Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2020-06-11 CVE-2020-0168 Out-of-bounds Write vulnerability in Google Android 10.0
In impeg2_fmt_conv_yuv420p_to_yuv420sp_uv of impeg2_format_conv.c, there is a possible out of bounds write due to a missing bounds check.
network
low complexity
google CWE-787
8.8
2020-06-11 CVE-2020-0166 Improper Input Validation vulnerability in Google Android 10.0
In multiple functions of URI.java, there is a possible escalation of privilege due to missing validation in the parceling of URI information.
local
low complexity
google CWE-20
7.8
2020-06-11 CVE-2020-0160 Allocation of Resources Without Limits or Throttling vulnerability in Google Android 10.0
In setSyncSampleParams of SampleTable.cpp, there is possible resource exhaustion due to a missing bounds check.
network
low complexity
google CWE-770
8.8
2020-06-11 CVE-2020-0155 Out-of-bounds Write vulnerability in Google Android 10.0
In phNxpNciHal_send_ese_hal_cmd of phNxpNciHal_ext.cc, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2020-06-11 CVE-2020-0150 Out-of-bounds Write vulnerability in Google Android 10.0
In rw_t3t_message_set_block_list of rw_t3t.cc, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2020-06-11 CVE-2020-0142 Out-of-bounds Read vulnerability in Google Android 10.0
In rw_i93_sm_format of rw_i93.c, there is a possible information disclosure due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2020-06-11 CVE-2020-0140 Out-of-bounds Read vulnerability in Google Android 10.0
In rw_i93_sm_detect_ndef of rw_i93.c, there is a possible information disclosure due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2020-06-11 CVE-2020-0137 Missing Authorization vulnerability in Google Android 10.0
In setIPv6AddrGenMode of NetworkManagementService.java, there is a possible bypass of networking permissions due to a missing permission check.
local
low complexity
google CWE-862
7.8
2020-06-11 CVE-2020-0136 Integer Overflow or Wraparound vulnerability in Google Android 10.0
In multiple locations of Parcel.cpp, there is a possible out-of-bounds write due to an integer overflow.
local
low complexity
google CWE-190
7.8
2020-06-11 CVE-2020-0133 Incorrect Default Permissions vulnerability in Google Android 10.0
In MockLocationAppPreferenceController.java, it is possible to mock the GPS location of the device due to a permissions bypass.
local
low complexity
google CWE-276
7.3