Vulnerabilities > Google > Android > 13.0

DATE CVE VULNERABILITY TITLE RISK
2022-10-11 CVE-2022-20416 Out-of-bounds Write vulnerability in Google Android 12.0/12.1/13.0
In audioTransportsToHal of HidlUtils.cpp, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
7.8
2022-10-11 CVE-2022-20417 Out-of-bounds Write vulnerability in Google Android 12.0/12.1/13.0
In audioTransportsToHal of HidlUtils.cpp, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
7.8
2022-10-11 CVE-2022-20418 Out-of-bounds Read vulnerability in Google Android 12.0/12.1/13.0
In pickStartSeq of AAVCAssembler.cpp, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2022-10-11 CVE-2022-20419 Unspecified vulnerability in Google Android 12.1/13.0
In setOptions of ActivityRecord.java, there is a possible load any arbitrary Java code into launcher process due to a logic error in the code.
local
low complexity
google
7.8
2022-10-11 CVE-2022-20420 Unspecified vulnerability in Google Android 13.0
In getBackgroundRestrictionExemptionReason of AppRestrictionController.java, there is a possible way to bypass device policy restrictions due to a logic error in the code.
local
low complexity
google
7.8
2022-10-11 CVE-2022-20425 Resource Exhaustion vulnerability in Google Android
In addAutomaticZenRule of ZenModeHelper.java, there is a possible permanent degradation of performance due to resource exhaustion.
local
low complexity
google CWE-400
5.5
2022-09-13 CVE-2022-20395 Path Traversal vulnerability in Google Android
In checkAccess of MediaProvider.java, there is a possible file deletion due to a path traversal error.
local
low complexity
google CWE-22
7.8
2022-09-13 CVE-2022-20396 Insufficient Verification of Data Authenticity vulnerability in Google Android 12.1/13.0
In SettingsActivity.java, there is a possible way to make a device discoverable over Bluetooth, without permission or user interaction, due to a permissions bypass.
local
low complexity
google CWE-345
5.5
2022-09-13 CVE-2022-20398 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android 13.0
In addOrUpdateNetwork of WifiServiceImpl.java, there is a possible way for a guest user to configure Wi-Fi due to a permissions bypass.
local
low complexity
google CWE-732
7.8
2022-08-12 CVE-2022-20253 Improper Handling of Exceptional Conditions vulnerability in Google Android 13.0
In Bluetooth, there is a possible cleanup failure due to an uncaught exception.
low complexity
google CWE-755
6.5