Vulnerabilities > Google > Android

DATE CVE VULNERABILITY TITLE RISK
2023-03-24 CVE-2023-21020 Use After Free vulnerability in Google Android 13.0
In registerSignalHandlers of main.c, there is a possible local arbitrary code execution due to a use after free.
local
low complexity
google CWE-416
6.7
2023-03-24 CVE-2023-21021 Missing Authorization vulnerability in Google Android 13.0
In isTargetSdkLessThanQOrPrivileged of WifiServiceImpl.java, there is a possible way for the guest user to change admin user network settings due to a missing permission check.
local
low complexity
google CWE-862
7.8
2023-03-24 CVE-2023-21022 Out-of-bounds Write vulnerability in Google Android 13.0
In BufferBlock of Suballocation.cpp, there is a possible out of bounds write due to memory corruption.
local
low complexity
google CWE-787
7.8
2023-03-24 CVE-2023-21024 Unspecified vulnerability in Google Android 13.0
In maybeFinish of FallbackHome.java, there is a possible delay of lockdown screen due to logic error.
local
low complexity
google
7.8
2023-03-24 CVE-2023-21025 Out-of-bounds Read vulnerability in Google Android 13.0
In ufdt_local_fixup_prop of ufdt_overlay.c, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
4.4
2023-03-24 CVE-2023-21026 Unspecified vulnerability in Google Android 13.0
In updateInputChannel of WindowManagerService.java, there is a possible way to set a touchable region beyond its own SurfaceControl due to a logic error in the code.
local
low complexity
google
5.5
2023-03-24 CVE-2023-21027 Unspecified vulnerability in Google Android 13.0
In multiple functions of PasspointXmlUtils.java, there is a possible authentication misconfiguration due to a logic error in the code.
network
low complexity
google
7.5
2023-03-24 CVE-2023-21028 Out-of-bounds Read vulnerability in Google Android 13.0
In parse_printerAttributes of ipphelper.c, there is a possible out of bounds read due to a string without a null-terminator.
network
low complexity
google CWE-125
7.5
2023-03-24 CVE-2023-21029 Missing Authorization vulnerability in Google Android 13.0
In register of UidObserverController.java, there is a missing permission check.
local
low complexity
google CWE-862
5.5
2023-03-24 CVE-2023-21030 Double Free vulnerability in Google Android 13.0
In Confirmation of keystore_cli_v2.cpp, there is a possible way to corrupt memory due to a double free.
local
low complexity
google CWE-415
7.8