Vulnerabilities > Google > Android > 11.0

DATE CVE VULNERABILITY TITLE RISK
2020-09-17 CVE-2020-0290 Missing Authorization vulnerability in Google Android 11.0
In PackageManager, there is a missing permission check.
local
low complexity
google CWE-862
2.1
2020-09-17 CVE-2020-0289 Missing Authorization vulnerability in Google Android 11.0
In PackageManager, there is a missing permission check.
local
low complexity
google CWE-862
2.1
2020-09-17 CVE-2020-0288 Incorrect Authorization vulnerability in Google Android 11.0
In PackageManager, there is a missing permission check.
local
low complexity
google CWE-863
2.1
2020-09-17 CVE-2020-0287 Resource Exhaustion vulnerability in Google Android 11.0
In libmkvextractor, there is a possible resource exhaustion due to a missing bounds check.
network
google CWE-400
4.3
2020-09-17 CVE-2020-0279 Out-of-bounds Read vulnerability in Google Android 11.0
In the AAC parser, there is a possible out of bounds read due to a missing bounds check.
network
google CWE-125
4.3
2020-09-17 CVE-2020-0277 Missing Authorization vulnerability in Google Android 11.0
In NetworkPolicyManagerService, there is a possible permissions bypass due to a missing permission check.
local
low complexity
google CWE-862
4.6
2020-09-17 CVE-2020-0275 Incorrect Default Permissions vulnerability in Google Android 11.0
In MediaProvider, there is a possible way to access ContentResolver and MediaStore entries the app shouldn't have access to due to a permissions bypass.
local
low complexity
google CWE-276
7.2
2020-09-17 CVE-2020-0274 Unspecified vulnerability in Google Android 11.0
In the OMX parser, there is a possible information disclosure due to a returned raw pointer.
local
low complexity
google
2.1
2020-09-17 CVE-2020-0270 Out-of-bounds Read vulnerability in Google Android 11.0
In tremolo, there is a possible out of bounds read due to a missing bounds check.
network
google CWE-125
4.3
2020-09-17 CVE-2020-0267 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android 11.0
In WindowManager, there is a possible launch of an unexpected app due to a confused deputy.
network
google CWE-610
critical
9.3