Vulnerabilities > Google > Android > 10.0

DATE CVE VULNERABILITY TITLE RISK
2019-12-06 CVE-2019-2231 Missing Encryption of Sensitive Data vulnerability in Google Android 10.0/9.0
In Blob::Blob of blob.cpp, there is a possible unencrypted master key due to improper input validation.
local
low complexity
google CWE-311
2.1
2019-12-06 CVE-2019-2230 Use After Free vulnerability in Google Android 10.0
In nfcManager_routeAid and nfcManager_unrouteAid of NativeNfcManager.cpp, there is possible memory reuse due to a use after free.
network
low complexity
google CWE-416
5.0
2019-12-06 CVE-2019-2229 Information Exposure vulnerability in Google Android
In updateWidget of BaseWidgetProvider.java, there is a possible leak of user data due to a missing permission check.
local
low complexity
google CWE-200
2.1
2019-12-06 CVE-2019-2228 Out-of-bounds Read vulnerability in Google Android
In array_find of array.c, there is a possible out-of-bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
4.9
2019-12-06 CVE-2019-2227 Out-of-bounds Read vulnerability in Google Android 10.0/9.0
In DeepCopy of btif_av.cc, there is a possible out of bounds read due to improper casting.
low complexity
google CWE-125
3.3
2019-12-06 CVE-2019-2226 Out-of-bounds Read vulnerability in Google Android
In device_class_to_int of device_class.cc, there is a possible out of bounds read due to improper casting.
local
low complexity
google CWE-125
4.9
2019-12-06 CVE-2019-2225 Improper Privilege Management vulnerability in Google Android
When pairing with a Bluetooth device, it may be possible to pair a malicious device without any confirmation from the user, and that device may be able to interact with the phone.
low complexity
google CWE-269
5.8
2019-12-06 CVE-2019-2223 Out-of-bounds Write vulnerability in Google Android
In ihevcd_ref_list of ihevcd_ref_list.c, there is a possible out of bounds write due to a missing bounds check.
network
google CWE-787
6.8
2019-12-06 CVE-2019-2222 Out-of-bounds Write vulnerability in Google Android
n ihevcd_parse_slice_data of ihevcd_parse_slice.c, there is a possible out of bounds write due to a missing bounds check.
network
google CWE-787
6.8
2019-12-06 CVE-2019-2221 Unspecified vulnerability in Google Android 10.0
In hasActivityInVisibleTask of WindowProcessController.java there’s a possible bypass of user interaction requirements due to incorrect handling of top activities in INITIALIZING state.
local
low complexity
google
4.6