Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2020-03-10 CVE-2020-0084 Missing Authorization vulnerability in Google Android 10.0
In several functions of NotificationManagerService.java, there are missing permission checks.
local
low complexity
google CWE-862
7.8
2020-03-10 CVE-2020-0063 Unspecified vulnerability in Google Android
In SurfaceFlinger, it is possible to override UI confirmation screen protected by the TEE.
local
low complexity
google
7.3
2020-03-10 CVE-2020-0062 Information Exposure vulnerability in Google Android
In Euicc, there is a possible information disclosure due to an included test Certificate.
network
low complexity
google CWE-200
7.5
2020-03-10 CVE-2020-0054 Missing Authorization vulnerability in Google Android 10.0
In WifiNetworkSuggestionsManager of WifiNetworkSuggestionsManager.java, there is a possible permission revocation due to a missing permission check.
local
low complexity
google CWE-862
7.8
2020-03-10 CVE-2020-0051 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Android 10.0
In onCreate of SettingsHomepageActivity, there is a possible tapjacking attack.
local
low complexity
google CWE-1021
7.8
2020-03-10 CVE-2020-0046 Out-of-bounds Write vulnerability in Google Android 10.0
In DrmPlugin::releaseSecureStops of DrmPlugin.cpp, there is a possible out of bounds write due to a heap buffer overflow.
local
low complexity
google CWE-787
7.8
2020-03-10 CVE-2020-0083 Unspecified vulnerability in Google Android 10.0
In setRequirePmfInternal of sta_network.cpp, there is a possible default value being improperly applied due to a logic error.
network
low complexity
google
7.5
2020-03-10 CVE-2020-0069 Out-of-bounds Write vulnerability in multiple products
In the ioctl handlers of the Mediatek Command Queue driver, there is a possible out of bounds write due to insufficient input sanitization and missing SELinux restrictions.
local
low complexity
google huawei CWE-787
7.8
2020-03-10 CVE-2020-0041 Improper Input Validation vulnerability in Google Android
In binder_transaction of binder.c, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-20
7.8
2020-03-10 CVE-2020-0039 Out-of-bounds Read vulnerability in Google Android
In rw_i93_sm_update_ndef of rw_i93.cc, there is a possible read of uninitialized data due to a missing bounds check.
network
low complexity
google CWE-125
7.5