Vulnerabilities > Google > Android > 12.1

DATE CVE VULNERABILITY TITLE RISK
2022-12-13 CVE-2022-20471 Out-of-bounds Read vulnerability in Google Android
In SendIncDecRestoreCmdPart2 of NxpMfcReader.cc, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
5.5
2022-12-13 CVE-2022-20472 Out-of-bounds Read vulnerability in Google Android
In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check.
network
low complexity
google CWE-125
critical
9.8
2022-12-13 CVE-2022-20473 Out-of-bounds Read vulnerability in Google Android
In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check.
network
low complexity
google CWE-125
critical
9.8
2022-12-13 CVE-2022-20474 Unspecified vulnerability in Google Android
In readLazyValue of Parcel.java, there is a possible loading of arbitrary code into the System Settings app due to a confused deputy.
local
low complexity
google
7.8
2022-12-13 CVE-2022-20475 Unspecified vulnerability in Google Android
In test of ResetTargetTaskHelper.java, there is a possible hijacking of any app which sets allowTaskReparenting="true" due to a confused deputy.
local
low complexity
google
7.8
2022-12-13 CVE-2022-20476 Infinite Loop vulnerability in Google Android
In setEnabledSetting of PackageManager.java, there is a possible way to get the device into an infinite reboot loop due to resource exhaustion.
local
low complexity
google CWE-835
5.5
2022-12-13 CVE-2022-20478 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-770
7.8
2022-12-13 CVE-2022-20479 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-770
7.8
2022-12-13 CVE-2022-20480 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-770
7.8
2022-12-13 CVE-2022-20482 Resource Exhaustion vulnerability in Google Android 12.0/12.1/13.0
In createNotificationChannel of NotificationManager.java, there is a possible way to make the device unusable and require factory reset due to resource exhaustion.
local
low complexity
google CWE-400
5.5