Vulnerabilities > Google > Android > 8.1

DATE CVE VULNERABILITY TITLE RISK
2024-11-19 CVE-2018-9339 Type Confusion vulnerability in Google Android 8.0/8.1
In writeTypedArrayList and readTypedArrayList of Parcel.java, there is a possible escalation of privilege due to type confusion.
local
low complexity
google CWE-843
7.8
2024-11-19 CVE-2018-9340 Out-of-bounds Read vulnerability in Google Android
In ResStringPool::setTo of ResourceTypes.cpp, it's possible for an attacker to control the value of mStringPoolSize to be out of bounds, causing information disclosure.
local
low complexity
google CWE-125
5.5
2024-11-19 CVE-2018-9341 Out-of-bounds Write vulnerability in Google Android
In impeg2d_mc_fullx_fully of impeg2d_mc.c there is a possible out of bound write due to missing bounds check.
local
low complexity
google CWE-787
7.8
2024-11-19 CVE-2018-9344 Improper Locking vulnerability in Google Android 8.1
In several functions of DescramblerImpl.cpp, there is a possible use after free due to improper locking.
local
low complexity
google CWE-667
7.8
2024-11-19 CVE-2018-9345 Use of Uninitialized Resource vulnerability in Google Android
In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information disclosure due to uninitialized data.
local
low complexity
google CWE-908
5.5
2024-11-19 CVE-2018-9346 Use of Uninitialized Resource vulnerability in Google Android
In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information disclosure due to uninitialized data.
local
low complexity
google CWE-908
5.5
2024-11-19 CVE-2017-13315 Incorrect Calculation of Buffer Size vulnerability in Google Android
In writeToParcel and createFromParcel of DcParamObject.java, there is a permission bypass due to a write size mismatch.
local
low complexity
google CWE-131
7.8
2024-11-19 CVE-2018-9338 Out-of-bounds Write vulnerability in Google Android
In ResStringPool::setTo of ResourceTypes.cpp, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2024-11-15 CVE-2017-13310 Incorrect Default Permissions vulnerability in Google Android
In createFromParcel of ViewPager.java, there is a possible read/write serialization issue leading to a permissions bypass.
local
low complexity
google CWE-276
7.8
2024-11-15 CVE-2017-13311 Unspecified vulnerability in Google Android
In the read() function of ProcessStats.java, there is a possible read/write serialization issue leading to a permissions bypass.
local
low complexity
google
6.7