Vulnerabilities > Google > Android > 13.0

DATE CVE VULNERABILITY TITLE RISK
2022-08-12 CVE-2022-20255 Missing Authorization vulnerability in Google Android 13.0
In SettingsProvider, there is a possible way to read or change the default ringtone due to a missing permission check.
local
low complexity
google CWE-862
4.4
2022-08-12 CVE-2022-20256 Race Condition vulnerability in Google Android 13.0
In the Audio HAL, there is a possible out of bounds write due to a race condition.
local
high complexity
google CWE-362
6.4
2022-08-12 CVE-2022-20259 Missing Authorization vulnerability in Google Android 13.0
In Telephony, there is a possible leak of ICCID and EID due to a missing permission check.
local
low complexity
google CWE-862
5.5
2022-08-12 CVE-2022-20260 Unspecified vulnerability in Google Android 13.0
In the Phone app, there is a possible crash loop due to resource exhaustion.
local
low complexity
google
5.5
2022-08-12 CVE-2022-20261 Missing Authorization vulnerability in Google Android 13.0
In LocationManager, there is a possible way to get location information due to a missing permission check.
local
low complexity
google CWE-862
2.3
2022-08-12 CVE-2022-20262 Missing Authorization vulnerability in Google Android 13.0
In ActivityManager, there is a possible way to check another process's capabilities due to a missing permission check.
local
low complexity
google CWE-862
3.3
2022-08-12 CVE-2022-20263 Missing Authorization vulnerability in Google Android 13.0
In ActivityManager, there is a way to read process state for other users due to a missing permission check.
local
low complexity
google CWE-862
5.5
2022-08-12 CVE-2022-20265 Unspecified vulnerability in Google Android 13.0
In Settings, there is a possible way to bypass factory reset permissions due to a permissions bypass.
low complexity
google
4.6
2022-08-12 CVE-2022-20267 Missing Authorization vulnerability in Google Android 13.0
In bluetooth, there is a possible way to enable or disable bluetooth connection without user consent due to a missing permission check.
local
low complexity
google CWE-862
3.3
2022-08-12 CVE-2022-20268 Unspecified vulnerability in Google Android 13.0
In RestrictionsManager, there is a possible way to send a broadcast that should be restricted to system apps due to a permissions bypass.
local
low complexity
google
7.8