Vulnerabilities > Google > Android > 13.0

DATE CVE VULNERABILITY TITLE RISK
2023-12-04 CVE-2023-40080 Out-of-bounds Write vulnerability in Google Android 13.0/14.0
In multiple functions of btm_ble_gap.cc, there is a possible out of bounds write due to a logic error in the code.
local
low complexity
google CWE-787
7.8
2023-12-04 CVE-2023-40081 Unspecified vulnerability in Google Android
In loadMediaDataInBgForResumption of MediaDataManager.kt, there is a possible way to view another user's images due to a confused deputy.
local
low complexity
google
5.5
2023-12-04 CVE-2023-40083 Out-of-bounds Read vulnerability in Google Android
In parse_gap_data of utils.cc, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
5.5
2023-12-04 CVE-2023-40084 Use After Free vulnerability in Google Android
In run of MDnsSdListener.cpp, there is a possible memory corruption due to a use after free.
local
low complexity
google CWE-416
7.8
2023-12-04 CVE-2023-40087 Out-of-bounds Write vulnerability in Google Android
In transcodeQ*ToFloat of btif_avrcp_audio_track.cc, there is a possible out of bounds write due to a missing bounds check.
low complexity
google CWE-787
8.8
2023-12-04 CVE-2023-40088 Use After Free vulnerability in Google Android
In callback_thread_event of com_android_bluetooth_btservice_AdapterService.cpp, there is a possible memory corruption due to a use after free.
low complexity
google CWE-416
8.8
2023-12-04 CVE-2023-40090 Information Exposure Through Discrepancy vulnerability in Google Android
In BTM_BleVerifySignature of btm_ble.cc, there is a possible way to bypass signature validation due to side channel information disclosure.
network
low complexity
google CWE-203
6.5
2023-12-04 CVE-2023-40091 Out-of-bounds Write vulnerability in Google Android
In onTransact of IncidentService.cpp, there is a possible out of bounds write due to memory corruption.
local
low complexity
google CWE-787
7.8
2023-12-04 CVE-2023-40092 Unspecified vulnerability in Google Android
In verifyShortcutInfoPackage of ShortcutService.java, there is a possible way to see another user's image due to a confused deputy.
local
low complexity
google
5.5
2023-12-04 CVE-2023-40094 Missing Authorization vulnerability in Google Android
In keyguardGoingAway of ActivityTaskManagerService.java, there is a possible lock screen bypass due to a missing permission check.
local
low complexity
google CWE-862
7.8