Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2021-0599 | In scheduleTimeoutLocked of NotificationRecord.java, there is a possible disclosure of a sensitive identifier via broad… | Medium (5.5) | 2021-07-14 | Environment Specific |
| CVE-2021-0597 | In notifyProfileAdded and notifyProfileRemoved of SipService.java, there is a possible way to retrieve SIP account name… | Medium (5.5) | 2021-07-14 | Environment Specific |
| CVE-2021-0596 | In phNciNfc_RecvMfResp of phNxpExtns_MifareStd.cpp, there is a possible out of bounds read due to a missing bounds chec… | High (7.5) | 2021-07-14 | Environment Specific |
| CVE-2021-0594 | In onCreate of ConfirmConnectActivity, there is a possible remote bypass of user consent due to improper input validati… | High (8.0) | 2021-07-14 | Environment Specific |
| CVE-2021-0592 | In various functions in WideVine, there are possible out of bounds writes due to improper input validation. This could … | High (8.8) | 2021-07-14 | Environment Specific |