS < 30%HIGH2022-01-05

Inappropriate implementation in Autofill in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to obtain potentially sensitive information via a crafted HTML page.

CVEs:CVE-2022-0109

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0102

GoogleCoalition ESS < 30%HIGH2022-01-05

Type confusion in V8 in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0102

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0114

GoogleCoalition ESS < 30%HIGH2022-01-05

Out of bounds memory access in Blink Serial API in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page and virtual serial port driver.

CVEs:CVE-2022-0114

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0106

GoogleCoalition ESS < 30%CRITICAL2022-01-05

Use after free in Autofill in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who convinced a user to perform specific user gesture to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0106

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0105

GoogleCoalition ESS < 30%CRITICAL2022-01-05

Use after free in PDF Accessibility in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0105

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2021-38789

Open SourceCoalition ESS < 30%CRITICAL2022-01-19

Allwinner R818 SoC Android Q SDK V1.0 is affected by an incorrect access control vulnerability that does not check the caller's permission, in which a third-party app could change system settings.

CVEs:CVE-2021-38789

Affected products

ProductStatusVendorPackageEcosystem
android_q_sdk affected allwinnertech
Upstream advisory

DEBIAN-CVE-2022-21708

Open SourceCoalition ESS < 30%HIGH2022-01-21

DEBIAN-CVE-2022-21708

Affected products

ProductStatusVendorPackageEcosystem
golang-github-graph-gophers-graphql-go affected Debian:11 golang-github-graph-gophers-graphql-go
golang-github-graph-gophers-graphql-go affected Debian:12 golang-github-graph-gophers-graphql-go
golang-github-graph-gophers-graphql-go affected Debian:13 golang-github-graph-gophers-graphql-go
golang-github-graph-gophers-graphql-go affected Debian:14 golang-github-graph-gophers-graphql-go
Upstream advisory

CVE-2022-0103

GoogleCoalition ESS < 30%CRITICAL2022-01-05

Use after free in SwiftShader in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0103

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-21930

Open SourceCoalition ESS < 30%CRITICAL2022-01-07

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVEs:CVE-2022-21930

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

CVE-2022-21931

Open SourceCoalition ESS < 30%CRITICAL2022-01-07

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVEs:CVE-2022-21931

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

GHSA-3mm4-w7v6-4rhv

Open SourceCoalition ESS < 30%HIGH2022-01-20

android-gif-drawable vulerable to denial of service due to unrestricted comment length

Affected products

ProductStatusVendorPackageEcosystem
pl.droidsonroids.gif:android-gif-drawable affected Maven pl.droidsonroids.gif:android-gif-drawable
Upstream advisory

GHSA-3mm4-w7v6-4rhv

Open SourceCoalition ESS < 30%HIGH2022-01-20

android-gif-drawable vulerable to denial of service due to unrestricted comment length

Affected products

ProductStatusVendorPackageEcosystem
pl.droidsonroids.gif:android-gif-drawable affected Maven pl.droidsonroids.gif:android-gif-drawable
Upstream advisory

CVE-2022-23435

Open SourceCoalition ESS < 30%HIGH2022-01-19

decoding.c in android-gif-drawable before 1.2.24 does not limit the maximum length of a comment, leading to denial of service.

CVEs:CVE-2022-23435

Affected products

ProductStatusVendorPackageEcosystem
android-gif-drawable affected android-gif-drawable_project
Upstream advisory

CVE-2022-23435

Open SourceCoalition ESS < 30%HIGH2022-01-19

android-gif-drawable vulerable to denial of service due to unrestricted comment length

CVEs:CVE-2022-23435

Affected products

ProductStatusVendorPackageEcosystem
pl.droidsonroids.gif:android-gif-drawable affected Maven pl.droidsonroids.gif:android-gif-drawable
Upstream advisory

CVE-2022-0099

GoogleCoalition ESS < 30%CRITICAL2022-01-05

Use after free in Sign-in in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who convinced a user to perform specific user gestures to potentially exploit heap corruption via specific user gesture.

CVEs:CVE-2022-0099

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0116

GoogleCoalition ESS < 30%MEDIUM2022-01-05

Inappropriate implementation in Compositing in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.

CVEs:CVE-2022-0116

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0118

GoogleCoalition ESS < 30%MEDIUM2022-01-05

Inappropriate implementation in WebShare in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially hide the contents of the Omnibox (URL bar) via a crafted HTML page.

CVEs:CVE-2022-0118

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0112

GoogleCoalition ESS < 30%MEDIUM2022-01-05

Incorrect security UI in Browser UI in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to display missing URL or incorrect URL via a crafted URL.

CVEs:CVE-2022-0112

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0110

GoogleCoalition ESS < 30%MEDIUM2022-01-05

Incorrect security UI in Autofill in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.

CVEs:CVE-2022-0110

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-21679

Open SourceCoalition ESS < 30%CRITICAL2022-01-19

Istio is an open platform to connect, manage, and secure microservices. In Istio 1.12.0 and 1.12.1 The authorization policy with hosts and notHosts might be accidentally bypassed for ALLOW action or rejected unexpectedly for DENY action during the upgr...

CVEs:CVE-2022-21679

Affected products

ProductStatusVendorPackageEcosystem
istio affected istio
Upstream advisory

CVE-2022-0107

GoogleCoalition ESS < 30%CRITICAL2022-01-05

Use after free in File Manager API in Google Chrome on Chrome OS prior to 97.0.4692.71 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0107

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0098

GoogleCoalition ESS < 30%CRITICAL2022-01-05

Use after free in Screen Capture in Google Chrome on Chrome OS prior to 97.0.4692.71 allowed an attacker who convinced a user to perform specific user gestures to potentially exploit heap corruption via specific user gestures.

CVEs:CVE-2022-0098

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0097

GoogleCoalition ESS < 30%CRITICAL2022-01-05

Inappropriate implementation in DevTools in Google Chrome prior to 97.0.4692.71 allowed an attacker who convinced a user to install a malicious extension to to potentially allow extension to escape the sandbox via a crafted HTML page.

CVEs:CVE-2022-0097

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0311

GoogleCoalition ESS < 30%HIGH2022-01-20

Heap buffer overflow in Task Manager in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced a user to engage in specific user interaction to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0311

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0113

GoogleCoalition ESS < 30%MEDIUM2022-01-05

Inappropriate implementation in Blink in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

CVEs:CVE-2022-0113

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-0310

GoogleCoalition ESS < 30%HIGH2022-01-20

Heap buffer overflow in Task Manager in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit heap corruption via specific user interactions.

CVEs:CVE-2022-0310

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0111

GoogleCoalition ESS < 30%MEDIUM2022-01-05

Inappropriate implementation in Navigation in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to incorrectly set origin via a crafted HTML page.

CVEs:CVE-2022-0111

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

CVE-2022-21701

Open SourceCoalition ESS < 30%CRITICAL2022-01-19

Istio is an open platform to connect, manage, and secure microservices. In versions 1.12.0 and 1.12.1 Istio is vulnerable to a privilege escalation attack. Users who have `CREATE` permission for `gateways.gateway.networking.k8s.io` objects can escalate...

CVEs:CVE-2022-21701

Affected products

ProductStatusVendorPackageEcosystem
istio affected istio
Upstream advisory

CVE-2022-0300

GoogleCoalition ESS < 30%HIGH2022-01-20

Use after free in Text Input Method Editor in Google Chrome on Android prior to 97.0.4692.99 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0300

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0304

GoogleCoalition ESS < 30%HIGH2022-01-20

Use after free in Bookmarks in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0304

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0120

GoogleCoalition ESS < 30%MEDIUM2022-01-05

Inappropriate implementation in Passwords in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially leak cross-origin data via a malicious website.

CVEs:CVE-2022-0120

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
fedora affected fedoraproject
Upstream advisory

ASB-A-204728248

GoogleCoalition ESS < 30%MEDIUM2022-01-01

ASB-A-204728248

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2021-45729

GoogleCoalition ESS < 30%HIGH2022-01-25

The Privilege Escalation vulnerability discovered in the WP Google Map WordPress plugin (versions <= 1.8.0) allows authenticated low-role users to create, edit, and delete maps.

CVEs:CVE-2021-45729

Affected products

ProductStatusVendorPackageEcosystem
wp_google_map affected srmilon
Upstream advisory

CVE-2021-1049

Open SourceCoalition ESS < 30%HIGH2022-01-05

Hacker one bug ID: 1343975Product: AndroidVersions: Android SoCAndroid ID: A-204256722

CVEs:CVE-2021-1049

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-204256722

GoogleCoalition ESS < 30%2022-01-01

ASB-A-204256722

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2022-0292

GoogleCoalition ESS < 30%MEDIUM2022-01-20

Inappropriate implementation in Fenced Frames in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who had compromised the renderer process to bypass navigation restrictions via a crafted HTML page.

CVEs:CVE-2022-0292

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2021-22567

Open SourceCoalition ESS < 30%CRITICAL2022-01-05

Bidirectional Unicode text can be interpreted and compiled differently than how it appears in editors which can be exploited to get nefarious code passed a code review by appearing benign. An attacker could embed a source that is invisible to a code re...

CVEs:CVE-2021-22567

Affected products

ProductStatusVendorPackageEcosystem
dart_software_development_kit affected dart
Upstream advisory

CVE-2022-0309

GoogleCoalition ESS < 30%MEDIUM2022-01-20

Inappropriate implementation in Autofill in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.

CVEs:CVE-2022-0309

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0302

GoogleCoalition ESS < 30%HIGH2022-01-20

Use after free in Omnibox in Google Chrome prior to 97.0.4692.99 allowed an attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0302

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2022-0301

GoogleCoalition ESS < 30%CRITICAL2022-01-20

Heap buffer overflow in DevTools in Google Chrome prior to 97.0.4692.99 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2022-0301

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2021-1036

Open SourceCoalition ESS < 30%HIGH2022-01-14

In LocationSettingsActivity of AndroidManifest.xml, there is a possible EoP due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation...

CVEs:CVE-2021-1036

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-1037

Open SourceCoalition ESS < 30%MEDIUM2022-01-14

The broadcast that DevicePickerFragment sends when a new device is paired doesn't have any permission checks, so any app can register to listen for it. This lets apps keep track of what devices are paired without requesting BLUETOOTH permissions.Produc...

CVEs:CVE-2021-1037

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-199579676

GoogleCoalition ESS < 30%2022-01-01

PUB-A-199579676

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2021-22566

GoogleCoalition ESS < 30%CRITICAL2022-01-18

An incorrect setting of UXN bits within mmu_flags_to_s1_pte_attr lead to privileged executable pages being mapped as executable from an unprivileged context. This can be leveraged by an attacker to bypass executability restrictions of kernel-mode pages...

CVEs:CVE-2021-22566

Affected products

ProductStatusVendorPackageEcosystem
fuchsia affected google
Upstream advisory

CVE-2022-20021

Open SourceCoalition ESS < 30%MEDIUM2022-01-04

In Bluetooth, there is a possible application crash due to bluetooth does not properly handle the reception of multiple LMP_host_connection_req. This could lead to remote denial of service of bluetooth with no additional execution privileges needed. Us...

CVEs:CVE-2022-20021

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-20022

Open SourceCoalition ESS < 30%MEDIUM2022-01-04

In Bluetooth, there is a possible link disconnection due to bluetooth does not properly handle a connection attempt from a host with the same BD address as the currently connected BT host. This could lead to remote denial of service of bluetooth with n...

CVEs:CVE-2022-20022

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-20023

Open SourceCoalition ESS < 30%MEDIUM2022-01-04

In Bluetooth, there is a possible application crash due to bluetooth flooding a device with LMP_AU_rand packet. This could lead to remote denial of service of bluetooth with no additional execution privileges needed. User interaction is not needed for ...

CVEs:CVE-2022-20023

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-22270

Open SourceCoalition ESS < 30%MEDIUM2022-01-10

An implicit Intent hijacking vulnerability in Dialer prior to SMR Jan-2022 Release 1 allows unprivileged applications to access contact information.

CVEs:CVE-2022-22270

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39633

Open SourceCoalition ESS < 30%MEDIUM2022-01-05

In gre_handle_offloads of ip_gre.c, there is a possible page fault due to an invalid memory access. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product:...

CVEs:CVE-2021-39633

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-150694665

GoogleCoalition ESS < 30%MEDIUM2022-01-01

ASB-A-150694665

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2021-39626

Open SourceCoalition ESS < 30%HIGH2022-01-05

In onAttach of ConnectedDeviceDashboardFragment.java, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege in Bluetooth settings with no additional execution privileges needed. User interactio...

CVEs:CVE-2021-39626

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39634

Open SourceCoalition ESS < 30%HIGH2022-01-05

In fs/eventpoll.c, there is a possible use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: ...

CVEs:CVE-2021-39634

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-204450605

GoogleCoalition ESS < 30%HIGH2022-01-01

ASB-A-204450605

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2021-0959

Open SourceCoalition ESS < 30%HIGH2022-01-05

In jit_memory_region.cc, there is a possible bypass of memory restrictions due to a logic error in the code. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product...

CVEs:CVE-2021-0959

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39678

Open SourceCoalition ESS < 30%HIGH2022-01-14

In <TBD> of <TBD>, there is a possible bypass of Factory Reset Protection due to <TBD>. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVer...

CVEs:CVE-2021-39678

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-171742549

GoogleCoalition ESS < 30%NONE2022-01-01

PUB-A-171742549

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2021-39625

Open SourceCoalition ESS < 30%HIGH2022-01-05

In showCarrierAppInstallationNotification of EuiccNotificationManager.java, there is a possible way to gain an access to MediaProvider content due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileg...

CVEs:CVE-2021-39625

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-194695347

GoogleCoalition ESS < 30%NONE2022-01-01

ASB-A-194695347

Affected products

ProductStatusVendorPackageEcosystem
vendor/unbundled_google/packages/EuiccGooglePrebuilt affected platform platform/vendor/unbundled_google/packages/EuiccGooglePrebuilt
Upstream advisory

CVE-2021-39684

Open SourceCoalition ESS < 30%HIGH2022-01-14

In target_init of gs101/abl/target/slider/target.c, there is a possible allocation of RWX memory due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not ...

CVEs:CVE-2021-39684

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39621

Open SourceCoalition ESS < 30%HIGH2022-01-05

In sendLegacyVoicemailNotification of LegacyModeSmsHandler.java, there is a possible permissions bypass due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not need...

CVEs:CVE-2021-39621

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39627

Open SourceCoalition ESS < 30%HIGH2022-01-05

In sendLegacyVoicemailNotification of LegacyModeSmsHandler.java, there is a possible permissions bypass due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not need...

CVEs:CVE-2021-39627

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-203250788

GoogleCoalition ESS < 30%NONE2022-01-01

PUB-A-203250788

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2021-39630

Open SourceCoalition ESS < 30%HIGH2022-01-05

In executeRequest of OverlayManagerService.java, there is a possible way to control fabricated overlays from adb shell due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User in...

CVEs:CVE-2021-39630

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39622

Open SourceCoalition ESS < 30%HIGH2022-01-05

In GBoard, there is a possible way to bypass Factory Reset Protection due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Pr...

CVEs:CVE-2021-39622

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-192663648

GoogleCoalition ESS < 30%NONE2022-01-01

ASB-A-192663648

Affected products

ProductStatusVendorPackageEcosystem
vendor/unbundled_google/packages/LatinIMEGooglePrebuilt affected platform platform/vendor/unbundled_google/packages/LatinIMEGooglePrebuilt
Upstream advisory

CVE-2021-39682

Open SourceCoalition ESS < 30%HIGH2022-01-14

In mgm_alloc_page of memory_group_manager.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for e...

CVEs:CVE-2021-39682

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-1035

Open SourceCoalition ESS < 30%HIGH2022-01-14

In setLaunchIntent of BluetoothDevicePickerPreferenceController.java, there is a possible way to invoke an arbitrary broadcast receiver due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges n...

CVEs:CVE-2021-1035

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-22264

Open SourceCoalition ESS < 30%HIGH2022-01-10

Improper sanitization of incoming intent in Dressroom prior to SMR Jan-2022 Release 1 allows local attackers to read and write arbitrary files without permission.

CVEs:CVE-2022-22264

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39618

Open SourceCoalition ESS < 30%HIGH2022-01-05

In multiple methods of EuiccNotificationManager.java, there is a possible way to install existing packages without user consent due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User...

CVEs:CVE-2021-39618

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39632

Open SourceCoalition ESS < 30%HIGH2022-01-05

In inotify_cb of events.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Prod...

CVEs:CVE-2021-39632

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-196855999

GoogleCoalition ESS < 30%NONE2022-01-01

ASB-A-196855999

Affected products

ProductStatusVendorPackageEcosystem
vendor/unbundled_google/packages/EuiccGooglePrebuilt affected platform platform/vendor/unbundled_google/packages/EuiccGooglePrebuilt
Upstream advisory

PUB-A-201677538

GoogleCoalition ESS < 30%HIGH2022-01-01

PUB-A-201677538

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2021-39683

Open SourceCoalition ESS < 30%HIGH2022-01-14

In copy_from_mbox of sss_ice_util.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Produc...

CVEs:CVE-2021-39683

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-202003354

GoogleCoalition ESS < 30%HIGH2022-01-01

PUB-A-202003354

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2021-39620

Open SourceCoalition ESS < 30%HIGH2022-01-05

In ipcSetDataReference of Parcel.cpp, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Pr...

CVEs:CVE-2021-39620

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39628

Open SourceCoalition ESS < 30%MEDIUM2022-01-05

In StatusBar.java, there is a possible disclosure of notification content on the lockscreen due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed...

CVEs:CVE-2021-39628

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-20015

Open SourceCoalition ESS < 30%MEDIUM2022-01-04

In kd_camera_hw driver, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS058629...

CVEs:CVE-2022-20015

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-20018

Open SourceCoalition ESS < 30%MEDIUM2022-01-04

In seninf driver, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05863018; Is...

CVEs:CVE-2022-20018

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39680

Open SourceCoalition ESS < 30%MEDIUM2022-01-14

In sec_SHA256_Transform of sha256_core.c, there is a possible way to read heap data due to uninitialized data. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Prod...

CVEs:CVE-2021-39680

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39681

Open SourceCoalition ESS < 30%HIGH2022-01-14

In delete_protocol of main.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product...

CVEs:CVE-2021-39681

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-197965864

GoogleCoalition ESS < 30%MEDIUM2022-01-01

PUB-A-197965864

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-200251074

GoogleCoalition ESS < 30%HIGH2022-01-01

PUB-A-200251074

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2022-20019

Open SourceCoalition ESS < 30%MEDIUM2022-01-04

In libMtkOmxGsmDec, there is a possible information disclosure due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ...

CVEs:CVE-2022-20019

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-20020

Open SourceCoalition ESS < 30%MEDIUM2022-01-04

In libvcodecdrv, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05...

CVEs:CVE-2022-20020

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-20014

Open SourceCoalition ESS < 30%HIGH2022-01-04

In vow driver, there is a possible memory corruption due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05857308; Is...

CVEs:CVE-2022-20014

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-22268

Open SourceCoalition ESS < 30%MEDIUM2022-01-10

Incorrect implementation of Knox Guard prior to SMR Jan-2022 Release 1 allows physically proximate attackers to temporary unlock the Knox Guard via Samsung DeX mode.

CVEs:CVE-2022-22268

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-20012

Open SourceCoalition ESS < 30%HIGH2022-01-04

In mdp driver, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05836478; I...

CVEs:CVE-2022-20012

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-22271

Open SourceCoalition ESS < 30%MEDIUM2022-01-10

A missing input validation before memory copy in TIMA trustlet prior to SMR Jan-2022 Release 1 allows attackers to copy data from arbitrary memory.

CVEs:CVE-2022-22271

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39659

Open SourceCoalition ESS < 30%MEDIUM2022-01-05

In sortSimPhoneAccountsForEmergency of CreateConnectionProcessor.java, there is a possible prevention of access to emergency calling due to an unhandled exception. In rare instances, this could lead to local denial of service with User execution privil...

CVEs:CVE-2021-39659

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-23728

Open SourceCoalition ESS < 30%MEDIUM2022-01-21

Attacker can reset the device with AT Command in the process of rebooting the device. The LG ID is LVE-SMP-210011.

CVEs:CVE-2022-23728

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-22272

Open SourceCoalition ESS < 30%MEDIUM2022-01-10

Improper authorization in TelephonyManager prior to SMR Jan-2022 Release 1 allows attackers to get IMSI without READ_PRIVILEGED_PHONE_STATE permission

CVEs:CVE-2022-22272

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-22269

Open SourceCoalition ESS < 30%HIGH2022-01-10

Keeping sensitive data in unprotected BluetoothSettingsProvider prior to SMR Jan-2022 Release 1 allows untrusted applications to get a local Bluetooth MAC address.

CVEs:CVE-2022-22269

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-22267

Open SourceCoalition ESS < 30%MEDIUM2022-01-10

Implicit Intent hijacking vulnerability in ActivityMetricsLogger prior to SMR Jan-2022 Release 1 allows attackers to get running application information.

CVEs:CVE-2022-22267

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-22266

Open SourceCoalition ESS < 30%MEDIUM2022-01-10

(Applicable to China models only) Unprotected WifiEvaluationService in TencentWifiSecurity application prior to SMR Jan-2022 Release 1 allows untrusted applications to get WiFi information without proper permission.

CVEs:CVE-2022-22266

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-178720043

GoogleCoalition ESS < 30%2022-01-01

PUB-A-178720043

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
Upstream advisory

CVE-2022-22263

Open SourceCoalition ESS < 30%MEDIUM2022-01-10

Unprotected dynamic receiver in SecSettings prior to SMR Jan-2022 Release 1 allows untrusted applications to launch arbitrary activity.

CVEs:CVE-2022-22263

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0934

Open SourceCoalition ESS < 30%HIGH2022-01-05

In findAllDeAccounts of AccountsDb.java, there is a possible denial of service due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Produc...

CVEs:CVE-2021-0934

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39629

Open SourceCoalition ESS < 30%HIGH2022-01-05

In phTmlNfc_Init and phTmlNfc_CleanUp of phTmlNfc.cc, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploi...

CVEs:CVE-2021-39629

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2022-20016

Open SourceCoalition ESS < 30%HIGH2022-01-04

In vow driver, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05862986; Issue ID: A...

CVEs:CVE-2022-20016

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-39679

Open SourceCoalition ESS < 30%HIGH2022-01-14

In init of vendor_graphicbuffer_meta.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Produ...

CVEs:CVE-2021-39679

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-188745089

GoogleCoalition ESS < 30%HIGH2022-01-01

PUB-A-188745089

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2022-20013

Open SourceCoalition ESS < 30%HIGH2022-01-04

In vow driver, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05837742; Issue ID: A...

CVEs:CVE-2022-20013

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

GO-2021-0160

Open SourceEPSS <= 49%2022-01-05

Incorrect calculation affecting RSA computations in math/big

Affected products

ProductStatusVendorPackageEcosystem
stdlib affected Go stdlib
Upstream advisory

GO-2021-0178

Open SourceEPSS <= 49%NONE2022-01-07

Cleartext transmission of credentials in net/smtp

Affected products

ProductStatusVendorPackageEcosystem
stdlib affected Go stdlib
Upstream advisory

CVE-2021-25021

GoogleEPSS <= 49%MEDIUM2022-01-03

The OMGF | Host Google Fonts Locally WordPress plugin before 4.5.12 does not validate the cache directory setting, allowing high privilege users to use a path traversal vector and delete arbitrary folders when uninstalling the plugin

CVEs:CVE-2021-25021

Affected products

ProductStatusVendorPackageEcosystem
optimize_my_google_fonts affected ffw
Upstream advisory

GO-2021-0163

Open SourceEPSS <= 49%HIGH2022-01-05

Privilege escalation on Windows via malicious DLL in syscall

Affected products

ProductStatusVendorPackageEcosystem
stdlib affected Go stdlib
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.