Vulnerabilities > Google > Android

DATE CVE VULNERABILITY TITLE RISK
2023-04-19 CVE-2023-21083 Unspecified vulnerability in Google Android
In onNullBinding of CallScreeningServiceHelper.java, there is a possible way to record audio without showing a privacy indicator due to a permissions bypass.
local
low complexity
google
7.8
2023-04-19 CVE-2023-21084 Unspecified vulnerability in Google Android 13.0
In buildPropFile of filesystem.go, there is a possible insecure hash due to an improperly used crypto.
local
low complexity
google
6.7
2023-04-19 CVE-2023-21085 Out-of-bounds Write vulnerability in Google Android
In nci_snd_set_routing_cmd of nci_hmsgs.cc, there is a possible out of bounds write due to a missing bounds check.
low complexity
google CWE-787
8.8
2023-04-19 CVE-2023-21086 Unspecified vulnerability in Google Android
In isToggleable of SecureNfcEnabler.java and SecureNfcPreferenceController.java, there is a possible way to enable NFC from a secondary account due to a permissions bypass.
local
low complexity
google
7.8
2023-04-19 CVE-2023-21087 Unspecified vulnerability in Google Android
In PreferencesHelper.java, an uncaught exception may cause the device to get stuck in a boot loop.
local
low complexity
google
5.5
2023-04-19 CVE-2023-21088 Unspecified vulnerability in Google Android 12.0/12.1/13.0
In deliverOnFlushComplete of LocationProviderManager.java, there is a possible way to bypass background activity launch restrictions due to a logic error in the code.
local
low complexity
google
7.8
2023-04-19 CVE-2023-21089 Unspecified vulnerability in Google Android
In startInstrumentation of ActivityManagerService.java, there is a possible way to keep the foreground service alive while the app is in the background.
local
low complexity
google
7.8
2023-04-19 CVE-2023-21090 Resource Exhaustion vulnerability in Google Android 13.0
In parseUsesPermission of ParsingPackageUtils.java, there is a possible boot loop due to resource exhaustion.
local
low complexity
google CWE-400
5.0
2023-04-19 CVE-2023-21091 Missing Authorization vulnerability in Google Android 13.0
In canDisplayLocalUi of AppLocalePickerActivity.java, there is a possible way to change system app locales due to a missing permission check.
local
low complexity
google CWE-862
5.5
2023-04-19 CVE-2023-21092 Unspecified vulnerability in Google Android
In retrieveServiceLocked of ActiveServices.java, there is a possible way to dynamically register a BroadcastReceiver using permissions of System App due to improper input validation.
local
low complexity
google
7.8