Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2020-03-10 CVE-2020-0038 Out-of-bounds Read vulnerability in Google Android
In rw_i93_sm_update_ndef of rw_i93.cc, there is a possible read of uninitialized data due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2020-03-10 CVE-2020-0037 Out-of-bounds Read vulnerability in Google Android
In rw_i93_sm_set_read_only of rw_i93.cc, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2020-03-10 CVE-2020-0036 Incorrect Authorization vulnerability in Google Android
In hasPermissions of PermissionMonitor.java, there is a possible access to restricted permissions due to a permissions bypass.
local
low complexity
google CWE-863
7.8
2020-03-10 CVE-2020-0034 Out-of-bounds Read vulnerability in multiple products
In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input validation.
network
low complexity
google debian CWE-125
7.5
2020-03-10 CVE-2020-0033 Out-of-bounds Write vulnerability in Google Android
In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to stale pointer.
local
low complexity
google CWE-787
7.8
2020-03-10 CVE-2020-0032 Out-of-bounds Write vulnerability in Google Android
In ih264d_release_display_bufs of ih264d_utils.c, there is a possible out of bounds write due to a heap buffer overflow.
network
low complexity
google CWE-787
8.8
2020-02-22 CVE-2020-8860 Out-of-bounds Write vulnerability in Google Android
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Samsung Galaxy S10 Firmware G973FXXS3ASJA, O(8.x), P(9.0), Q(10.0) devices with Exynos chipsets.
low complexity
google CWE-787
8.0
2020-02-21 CVE-2014-7914 Incorrect Authorization vulnerability in Google Android
btif/src/btif_dm.c in Android before 5.1 does not properly enforce the temporary nature of a Bluetooth pairing, which allows user-assisted remote attackers to bypass intended access restrictions via crafted Bluetooth packets after the tapping of a crafted NFC tag.
network
low complexity
google CWE-863
8.1
2020-02-13 CVE-2020-0030 Use After Free vulnerability in Google Android
In binder_thread_release of binder.c, there is a possible use after free due to a race condition.
local
high complexity
google CWE-416
7.0
2020-02-13 CVE-2020-0027 Out-of-bounds Write vulnerability in Google Android
In HidRawSensor::batch of HidRawSensor.cpp, there is a possible out of bounds write due to an unexpected switch fallthrough.
local
low complexity
google CWE-787
7.8