Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2020-02-05 CVE-2019-11516 Out-of-bounds Write vulnerability in Google Android
An issue was discovered in the Bluetooth component of the Cypress (formerly owned by Broadcom) Wireless IoT codebase.
network
high complexity
google CWE-787
8.1
2020-02-04 CVE-2019-19273 Out-of-bounds Write vulnerability in multiple products
On Samsung mobile devices with O(8.0) and P(9.0) software and an Exynos 8895 chipset, RKP (aka the Samsung Hypervisor EL2 implementation) allows arbitrary memory write operations.
local
low complexity
google samsung CWE-787
7.8
2020-01-24 CVE-2015-1530 Integer Overflow or Wraparound vulnerability in Google Android
media/libmedia/IAudioPolicyService.cpp in Android before 5.1 allows attackers to execute arbitrary code with media_server privileges or cause a denial of service (integer overflow) via a crafted application that provides an invalid array size.
local
low complexity
google CWE-190
7.8
2020-01-08 CVE-2020-0002 Use After Free vulnerability in Google Android
In ih264d_init_decoder of ih264d_api.c, there is a possible out of bounds write due to a use after free.
network
low complexity
google CWE-416
8.8
2020-01-08 CVE-2020-0001 Unspecified vulnerability in Google Android
In getProcessRecordLocked of ActivityManagerService.java isolated apps are not handled correctly.
local
low complexity
google
7.8
2020-01-06 CVE-2019-9469 Out-of-bounds Write vulnerability in Google Android
In km_compute_shared_hmac of km4.c, there is a possible out of bounds write due to improper input validation.
local
low complexity
google CWE-787
7.8
2020-01-06 CVE-2019-9468 Double Free vulnerability in Google Android
In export_key_der of export_key.cpp, there is possible memory corruption due to a double free.
local
low complexity
google CWE-415
7.8
2019-12-06 CVE-2019-2232 Incorrect Calculation vulnerability in Google Android
In handleRun of TextLine.java, there is a possible application crash due to improper input validation.
network
low complexity
google CWE-682
7.5
2019-12-06 CVE-2019-2230 Use After Free vulnerability in Google Android 10.0
In nfcManager_routeAid and nfcManager_unrouteAid of NativeNfcManager.cpp, there is possible memory reuse due to a use after free.
network
low complexity
google CWE-416
7.5
2019-12-06 CVE-2019-2225 Improper Privilege Management vulnerability in Google Android
When pairing with a Bluetooth device, it may be possible to pair a malicious device without any confirmation from the user, and that device may be able to interact with the phone.
low complexity
google CWE-269
8.8