Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2021-09-27 CVE-2021-23243 Unspecified vulnerability in Google Android 11.0
In Oppo's battery application, the third-party SDK provides the function of loading a third-party Provider, which can be used.
local
low complexity
google
7.8
2021-09-27 CVE-2021-0610 Integer Overflow or Wraparound vulnerability in Google Android 10.0/11.0
In memory management driver, there is a possible memory corruption due to an integer overflow.
local
low complexity
google CWE-190
7.8
2021-09-27 CVE-2021-0611 Use After Free vulnerability in Google Android 10.0/11.0
In m4u, there is a possible memory corruption due to a use after free.
local
low complexity
google CWE-416
7.8
2021-09-27 CVE-2021-0612 Use After Free vulnerability in Google Android 10.0/11.0
In m4u, there is a possible memory corruption due to a use after free.
local
low complexity
google CWE-416
7.8
2021-09-09 CVE-2021-25461 Out-of-bounds Write vulnerability in Google Android 8.1
An improper length check in APAService prior to SMR Sep-2021 Release 1 results in stack based Buffer Overflow.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0519 Out-of-bounds Write vulnerability in Google Android
In BITSTREAM_FLUSH of ih264e_bitstream.h, there is a possible out of bounds write due to a heap buffer overflow.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0573 Out-of-bounds Write vulnerability in Google Android
In asf extractor, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0574 Out-of-bounds Write vulnerability in Google Android
In asf extractor, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0576 Out-of-bounds Write vulnerability in Google Android
In flv extractor, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0591 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android
In sendReplyIntentToReceiver of BluetoothPermissionActivity.java, there is a possible way to invoke privileged broadcast receivers due to a confused deputy.
local
low complexity
google CWE-610
7.3