Vulnerabilities > Google > Android > 10.0

DATE CVE VULNERABILITY TITLE RISK
2023-09-27 CVE-2023-44121 Unspecified vulnerability in Google Android
The vulnerability is an intent redirection in LG ThinQ Service ("com.lge.lms2") in the "com/lge/lms/things/ui/notification/NotificationManager.java" file.
local
low complexity
google
6.3
2023-09-27 CVE-2023-44126 Unspecified vulnerability in Google Android
The vulnerability is that the Call management ("com.android.server.telecom") app patched by LG sends a lot of LG-owned implicit broadcasts that disclose sensitive data to all third-party apps installed on the same device.
local
low complexity
google
5.5
2023-09-27 CVE-2023-44127 Unspecified vulnerability in Google Android
he vulnerability is that the Call management ("com.android.server.telecom") app patched by LG launches implicit intents that disclose sensitive data to all third-party apps installed on the same device.
local
low complexity
google
5.5
2023-09-27 CVE-2023-44128 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Google Android
he vulnerability is to delete arbitrary files in LGInstallService ("com.lge.lginstallservies") app.
local
high complexity
google CWE-367
3.6
2023-08-07 CVE-2023-20809 Out-of-bounds Write vulnerability in Google Android 10.0/11.0
In vdec, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2023-08-07 CVE-2023-20810 In IOMMU, there is a possible information disclosure due to improper input validation.
local
low complexity
google linux
4.4
2023-08-07 CVE-2023-20811 Out-of-bounds Write vulnerability in multiple products
In IOMMU, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google linux CWE-787
6.7
2023-08-07 CVE-2023-33911 Missing Authorization vulnerability in Google Android 10.0/11.0/9.0
In vowifi service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
local
low complexity
google CWE-862
5.5
2023-07-13 CVE-2023-21260 Origin Validation Error vulnerability in Google Android
In notification access permission dialog box, malicious application can embedded a very long service label that overflow the original user prompt and possibly contains mis-leading information to be appeared as a system message for user confirmation.
local
low complexity
google CWE-346
5.5
2023-07-12 CVE-2022-48450 Unspecified vulnerability in Google Android 10.0/11.0/12.0
In bluetooth service, there is a possible missing params check.
local
low complexity
google
4.4