Vulnerabilities > Google > Android > Critical

DATE CVE VULNERABILITY TITLE RISK
2018-08-17 CVE-2018-14981 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android
Certain LG devices based on Android 6.0 through 8.1 have incorrect access control for SystemUI application intents.
network
low complexity
google CWE-732
critical
9.8
2018-08-17 CVE-2018-14982 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android
Certain LG devices based on Android 6.0 through 8.1 have incorrect access control in the GNSS application.
network
low complexity
google CWE-732
critical
9.8
2018-08-17 CVE-2018-15482 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android
Certain LG devices based on Android 6.0 through 8.1 have incorrect access control for MLT application intents.
network
low complexity
google CWE-732
critical
9.8
2018-07-15 CVE-2018-14066 SQL Injection vulnerability in Google Android 6.0/7.0
The content://wappush content provider in com.android.provider.telephony, as found in some custom ROMs for Android phones, allows SQL injection.
network
low complexity
google CWE-89
critical
9.8
2018-07-06 CVE-2018-3586 Integer Overflow or Wraparound vulnerability in Google Android
An integer overflow to buffer overflow vulnerability exists in the ADSPRPC heap manager in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.
network
low complexity
google CWE-190
critical
9.8
2018-07-06 CVE-2018-5855 Out-of-bounds Read vulnerability in Google Android
While padding or shrinking a nested wmi packet in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, a buffer over-read can potentially occur.
network
low complexity
google CWE-125
critical
9.8
2018-04-04 CVE-2014-9953 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in Qualcomm closed source components.
network
low complexity
google CWE-264
critical
9.8
2018-04-04 CVE-2014-9954 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in Qualcomm closed source components.
network
low complexity
google CWE-264
critical
9.8
2018-04-04 CVE-2014-9955 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in Qualcomm closed source components.
network
low complexity
google CWE-264
critical
9.8
2018-04-04 CVE-2014-9956 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in Qualcomm closed source components.
network
low complexity
google CWE-264
critical
9.8