Vulnerabilities > Google > Android > 10.0

DATE CVE VULNERABILITY TITLE RISK
2020-06-11 CVE-2020-0188 Improper Privilege Management vulnerability in Google Android 10.0
In onCreatePermissionRequest of SettingsSliceProvider.java, there is a possible permissions bypass due to a PendingIntent error.
local
low complexity
google CWE-269
4.6
2020-06-11 CVE-2020-0187 Unspecified vulnerability in Google Android 10.0
In engineSetMode of BaseBlockCipher.java, there is a possible incorrect cryptographic algorithm chosen due to an incomplete comparison.
local
low complexity
google
2.1
2020-06-11 CVE-2020-0186 Out-of-bounds Write vulnerability in Google Android 10.0
In hal_fd_init of hal_fd.cc, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
4.6
2020-06-11 CVE-2020-0185 Out-of-bounds Read vulnerability in Google Android 10.0
In avrc_pars_browsing_cmd of avrc_pars_tg.cc, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
2.1
2020-06-11 CVE-2020-0184 Infinite Loop vulnerability in Google Android 10.0
In ihevcd_ref_list() of ihevcd_ref_list.c, there is a possible infinite loop due to a missing bounds check.
network
google CWE-835
4.3
2020-06-11 CVE-2020-0183 Improper Privilege Management vulnerability in Google Android 10.0
In handleMessage of BluetoothManagerService, there is an incomplete reset.
local
google CWE-269
4.4
2020-06-11 CVE-2020-0182 Out-of-bounds Read vulnerability in multiple products
In exif_entry_get_value of exif-entry.c, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google debian CWE-125
6.4
2020-06-11 CVE-2020-0181 Integer Overflow or Wraparound vulnerability in multiple products
In exif_data_load_data_thumbnail of exif-data.c, there is a possible denial of service due to an integer overflow.
network
low complexity
google fedoraproject libexif-project CWE-190
7.5
2020-06-11 CVE-2020-0180 Out-of-bounds Read vulnerability in Google Android 10.0
In GetOpusHeaderBuffers() of OpusHeader.cpp, there is a possible out of bounds read due to a missing bounds check.
network
google CWE-125
4.3
2020-06-11 CVE-2020-0179 Improper Input Validation vulnerability in Google Android 10.0
In doSendObjectInfo of MtpServer.cpp, there is a possible path traversal attack due to insufficient input validation.
network
google CWE-20
6.8