Vulnerabilities > Google > Android > 12.1

DATE CVE VULNERABILITY TITLE RISK
2023-08-14 CVE-2023-21133 Missing Authorization vulnerability in Google Android 12.0/12.1/13.0
In onCreate of ManagePermissionsActivity.java, there is a possible way to bypass factory reset protections due to a missing permission check.
low complexity
google CWE-862
6.8
2023-08-14 CVE-2023-21134 Missing Authorization vulnerability in Google Android 12.0/12.1/13.0
In onCreate of ManagePermissionsActivity.java, there is a possible way to bypass factory reset protections due to a missing permission check.
low complexity
google CWE-862
6.8
2023-08-14 CVE-2023-21140 Missing Authorization vulnerability in Google Android 12.0/12.1/13.0
In onCreate of ManagePermissionsActivity.java, there is a possible way to bypass factory reset protections due to a missing permission check.
low complexity
google CWE-862
6.8
2023-08-14 CVE-2023-21267 Unspecified vulnerability in Google Android
In multiple functions of KeyguardViewMediator.java, there is a possible way to bypass lockdown mode with screen pinning due to a logic error in the code.
local
low complexity
google
5.5
2023-08-14 CVE-2023-21268 Path Traversal vulnerability in Google Android
In update of MmsProvider.java, there is a possible way to change directory permissions due to a path traversal error.
local
low complexity
google CWE-22
5.5
2023-07-13 CVE-2023-21260 Origin Validation Error vulnerability in Google Android
In notification access permission dialog box, malicious application can embedded a very long service label that overflow the original user prompt and possibly contains mis-leading information to be appeared as a system message for user confirmation.
local
low complexity
google CWE-346
5.5
2023-07-13 CVE-2023-20918 Unspecified vulnerability in Google Android
In getPendingIntentLaunchFlags of ActivityOptions.java, there is a possible elevation of privilege due to a confused deputy with no additional execution privileges needed.
network
low complexity
google
critical
9.8
2023-07-13 CVE-2023-20942 Unspecified vulnerability in Google Android 12.0/12.1/13.0
In openMmapStream of AudioFlinger.cpp, there is a possible way to record audio without displaying the microphone privacy indicator due to a logic error in the code.
local
low complexity
google
5.5
2023-07-13 CVE-2023-21145 Unspecified vulnerability in Google Android
In updatePictureInPictureMode of ActivityRecord.java, there is a possible bypass of background launch restrictions due to a logic error in the code.
local
low complexity
google
7.8
2023-07-13 CVE-2023-21238 Unspecified vulnerability in Google Android
In visitUris of RemoteViews.java, there is a possible leak of images between users due to a confused deputy.
local
low complexity
google
5.5