Vulnerabilities > Google > Android

DATE CVE VULNERABILITY TITLE RISK
2023-12-04 CVE-2023-21401 Unspecified vulnerability in Google Android
In DevmemIntChangeSparse of devicemem_server.c, there is a possible out of bounds write due to an integer overflow.
network
low complexity
google
critical
9.8
2023-12-04 CVE-2023-21402 Unspecified vulnerability in Google Android
In MMU_UnmapPages of mmu_common.c, there is a possible out of bounds read due to improper input validation.
network
low complexity
google
critical
9.8
2023-12-04 CVE-2023-21403 Unspecified vulnerability in Google Android
In RGXDestroyZSBufferKM of rgxta3d.c, there is a possible arbitrary code execution due to an uncaught exception.
network
low complexity
google
critical
9.8
2023-12-04 CVE-2023-35668 Unspecified vulnerability in Google Android
In visitUris of Notification.java, there is a possible way to display images from another user due to a confused deputy.
local
low complexity
google
5.5
2023-12-04 CVE-2023-35690 Unspecified vulnerability in Google Android
In RGXDestroyHWRTData of rgxta3d.c, there is a possible arbitrary code execution due to an uncaught exception.
network
low complexity
google
critical
9.8
2023-12-04 CVE-2023-40073 Unspecified vulnerability in Google Android
In visitUris of Notification.java, there is a possible cross-user media read due to Confused Deputy.
local
low complexity
google
5.5
2023-12-04 CVE-2023-40074 Unspecified vulnerability in Google Android
In saveToXml of PersistableBundle.java, invalid data could lead to local persistent denial of service with no additional execution privileges needed.
local
low complexity
google
5.5
2023-12-04 CVE-2023-40075 Unspecified vulnerability in Google Android
In forceReplaceShortcutInner of ShortcutPackage.java, there is a possible way to register unlimited packages due to a missing bounds check.
local
low complexity
google
5.5
2023-12-04 CVE-2023-40076 Unspecified vulnerability in Google Android 14.0
In createPendingIntent of CredentialManagerUi.java, there is a possible way to access credentials from other users due to a permissions bypass.
local
low complexity
google
5.5
2023-12-04 CVE-2023-40077 Race Condition vulnerability in Google Android
In multiple functions of MetaDataBase.cpp, there is a possible UAF write due to a race condition.
network
high complexity
google CWE-362
8.1