Platform Frameworks Base vulnerabilities
579 known vulnerabilities affecting platform/frameworks_base.
Total CVEs
579
CISA KEV
7
actively exploited
Public exploits
1
Exploited in wild
7
Severity breakdown
UNKNOWN579
Vulnerabilities
Page 15 of 29
CVE-2022-20488P3UNKNOWN≥ 10:0, < 10:2022-12-01≥ 11:0, < 11:2022-12-01+3 more2022-12-01
CVE-2022-20488 CVE-2022-20488: In NotificationChannel of NotificationChannel
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2022-20487P3UNKNOWN≥ 10:0, < 10:2022-12-01≥ 11:0, < 11:2022-12-01+3 more2022-12-01
CVE-2022-20487 CVE-2022-20487: In NotificationChannel of NotificationChannel
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2021-0534P3UNKNOWN≥ 11:0, < 11:2021-06-012021-06-01
CVE-2021-0534 CVE-2021-0534: In permission declarations of DeviceAdminReceiver
In permission declarations of DeviceAdminReceiver.java, there is a possible lack of broadcast protection due to an insecure default value. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2022-20116P3UNKNOWN≥ 12:0, < 12:2022-05-012022-05-01
CVE-2022-20116 CVE-2022-20116: In onEntryUpdated of OngoingCallController
In onEntryUpdated of OngoingCallController.kt, it is possible to launch non-exported activities due to intent redirection. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2021-0570P3UNKNOWN≥ 11:0, < 11:2021-06-012021-06-01
CVE-2021-0570 CVE-2021-0570: In sendBugreportNotification of BugreportProgressService
In sendBugreportNotification of BugreportProgressService.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2021-0568P3UNKNOWN≥ 11:0, < 11:2021-06-012021-06-01
CVE-2021-0568 CVE-2021-0568: In onReceive of DevicePolicyManagerService
In onReceive of DevicePolicyManagerService.java, there is a possible enabling of disabled profiles due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2022-20354P3UNKNOWN≥ 11:0, < 11:2022-08-01≥ 12:0, < 12:2022-08-01+1 more2022-08-01
CVE-2022-20354 CVE-2022-20354: In onDefaultNetworkChanged of Vpn
In onDefaultNetworkChanged of Vpn.java, there is a possible way to disable VPN due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2021-39808P3UNKNOWN≥ 10:0, < 10:2022-04-01≥ 11:0, < 11:2022-04-01+1 more2022-04-01
CVE-2021-39808 CVE-2021-39808: In createNotificationChannelGroup of PreferencesHelper
In createNotificationChannelGroup of PreferencesHelper.java, there is a possible way for a service to run in foreground without user notification due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2025-48548P3UNKNOWN≥ 16-next:0, < 16-next:2025-09-01≥ 15:0, < 15:2025-09-01+2 more2025-09-01
CVE-2025-48548 CVE-2025-48548: In multiple functions of AppOpsControllerImpl
In multiple functions of AppOpsControllerImpl.java, there is a possible way to record audio without displaying the privacy indicator due to a race condition. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2023-40111P3UNKNOWN≥ 14-next:0, < 14-next:2023-11-01≥ 14:0, < 14:2023-11-012023-11-01
CVE-2023-40111 CVE-2023-40111: In setMediaButtonReceiver of MediaSessionRecord
In setMediaButtonReceiver of MediaSessionRecord.java, there is a possible way to send a pending intent on behalf of system_server due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2025-48639P3UNKNOWN≥ 16-qpr2-next:0, < 16-qpr2-next:2025-12-01≥ 15:0, < 15:2025-12-01+3 more2025-12-01
CVE-2025-48639 CVE-2025-48639: In DefaultTransitionHandler
In DefaultTransitionHandler.java, there is a possible way to unknowingly grant permissions to an app due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2025-22417P3UNKNOWN≥ 15-next:0, < 15-next:2025-04-01≥ 15:0, < 15:2025-04-01+1 more2025-04-01
CVE-2025-22417 CVE-2025-22417: In finishTransition of Transition
In finishTransition of Transition.java, there is a possible way to bypass touch filtering restrictions due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-0339P3UNKNOWN≥ 8.0:0, < 8.0:2021-02-01≥ 8.1:0, < 8.1:2021-02-01+2 more2021-02-01
CVE-2021-0339 CVE-2021-0339: In loadAnimation of WindowContainer
In loadAnimation of WindowContainer.java, there is a possible way to keep displaying a malicious app while a target app is brought to the foreground. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-0391P3UNKNOWN≥ 8.1:0, < 8.1:2021-03-01≥ 9:0, < 9:2021-03-01+2 more2021-03-01
CVE-2021-0391 CVE-2021-0391: In onCreate() of ChooseTypeAndAccountActivity
In onCreate() of ChooseTypeAndAccountActivity.java, there is a possible way to learn the existence of an account, without permissions, due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-0933P3UNKNOWN≥ 9:0, < 9:2021-11-01≥ 10:0, < 10:2021-11-01+2 more2021-11-01
CVE-2021-0933 CVE-2021-0933: In onCreate of CompanionDeviceActivity
In onCreate of CompanionDeviceActivity.java or DeviceChooserActivity.java, there is a possible way for HTML tags to interfere with a consent dialog due to improper input validation. This could lead to remote escalation of privilege, confusing the user into accepting pairing of a malicious Bluetooth device, with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2023-21251P3UNKNOWN≥ 13-next:0, < 13-next:2023-07-01≥ 11:0, < 11:2023-07-01+3 more2023-07-01
CVE-2023-21251 CVE-2023-21251: In onCreate of ConfirmDialog
In onCreate of ConfirmDialog.java, there is a possible way to connect to VNP bypassing user's consent due to improper input validation. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-39696P3UNKNOWN≥ 10:0, < 10:2022-08-01≥ 11:0, < 11:2022-08-01+1 more2022-08-01
CVE-2021-39696 CVE-2021-39696: In Task
In Task.java, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2022-20493P3UNKNOWN≥ 10:0, < 10:2023-01-01≥ 11:0, < 11:2023-01-01+3 more2023-01-01
CVE-2022-20493 CVE-2022-20493: In Condition of Condition
In Condition of Condition.java, there is a possible way to grant notification access due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2023-20953P3UNKNOWN≥ 13-next:0, < 13-next:2023-03-01≥ 13:0, < 13:2023-03-012023-03-01
CVE-2023-20953 CVE-2023-20953: In onPrimaryClipChanged of ClipboardListener
In onPrimaryClipChanged of ClipboardListener.java, there is a possible way to bypass factory reset protection due to incorrect UI being shown prior to setup completion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2024-31331P3UNKNOWN≥ 14-next:0, < 14-next:2024-07-01≥ 12:0, < 12:2024-07-01+3 more2024-07-01
CVE-2024-31331 CVE-2024-31331: In setMimeGroup of PackageManagerService
In setMimeGroup of PackageManagerService.java, there is a possible way to hide the service from Settings due to a logic error in the code. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.
osv