Vulnerabilities > Google > Android > 12.1

DATE CVE VULNERABILITY TITLE RISK
2022-12-13 CVE-2022-20483 Integer Underflow (Wrap or Wraparound) vulnerability in Google Android
In several functions that parse avrc response in avrc_pars_ct.cc and related files, there are possible out of bounds reads due to integer overflows.
network
low complexity
google CWE-191
7.5
2022-12-13 CVE-2022-20484 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-770
7.8
2022-12-13 CVE-2022-20485 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-770
7.8
2022-12-13 CVE-2022-20486 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-770
7.8
2022-12-13 CVE-2022-20487 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-770
7.8
2022-12-13 CVE-2022-20488 Improper Validation of Specified Quantity in Input vulnerability in Google Android
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-1284
7.8
2022-12-13 CVE-2022-20491 Improper Validation of Specified Quantity in Input vulnerability in Google Android
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion.
local
low complexity
google CWE-1284
7.8
2022-12-13 CVE-2022-20495 Unspecified vulnerability in Google Android
In getEnabledAccessibilityServiceList of AccessibilityManager.java, there is a possible way to hide an accessibility service due to a logic error in the code.
local
low complexity
google
7.8
2022-12-13 CVE-2022-20496 Use After Free vulnerability in Google Android 12.0/12.1/13.0
In setDataSource of initMediaExtractor.cpp, there is a possibility of arbitrary code execution due to a use after free.
local
low complexity
google CWE-416
5.5
2022-12-13 CVE-2022-20497 Unspecified vulnerability in Google Android 12.0/12.1/13.0
In updatePublicMode of NotificationLockscreenUserManagerImpl.java, there is a possible way to reveal sensitive notifications on the lockscreen due to an incorrect state transition.
low complexity
google
4.6