Vulnerabilities > Google > Android

DATE CVE VULNERABILITY TITLE RISK
2023-08-14 CVE-2023-21265 Improper Certificate Validation vulnerability in Google Android
In multiple locations, there are root CA certificates which need to be disabled.
network
low complexity
google CWE-295
7.5
2023-08-14 CVE-2023-21267 Unspecified vulnerability in Google Android
In multiple functions of KeyguardViewMediator.java, there is a possible way to bypass lockdown mode with screen pinning due to a logic error in the code.
local
low complexity
google
5.5
2023-08-14 CVE-2023-21268 Path Traversal vulnerability in Google Android
In update of MmsProvider.java, there is a possible way to change directory permissions due to a path traversal error.
local
low complexity
google CWE-22
5.5
2023-08-14 CVE-2023-21269 Improper Privilege Management vulnerability in Google Android 13.0
In startActivityInner of ActivityStarter.java, there is a possible way to launch an activity into PiP mode from the background due to BAL bypass.
local
low complexity
google CWE-269
7.8
2023-08-07 CVE-2023-20780 Unspecified vulnerability in Google Android 11.0/12.0/13.0
In keyinstall, there is a possible information disclosure due to a missing bounds check.
local
low complexity
google
4.4
2023-08-07 CVE-2023-20781 Out-of-bounds Write vulnerability in Google Android 12.0/13.0
In keyinstall, there is a possible memory corruption due to a missing bounds check.
local
low complexity
google CWE-787
4.4
2023-08-07 CVE-2023-20782 Unspecified vulnerability in Google Android 12.0/13.0
In keyinstall, there is a possible information disclosure due to a missing bounds check.
local
low complexity
google
4.4
2023-08-07 CVE-2023-20783 Out-of-bounds Write vulnerability in Google Android 11.0/12.0/13.0
In keyinstall, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2023-08-07 CVE-2023-20784 Out-of-bounds Write vulnerability in Google Android 11.0/12.0/13.0
In keyinstall, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2023-08-07 CVE-2023-20785 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Google Android 12.0/13.0
In audio, there is a possible out of bounds write due to a missing bounds check.
local
high complexity
google CWE-367
6.4