Vulnerabilities > Google > Android > 12.1

DATE CVE VULNERABILITY TITLE RISK
2023-10-27 CVE-2023-40116 Unspecified vulnerability in Google Android 11.0/12.0/12.1
In onTaskAppeared of PipTaskOrganizer.java, there is a possible way to bypass background activity launch restrictions due to a logic error in the code.
local
low complexity
google
7.8
2023-10-27 CVE-2023-40117 Unspecified vulnerability in Google Android
In resetSettingsLocked of SettingsProvider.java, there is a possible lockscreen bypass due to a permissions bypass.
local
low complexity
google
7.8
2023-10-27 CVE-2023-40120 Unspecified vulnerability in Google Android
In multiple locations, there is a possible way to bypass user notification of foreground services due to improper input validation.
local
low complexity
google
7.8
2023-10-27 CVE-2023-40121 Deserialization of Untrusted Data vulnerability in Google Android
In appendEscapedSQLString of DatabaseUtils.java, there is a possible SQL injection due to unsafe deserialization.
local
low complexity
google CWE-502
5.5
2023-10-27 CVE-2023-40123 Unspecified vulnerability in Google Android
In updateActionViews of PipMenuView.java, there is a possible bypass of a multi user security boundary due to a confused deputy.
local
low complexity
google
5.5
2023-10-27 CVE-2023-40125 Unspecified vulnerability in Google Android
In onCreate of ApnEditor.java, there is a possible way for a Guest user to change the APN due to a permission bypass.
local
low complexity
google
7.8
2023-10-27 CVE-2023-40127 Unspecified vulnerability in Google Android
In multiple locations, there is a possible way to access screenshots due to a confused deputy.
local
low complexity
google
3.3
2023-10-27 CVE-2023-40128 Out-of-bounds Write vulnerability in Google Android
In several functions of xmlregexp.c, there is a possible out of bounds write due to a heap buffer overflow.
local
low complexity
google CWE-787
7.8
2023-10-27 CVE-2023-40129 Out-of-bounds Write vulnerability in Google Android 12.0/12.1/13.0
In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflow.
low complexity
google CWE-787
8.8
2023-10-27 CVE-2023-40130 Unspecified vulnerability in Google Android
In onBindingDied of CallRedirectionProcessor.java, there is a possible permission bypass due to a logic error in the code.
local
low complexity
google
7.8