Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2020-03-15 CVE-2019-9473 Out-of-bounds Read vulnerability in Google Android 10.0
In Bluetooth, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2020-03-15 CVE-2019-2216 Improper Input Validation vulnerability in Google Android 10.0
In overlay notifications, there is a possible hidden notification due to improper input validation.
local
low complexity
google CWE-20
7.3
2020-03-15 CVE-2019-2089 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android 10.0
In app uninstallation, there is a possible set of permissions that may not be removed from a shared app ID.
local
low complexity
google CWE-732
7.8
2020-03-10 CVE-2020-0085 Missing Authorization vulnerability in Google Android 10.0
In setBluetoothTethering of PanService.java, there is a possible permission bypass due to a missing permission check.
local
low complexity
google CWE-862
7.8
2020-03-10 CVE-2020-0084 Missing Authorization vulnerability in Google Android 10.0
In several functions of NotificationManagerService.java, there are missing permission checks.
local
low complexity
google CWE-862
7.8
2020-03-10 CVE-2020-0063 Unspecified vulnerability in Google Android
In SurfaceFlinger, it is possible to override UI confirmation screen protected by the TEE.
local
low complexity
google
7.3
2020-03-10 CVE-2020-0062 Information Exposure vulnerability in Google Android
In Euicc, there is a possible information disclosure due to an included test Certificate.
network
low complexity
google CWE-200
7.5
2020-03-10 CVE-2020-0054 Missing Authorization vulnerability in Google Android 10.0
In WifiNetworkSuggestionsManager of WifiNetworkSuggestionsManager.java, there is a possible permission revocation due to a missing permission check.
local
low complexity
google CWE-862
7.8
2020-03-10 CVE-2020-0051 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Android 10.0
In onCreate of SettingsHomepageActivity, there is a possible tapjacking attack.
local
low complexity
google CWE-1021
7.8
2020-03-10 CVE-2020-0046 Out-of-bounds Write vulnerability in Google Android 10.0
In DrmPlugin::releaseSecureStops of DrmPlugin.cpp, there is a possible out of bounds write due to a heap buffer overflow.
local
low complexity
google CWE-787
7.8