Vulnerabilities > Google > Android > 12.1

DATE CVE VULNERABILITY TITLE RISK
2022-06-15 CVE-2022-20204 Missing Authorization vulnerability in Google Android 12.1
In registerRemoteBugreportReceivers of DevicePolicyManagerService.java, there is a possible reporting of falsified bug reports due to a missing permission check.
local
low complexity
google CWE-862
7.8
2022-06-15 CVE-2022-20205 Improper Input Validation vulnerability in Google Android 12.1
In isFileUri of FileUtil.java, there is a possible way to bypass the check for a file:// scheme due to improper input validation.
local
low complexity
google CWE-20
5.5
2022-06-15 CVE-2022-20206 Missing Authorization vulnerability in Google Android 12.1
In setPackageOrComponentEnabled of NotificationManagerService.java, there is a missing permission check.
local
low complexity
google CWE-862
5.5
2022-06-15 CVE-2022-20207 Unspecified vulnerability in Google Android 12.1
In static definitions of GattServiceConfig.java, there is a possible permission bypass due to an insecure default value.
local
low complexity
google
7.8
2022-06-15 CVE-2022-20208 Out-of-bounds Read vulnerability in Google Android 12.1
In parseRecursively of cppbor_parse.cpp, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
4.4
2022-06-15 CVE-2022-20209 Out-of-bounds Write vulnerability in Google Android 12.1
In hme_add_new_node_to_a_sorted_array of hme_utils.c, there is a possible out of bounds read due to a heap buffer overflow.
network
low complexity
google CWE-787
7.5
2022-06-15 CVE-2022-20123 Out-of-bounds Read vulnerability in Google Android
In phNciNfc_RecvMfResp of phNxpExtns_MifareStd.cpp, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2022-06-15 CVE-2022-20124 Unspecified vulnerability in Google Android
In deletePackageX of DeletePackageHelper.java, there is a possible way for a Guest user to reset pre-loaded applications for other users due to a permissions bypass.
local
low complexity
google
7.8
2022-06-15 CVE-2022-20125 Unspecified vulnerability in Google Android
In GBoard, there is a possible way to bypass factory reset protections due to a sandbox escape.
low complexity
google
6.8
2022-06-15 CVE-2022-20126 Missing Authorization vulnerability in Google Android
In setScanMode of AdapterService.java, there is a possible way to enable Bluetooth discovery mode without user interaction due to a missing permission check.
local
low complexity
google CWE-862
7.3