Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2021-09-09 CVE-2021-25461 Out-of-bounds Write vulnerability in Google Android 8.1
An improper length check in APAService prior to SMR Sep-2021 Release 1 results in stack based Buffer Overflow.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0519 Out-of-bounds Write vulnerability in Google Android
In BITSTREAM_FLUSH of ih264e_bitstream.h, there is a possible out of bounds write due to a heap buffer overflow.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0573 Out-of-bounds Write vulnerability in Google Android
In asf extractor, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0574 Out-of-bounds Write vulnerability in Google Android
In asf extractor, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0576 Out-of-bounds Write vulnerability in Google Android
In flv extractor, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0591 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android
In sendReplyIntentToReceiver of BluetoothPermissionActivity.java, there is a possible way to invoke privileged broadcast receivers due to a confused deputy.
local
low complexity
google CWE-610
7.3
2021-08-17 CVE-2021-0593 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android
In sendDevicePickedIntent of DevicePickerFragment.java, there is a possible way to invoke a privileged broadcast receiver due to a confused deputy.
local
low complexity
google CWE-610
7.8
2021-08-17 CVE-2021-0640 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/9.0
In noteAtomLogged of StatsdStats.cpp, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0645 Incorrect Authorization vulnerability in Google Android 11.0
In shouldBlockFromTree of ExternalStorageProvider.java, there is a possible permissions bypass.
local
low complexity
google CWE-863
7.8
2021-08-17 CVE-2021-0646 Out-of-bounds Write vulnerability in Google Android
In sqlite3_str_vappendf of sqlite3.c, there is a possible out of bounds write due to improper input validation.
local
low complexity
google CWE-787
7.8