VulnSea

Tagged “nvd”

CVEs tagged nvd, newest first.

29021 CVEsRSS

CVE-2026-56915Medium· 6.4
2w ago

In bigo_worker_thread of bigo.c, there is a possible escalation of privilege due to a race condition

In bigo_worker_thread of bigo.c, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-56914High· 8.4
2w ago

In multiple locations, there is a possible use-after-free due to improper locking

In multiple locations, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.08%via NVD
CVE-2026-56964Medium· 6.4
2w ago

In multiple locations, there is a possible use-after-free due to a race condition

In multiple locations, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-56923Medium· 6.4
2w ago

In handle_unmap_req of tipc_virtio_dev.c, there is a possible memory corruption due to a race condition

In handle_unmap_req of tipc_virtio_dev.c, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for …

▾ Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-56922Medium· 6.7
2w ago

In CPM, there is a possible permission bypass due to a confused deputy

In CPM, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56942High· 8.8
2w ago

In ReadTileInfo of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check

In ReadTileInfo of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed…

▾ Twilightgoogle · androidEPSS 0.37%via NVD
CVE-2026-56941High· 8.4
2w ago

In multiple functions of fpc_tee_hal.c, there is a possible use-after-free due to a logic error in the code

In multiple functions of fpc_tee_hal.c, there is a possible use-after-free due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed …

▾ Twilightgoogle · androidEPSS 0.11%via NVD
CVE-2026-56932Medium· 6.7
2w ago

In Trusted Execution Environment, there is a possible memory corruption due to improper input validation

In Trusted Execution Environment, there is a possible memory corruption due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploi…

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56958Medium· 5.5
2w ago

In gf_algo_get_cached_dump_data of gf_algo.c, there is a possible out-of-bounds read due to a missing bounds check

In gf_algo_get_cached_dump_data of gf_algo.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not n…

▾ Sunlitgoogle · androidEPSS 0.09%via NVD
CVE-2026-56945High· 7.8
2w ago

In VPU, there is a possible out-of-bounds write due to a confused deputy

In VPU, there is a possible out-of-bounds write due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.09%via NVD
CVE-2026-56967High· 8.0
2w ago

In Cellular Modem, there is a possible out-of-bounds write due to a heap buffer overflow

In Cellular Modem, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exp…

▾ Twilightgoogle · androidEPSS 0.17%via NVD
CVE-2026-56960Critical· 9.8
2w ago

In multiple locations, there is a possible use-after-free due to a logic error in the code

In multiple locations, there is a possible use-after-free due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Midnightgoogle · androidEPSS 0.40%via NVD
CVE-2026-56950Medium· 4.4
2w ago

In validate_ns_buf of mbu_class.rs, there is a possible information disclosure due to improper input validation

In validate_ns_buf of mbu_class.rs, there is a possible information disclosure due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for …

▾ Sunlitgoogle · androidEPSS 0.09%via NVD
CVE-2026-56973Medium· 6.7
2w ago

In multiple locations, there is a possible escalation of privilege due to a logic error in the code

In multiple locations, there is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56972Medium· 6.7
2w ago

In multiple locations, there is a possible out-of-bounds write due to an incorrect bounds check

In multiple locations, there is a possible out-of-bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56970High· 8.4
2w ago

In multiple locations, there is a possible permission bypass due to a missing permission check

In multiple locations, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitat…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-56978High· 8.4
2w ago

In get_global_config_item_addr of gc.c, there is a possible out-of-bounds read due to a missing bounds check

In get_global_config_item_addr of gc.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-56975Medium· 6.5
2w ago

In Cellular Modem, there is a possible denial of service due to improper input validation

In Cellular Modem, there is a possible denial of service due to improper input validation. This could lead to remote (proximal/adjacent) denial of service with no additional execution privileges needed. User interaction is not needed for…

▾ Sunlitgoogle · androidEPSS 0.15%via NVD
CVE-2026-56974High· 8.8
2w ago

In Start of AudioRtpPayloadEncoderNode.cpp, there is a possible out-of-bounds write due to improper input validation

In Start of AudioRtpPayloadEncoderNode.cpp, there is a possible out-of-bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for…

▾ Twilightgoogle · androidEPSS 0.37%via NVD
CVE-2026-56986High· 8.4
2w ago

In multiple files, there is a possible out-of-bounds read due to type confusion

In multiple files, there is a possible out-of-bounds read due to type confusion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-56982High· 7.8
2w ago

In VPU, there is a possible permission bypass due to a missing permission check

In VPU, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-56979Medium· 6.7
2w ago

In multiple locations, there is a possible permission bypass due to a logic error in the code

In multiple locations, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56988Medium· 6.4
2w ago

In multiple functions of bluetooth_cco.cc, there is a possible use-after-free due to a race condition

In multiple functions of bluetooth_cco.cc, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitat…

▾ Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-56985High· 8.4
2w ago

In multiple files, there is a possible way to obtain signatures due to type confusion

In multiple files, there is a possible way to obtain signatures due to type confusion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-58698Medium· 6.7
2w ago

In ap_pmic_poll_msg_handler of ap_pmic_ipc.c, there is a possible permission bypass due to a confused deputy

In ap_pmic_poll_msg_handler of ap_pmic_ipc.c, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for ex…

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56992Medium· 6.7
2w ago

In multiple files, there is a possible permission bypass due to a confused deputy

In multiple files, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56989Medium· 6.7
2w ago

In multiple locations, there is a possible out-of-bounds write due to a missing bounds check

In multiple locations, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-57006Medium· 4.4
2w ago

In acfw_ffa.c, there is a possible secret read due to a logic error in the code

In acfw_ffa.c, there is a possible secret read due to a logic error in the code. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56997High· 8.8
2w ago

In Av1DecodeFrameTag of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check

In Av1DecodeFrameTag of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not n…

▾ Twilightgoogle · androidEPSS 0.37%via NVD
CVE-2026-57035Medium· 6.7
2w ago

In multiple locations, there is a possible out-of-bounds write due to a missing bounds check

In multiple locations, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVEs tagged “nvd” — page 275 · VulnSea