Vulnerabilities > Google > Android > 12.1

DATE CVE VULNERABILITY TITLE RISK
2022-11-08 CVE-2022-20445 Improper Validation of Specified Quantity in Input vulnerability in Google Android
In process_service_search_rsp of sdp_discovery.cc, there is a possible out of bounds read due to improper input validation.
network
low complexity
google CWE-1284
7.5
2022-11-08 CVE-2022-20448 Unspecified vulnerability in Google Android
In buzzBeepBlinkLocked of NotificationManagerService.java, there is a possible way to share data across users due to a permissions bypass.
local
low complexity
google
5.5
2022-11-08 CVE-2022-20450 Missing Authorization vulnerability in Google Android
In restorePermissionState of PermissionManagerServiceImpl.java, there is a possible way to bypass user consent due to a missing permission check.
local
low complexity
google CWE-862
7.8
2022-11-08 CVE-2022-20451 Missing Authorization vulnerability in Google Android
In onCallRedirectionComplete of CallsManager.java, there is a possible permissions bypass due to a missing permission check.
local
low complexity
google CWE-862
7.8
2022-11-08 CVE-2022-20453 Path Traversal vulnerability in Google Android
In update of MmsProvider.java, there is a possible constriction of directory permissions due to a path traversal error.
local
low complexity
google CWE-22
5.5
2022-11-08 CVE-2022-20454 Integer Overflow or Wraparound vulnerability in Google Android
In fdt_next_tag of fdt.c, there is a possible out of bounds write due to an integer overflow.
local
low complexity
google CWE-190
6.7
2022-11-08 CVE-2022-20462 Out-of-bounds Write vulnerability in Google Android
In phNxpNciHal_write_unlocked of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2022-11-08 CVE-2022-20465 Unspecified vulnerability in Google Android
In dismiss and related functions of KeyguardHostViewController.java and related files, there is a possible lockscreen bypass due to a logic error in the code.
low complexity
google
4.6
2022-10-11 CVE-2022-20351 SQL Injection vulnerability in Google Android
In queryInternal of CallLogProvider.java, there is a possible access to voicemail information due to SQL injection.
local
low complexity
google CWE-89
5.5
2022-10-11 CVE-2022-20394 Missing Authorization vulnerability in Google Android
In getInputMethodWindowVisibleHeight of InputMethodManagerService.java, there is a possible way to determine when another app is showing an IME due to a missing permission check.
local
low complexity
google CWE-862
5.0