Vulnerabilities > Google > Android

DATE CVE VULNERABILITY TITLE RISK
2024-12-02 CVE-2018-9430 Out-of-bounds Write vulnerability in Google Android
In prop2cfg of btif_storage.cc, there is a possible out of bounds write due to an incorrect bounds check.
network
low complexity
google CWE-787
critical
9.8
2024-12-02 CVE-2018-9431 Unspecified vulnerability in Google Android 8.0/8.1
In OSUInfo of OSUInfo.java, there is a possible escalation of privilege due to improper input validation.
local
low complexity
google
7.8
2024-12-02 CVE-2018-9435 Out-of-bounds Read vulnerability in Google Android
In gatt_process_error_rsp of gatt_cl.cc, there is a possible out of bound read due to a missing bounds check.
local
low complexity
google CWE-125
5.5
2024-12-02 CVE-2018-9376 Out-of-bounds Write vulnerability in Google Android
In rpc_msg_handler and related handlers of drivers/misc/mediatek/eccci/port_rpc.c, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
6.7
2024-12-02 CVE-2018-9413 Out-of-bounds Write vulnerability in Google Android
In handle_notification_response of btif_rc.cc, there is a possible out of bounds write due to a missing bounds check.
network
low complexity
google CWE-787
8.8
2024-12-02 CVE-2018-9414 Out-of-bounds Write vulnerability in Google Android
In gattServerSendResponseNative of com_android_bluetooth_gatt.cpp, there is a possible out of bounds stack write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2024-12-02 CVE-2018-9380 Out-of-bounds Write vulnerability in Google Android
In l2c_lcc_proc_pdu of l2c_fcr.cc, there is a possible out of bounds write due to improper input validation.
network
low complexity
google CWE-787
8.8
2024-12-02 CVE-2018-9381 Use of Uninitialized Resource vulnerability in Google Android 8.1
In gatts_process_read_by_type_req of gatt_sr.c, there is a possible information disclosure due to uninitialized data.
network
low complexity
google CWE-908
7.5
2024-11-28 CVE-2018-9377 Use of Uninitialized Resource vulnerability in Google Android 6.0/6.0.1
In getIntentForIntentSender of ActivityManagerService.java, there is a possible way to access user metadata due to a pending intent.
local
low complexity
google CWE-908
5.5
2024-11-28 CVE-2018-9374 Unspecified vulnerability in Google Android
In installPackageLI of PackageManagerService.java, there is a possible permissions bypass.
local
low complexity
google
7.8