Vulnerabilities > Google > Android > 12.1

DATE CVE VULNERABILITY TITLE RISK
2023-07-13 CVE-2023-21239 Unspecified vulnerability in Google Android 12.0/12.1/13.0
In visitUris of Notification.java, there is a possible way to leak image data across user boundaries due to a confused deputy.
local
low complexity
google
5.5
2023-07-13 CVE-2023-21240 Resource Exhaustion vulnerability in Google Android
In Policy of Policy.java, there is a possible boot loop due to resource exhaustion.
local
low complexity
google CWE-400
5.5
2023-07-13 CVE-2023-21241 Integer Overflow or Wraparound vulnerability in Google Android
In rw_i93_send_to_upper of rw_i93.cc, there is a possible out of bounds write due to an integer overflow.
local
low complexity
google CWE-190
7.8
2023-07-13 CVE-2023-21243 Classic Buffer Overflow vulnerability in Google Android
In validateForCommonR1andR2 of PasspointConfiguration.java, there is a possible way to inflate the size of a config file with no limits due to a buffer overflow.
local
low complexity
google CWE-120
5.5
2023-07-13 CVE-2023-21246 Improper Check for Unusual or Exceptional Conditions vulnerability in Google Android
In ShortcutInfo of ShortcutInfo.java, there is a possible way for an app to retain notification listening access due to an uncaught exception.
local
low complexity
google CWE-754
3.3
2023-07-13 CVE-2023-21247 Missing Authorization vulnerability in Google Android 12.0/12.1/13.0
In getAvailabilityStatus of BluetoothScanningMainSwitchPreferenceController.java, there is a possible way to bypass a device policy restriction due to a missing permission check.
local
low complexity
google CWE-862
7.8
2023-07-13 CVE-2023-21248 Missing Authorization vulnerability in Google Android 12.0/12.1/13.0
In getAvailabilityStatus of WifiScanningMainSwitchPreferenceController.java, there is a possible way to bypass a device policy restriction due to a missing permission check.
local
low complexity
google CWE-862
7.8
2023-07-13 CVE-2023-21250 Out-of-bounds Write vulnerability in Google Android
In gatt_end_operation of gatt_utils.cc, there is a possible out of bounds write due to a missing bounds check.
network
low complexity
google CWE-787
critical
9.8
2023-07-13 CVE-2023-21262 Race Condition vulnerability in Google Android 12.0/12.1/13.0
In startInput of AudioPolicyInterfaceImpl.cpp, there is a possible way of erroneously displaying the microphone privacy indicator due to a race condition.
network
high complexity
google CWE-362
3.1
2023-06-15 CVE-2023-21095 Race Condition vulnerability in Google Android 12.1/13.0
In canStartSystemGesture of RecentsAnimationDeviceState.java, there is a possible partial lockscreen bypass due to a race condition.
local
high complexity
google CWE-362
4.7