Vulnerabilities > Google > Android > 12.1

DATE CVE VULNERABILITY TITLE RISK
2022-03-30 CVE-2021-39761 Information Exposure Through Discrepancy vulnerability in Google Android 12.1
In Media, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
2.1
2022-03-30 CVE-2021-39762 Integer Overflow or Wraparound vulnerability in Google Android 12.1
In tremolo, there is a possible out of bounds read due to an integer overflow.
network
low complexity
google CWE-190
7.5
2022-03-30 CVE-2021-39763 Improper Input Validation vulnerability in Google Android 12.1
In Settings, there is a possible way to make the user enable WiFi due to improper input validation.
local
low complexity
google CWE-20
4.6
2022-03-30 CVE-2021-39764 Improper Input Validation vulnerability in Google Android 12.1
In Settings, there is a possible way to display an incorrect app name due to improper input validation.
network
google CWE-20
6.8
2022-03-30 CVE-2021-39765 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android 12.1
In Gallery, there is a possible permission bypass due to a confused deputy.
local
low complexity
google CWE-610
2.1
2022-03-30 CVE-2021-39766 Information Exposure Through Discrepancy vulnerability in Google Android 12.1
In Settings, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
2.1
2022-03-30 CVE-2021-39767 Insecure Default Initialization of Resource vulnerability in Google Android 12.1
In miniadb, there is a possible way to get read/write access to recovery system properties due to an insecure default value.
local
low complexity
google CWE-1188
4.6
2022-03-30 CVE-2021-39768 Missing Authorization vulnerability in Google Android 12.1
In Settings, there is a possible way to add an auto-connect WiFi network without the user's consent due to a missing permission check.
local
google CWE-862
4.4
2022-03-30 CVE-2021-39769 Incorrect Default Permissions vulnerability in Google Android 12.1
In Device Policy, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check.
local
low complexity
google CWE-276
2.1
2022-03-30 CVE-2021-39770 Incorrect Default Permissions vulnerability in Google Android 12.1
In Framework, there is a possible disclosure of the device owner package due to a missing permission check.
local
low complexity
google CWE-276
2.1