CVE-2021-1037
published 2022-01-14CVE-2021-1037: The broadcast that DevicePickerFragment sends when a new device is paired doesn't have any permission checks, so any app can register to listen for it. This…
PriorityP425medium5.3CVSS 3.1
AVNACLPRNUINSUCLINAN
EPSS
0.32%
23.9th percentile
The broadcast that DevicePickerFragment sends when a new device is paired doesn't have any permission checks, so any app can register to listen for it. This lets apps keep track of what devices are paired without requesting BLUETOOTH permissions.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-162951906
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| lxml | lxml | >= 0 < 4.6.5 | 4.6.5 |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-fc93-89fq-8669: The broadcast that DevicePickerFragment sends when a new device is paired doesn't have any permission checks, so any app can register to listen for it
ghsa_unreviewed·2022-01-15
CVE-2021-1037 [MEDIUM] CWE-668 GHSA-fc93-89fq-8669: The broadcast that DevicePickerFragment sends when a new device is paired doesn't have any permission checks, so any app can register to listen for it
The broadcast that DevicePickerFragment sends when a new device is paired doesn't have any permission checks, so any app can register to listen for it. This lets apps keep track of what devices are paired without requesting BLUETOOTH permissions.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-162951906
GHSA
lxml's HTML Cleaner allows crafted and SVG embedded scripts to pass through
ghsa·2021-12-13
CVE-2021-43818 [MEDIUM] CWE-74 lxml's HTML Cleaner allows crafted and SVG embedded scripts to pass through
lxml's HTML Cleaner allows crafted and SVG embedded scripts to pass through
### Impact
The HTML Cleaner in lxml.html lets certain crafted script content pass through, as well as script content in SVG files embedded using data URIs.
Users that employ the HTML cleaner in a security relevant context should upgrade to lxml 4.6.5.
### Patches
The issue has been resolved in lxml 4.6.5.
### Workarounds
None.
### References
The issues are tracked under the report IDs GHSL-2021-1037 and GHSL-2021-1038.
Red Hat
hw: cpu: AMD CPUs may transiently execute beyond unconditional direct branch
vendor_redhat·2022-03-08·CVSS 6.5
CVE-2021-26341 [MEDIUM] CWE-1037 hw: cpu: AMD CPUs may transiently execute beyond unconditional direct branch
hw: cpu: AMD CPUs may transiently execute beyond unconditional direct branch
Some AMD CPUs may transiently execute beyond unconditional direct branches, which may potentially result in data leakage.
A flaw was found in hw. This issue can cause AMD CPUs to transiently execute beyond unconditional direct branches.
Package: kernel (Red Hat Enterprise Linux 6) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 7) - Will not fix
Package: kernel-rt (Red Hat Enterprise Linux 7) - Will not fix
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-01-14
Published