Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2023-10-30 CVE-2023-21351 Unspecified vulnerability in Google Android 14.0
In multiple locations, there is a possible background activity launch due to a logic error in the code.
local
low complexity
google
7.8
2023-10-30 CVE-2023-21353 Out-of-bounds Read vulnerability in Google Android 14.0
In NFA, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2023-10-30 CVE-2023-21355 Use After Free vulnerability in Google Android 14.0
In libaudioclient, there is a possible out of bounds write due to a use after free.
local
low complexity
google CWE-416
7.8
2023-10-30 CVE-2023-21356 Out-of-bounds Write vulnerability in Google Android 14.0
In Bluetooth, there is a possible out of bounds write due to a missing bounds check.
low complexity
google CWE-787
8.8
2023-10-30 CVE-2023-21358 Unspecified vulnerability in Google Android 14.0
In UWB Google, there is a possible way for a malicious app to masquerade as system app com.android.uwb.resources due to improperly used crypto.
local
low complexity
google
7.8
2023-10-30 CVE-2023-21361 Use After Free vulnerability in Google Android 14.0
In Bluetooth, there is a possibility of code-execution due to a use after free.
low complexity
google CWE-416
8.8
2023-10-27 CVE-2023-40116 Unspecified vulnerability in Google Android 11.0/12.0/12.1
In onTaskAppeared of PipTaskOrganizer.java, there is a possible way to bypass background activity launch restrictions due to a logic error in the code.
local
low complexity
google
7.8
2023-10-27 CVE-2023-40117 Unspecified vulnerability in Google Android
In resetSettingsLocked of SettingsProvider.java, there is a possible lockscreen bypass due to a permissions bypass.
local
low complexity
google
7.8
2023-10-27 CVE-2023-40120 Unspecified vulnerability in Google Android
In multiple locations, there is a possible way to bypass user notification of foreground services due to improper input validation.
local
low complexity
google
7.8
2023-10-27 CVE-2023-40125 Unspecified vulnerability in Google Android
In onCreate of ApnEditor.java, there is a possible way for a Guest user to change the APN due to a permission bypass.
local
low complexity
google
7.8