Vulnerabilities > Google > Android > 10.0

DATE CVE VULNERABILITY TITLE RISK
2020-03-24 CVE-2019-20530 Code Injection vulnerability in Google Android
An issue was discovered on Samsung mobile devices with N(7.1), O(8.x), P(9.0), and Q(10.0) software.
network
low complexity
google CWE-94
7.5
2020-03-15 CVE-2020-0088 Resource Exhaustion vulnerability in Google Android 10.0
In parseTrackFragmentRun of MPEG4Extractor.cpp, there is possible resource exhaustion due to improper input validation.
network
google CWE-400
4.3
2020-03-15 CVE-2020-0086 Integer Overflow or Wraparound vulnerability in Google Android 10.0
In readCString of Parcel.cpp, there is a possible out of bounds write due to an integer overflow.
network
google CWE-190
6.8
2020-03-15 CVE-2019-9474 Out-of-bounds Read vulnerability in Google Android 10.0
In Bluetooth, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
5.0
2020-03-15 CVE-2019-9473 Out-of-bounds Read vulnerability in Google Android 10.0
In Bluetooth, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
5.0
2020-03-15 CVE-2019-2216 Improper Input Validation vulnerability in Google Android 10.0
In overlay notifications, there is a possible hidden notification due to improper input validation.
local
google CWE-20
4.4
2020-03-15 CVE-2019-2089 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android 10.0
In app uninstallation, there is a possible set of permissions that may not be removed from a shared app ID.
local
google CWE-732
4.4
2020-03-15 CVE-2019-2088 Out-of-bounds Read vulnerability in Google Android 10.0
In StatsService, there is a possible out of bounds read.
local
google CWE-125
1.9
2020-03-15 CVE-2019-2058 Out-of-bounds Read vulnerability in Google Android 10.0
In libAACdec, there is a possible out of bounds read.
network
google CWE-125
4.3
2020-03-10 CVE-2020-0087 Information Exposure vulnerability in Google Android 10.0
In getProcessPss of ActivityManagerService.java, there is a possible side channel information disclosure.
local
google CWE-200
1.9