Vulnerabilities > Google > Android

DATE CVE VULNERABILITY TITLE RISK
2023-04-19 CVE-2021-0884 Integer Overflow or Wraparound vulnerability in Google Android
In PVRSRVBridgePhysmemImportSparseDmaBuf of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access.
local
low complexity
google CWE-190
7.8
2023-04-19 CVE-2021-0885 Integer Overflow or Wraparound vulnerability in Google Android
In PVRSRVBridgeSyncPrimOpTake of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access.
local
low complexity
google CWE-190
7.8
2023-04-19 CVE-2023-20909 Unspecified vulnerability in Google Android
In multiple functions of RunningTasks.java, there is a possible privilege escalation due to a missing privilege check.
local
low complexity
google
5.5
2023-04-19 CVE-2023-20935 Out-of-bounds Read vulnerability in Google Android
In deserialize of multiple files, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
5.5
2023-04-19 CVE-2023-20941 Out-of-bounds Write vulnerability in Google Android
In acc_ctrlrequest_composite of f_accessory.c, there is a possible out of bounds write due to a missing bounds check.
low complexity
google CWE-787
6.6
2023-04-19 CVE-2023-20950 Incorrect Authorization vulnerability in Google Android 11.0/12.0/12.1
In AlarmManagerActivity of AlarmManagerActivity.java, there is a possible way to bypass background activity launch restrictions via a pendingIntent.
local
low complexity
google CWE-863
7.8
2023-04-19 CVE-2023-20967 Out-of-bounds Write vulnerability in Google Android
In avdt_scb_hdl_pkt_no_frag of avdt_scb_act.cc, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
7.8
2023-04-19 CVE-2023-21080 Out-of-bounds Read vulnerability in Google Android
In register_notification_rsp of btif_rc.cc, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
5.5
2023-04-19 CVE-2023-21081 Unspecified vulnerability in Google Android
In multiple functions of PackageInstallerService.java and related files, there is a possible way to bypass background activity launch restrictions due to a logic error in the code.
local
low complexity
google
7.8
2023-04-19 CVE-2023-21082 Unspecified vulnerability in Google Android
In getNumberFromCallIntent of NewOutgoingCallIntentBroadcaster.java, there is a possible way to enumerate other user's contact phone number due to a confused deputy.
local
low complexity
google
5.5