VulnSea

Tagged “nvd”

CVEs tagged nvd, newest first.

29021 CVEsRSS

CVE-2026-55317Medium· 6.7
2w ago

In printf of printf.c, there is a possible out-of-bounds write due to improper input validation

In printf of printf.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-0187Medium· 6.7
2w ago

In gsa_sw_pk_hash_compare of image-auth-srv.c, there is a possible escalation of privilege due to a logic error in the code

In gsa_sw_pk_hash_compare of image-auth-srv.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is no…

▾ Sunlitgoogle · androidEPSS 0.08%via NVD
CVE-2026-0186Medium· 6.7
2w ago

In ac_init_one_sswrp of init.c, there is a possible escalation of privilege due to a logic error in the code

In ac_init_one_sswrp of init.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for ex…

▾ Sunlitgoogle · androidEPSS 0.08%via NVD
CVE-2026-0194High· 8.4
2w ago

In multiple locations, there is a possible permission bypass due to an integer overflow

In multiple locations, there is a possible permission bypass due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.08%via NVD
CVE-2026-0192Medium· 6.7
2w ago

In Bootloader, there is a possible escalation of privilege due to a missing permission check

In Bootloader, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-0189High· 8.4
2w ago

In ac_init_policy of init.c, there is a possible permission bypass due to a logic error in the code

In ac_init_policy of init.c, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for expl…

▾ Twilightgoogle · androidEPSS 0.08%via NVD
CVE-2026-0200High· 8.8
2w ago

In Cellular Modem, there is a possible out-of-bounds write due to a heap buffer overflow

In Cellular Modem, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.29%via NVD
CVE-2026-0199High· 7.8
2w ago

In gf_ta_test_set_config of gf_ta_test.c, there is a possible out-of-bounds write due to improper input validation

In gf_ta_test_set_config of gf_ta_test.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not …

▾ Twilightgoogle · androidEPSS 0.07%via NVD
CVE-2026-0197Medium· 4.4
2w ago

In VPU, there is a possible information dislclosure due to a logic error in the code

In VPU, there is a possible information dislclosure due to a logic error in the code. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.08%via NVD
CVE-2026-55304Medium· 6.7
2w ago

In addr_remap_address_map of remap.c, there is a possible escalation of privilege due to a logic error in the code

In addr_remap_address_map of remap.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed …

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-55302Medium· 6.7
2w ago

In multiple locations, there is a possible permission bypass due to a logic error in the code

In multiple locations, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-55301High· 8.4
2w ago

In Wave6VpuDecFlush of wave6.c, there is a possible out-of-bounds write due to a missing bounds check

In Wave6VpuDecFlush of wave6.c, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for ex…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-55323High· 7.8
2w ago

In gf_base_update_finger_base of gf_base.c, there is a possible out-of-bounds write due to a heap buffer overflow

In gf_base_update_finger_base of gf_base.c, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not n…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-55318High· 8.8
2w ago

In multiple locations, there is a possible use-after-free due to a race condition

In multiple locations, there is a possible use-after-free due to a race condition. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.29%via NVD
CVE-2026-55306High· 7.5
2w ago

In Cellular Modem, there is a possible denial of service due to improper input validation

In Cellular Modem, there is a possible denial of service due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.35%via NVD
CVE-2026-55343High· 8.0
2w ago

In decodeAmr of ImsMediaAudioPlayer.cpp, there is a possible out-of-bounds write due to a missing bounds check

In decodeAmr of ImsMediaAudioPlayer.cpp, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for explo…

▾ Twilightgoogle · androidEPSS 0.30%via NVD
CVE-2026-55332Medium· 6.7
2w ago

In multiple locations, there is a possible out-of-bounds write due to improper input validation

In multiple locations, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-55331High· 8.8
2w ago

In IP Multimedia Subsystem, there is a possible out-of-bounds write due to an incorrect bounds check

In IP Multimedia Subsystem, there is a possible out-of-bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.37%via NVD
CVE-2026-55365Medium· 6.7
2w ago

In multiple functions of remap.c, there is a possible out-of-bounds write due to an incorrect bounds check

In multiple functions of remap.c, there is a possible out-of-bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for expl…

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-55359High· 7.8
2w ago

In multiple locations, there is a possible permission bypass due to a logic error in the code

In multiple locations, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-55351High· 7.8
2w ago

In VPU, there is a possible out-of-bounds write due to an integer overflow

In VPU, there is a possible out-of-bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-56881High· 8.4
2w ago

In enable_segment of remap.c, there is a possible permission bypass due to a logic error in the code

In enable_segment of remap.c, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exp…

▾ Twilightgoogle · androidEPSS 0.11%via NVD
CVE-2026-56879Medium· 6.7
2w ago

In gmc_mb_msg_handler of gmc_mba.c, there is a possible memory corruption due to a confused deputy

In gmc_mb_msg_handler of gmc_mba.c, there is a possible memory corruption due to a confused deputy. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.09%via NVD
CVE-2026-55366Critical· 9.8
2w ago

In IP Multimedia Subsystem, there is a possible authentication bypass due to a logic error in the code

In IP Multimedia Subsystem, there is a possible authentication bypass due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for …

▾ Midnightgoogle · androidEPSS 0.46%via NVD
CVE-2026-56892Medium· 6.2
2w ago

In ReadDataElement of common.c, there is a possible information disclosure due to an incorrect bounds check

In ReadDataElement of common.c, there is a possible information disclosure due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed f…

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56888Medium· 6.2
2w ago

In multiple locations, there is a possible permission bypass due to side channel information disclosure

In multiple locations, there is a possible permission bypass due to side channel information disclosure. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for …

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56882High· 8.8
2w ago

In Cellular Modem, there is a possible information disclosure due to a logic error in the code

In Cellular Modem, there is a possible information disclosure due to a logic error in the code. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.39%via NVD
CVE-2026-56907Medium· 6.7
2w ago

In VPU, there is a possible shared memory overwrite due to improper input validation

In VPU, there is a possible shared memory overwrite due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56889Medium· 6.7
2w ago

In multiple locations, there is a possible permission bypass due to an integer overflow

In multiple locations, there is a possible permission bypass due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56920High· 8.8
2w ago

In s_decode_vui_param of fw_hevc_dec_header.c, there is a possible out-of-bounds write due to a logic error in the code

In s_decode_vui_param of fw_hevc_dec_header.c, there is a possible out-of-bounds write due to a logic error in the code. This could lead to remote code execution with no additional execution privileges needed. User interaction is not nee…

▾ Twilightgoogle · androidEPSS 0.39%via NVD
CVEs tagged “nvd” — page 274 · VulnSea