Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2023-07-04 CVE-2023-20689 Integer Overflow or Wraparound vulnerability in multiple products
In wlan firmware, there is possible system crash due to an integer overflow.
network
low complexity
linuxfoundation google CWE-190
7.5
2023-07-04 CVE-2023-20690 Integer Overflow or Wraparound vulnerability in multiple products
In wlan firmware, there is possible system crash due to an integer overflow.
network
low complexity
linuxfoundation google CWE-190
7.5
2023-07-04 CVE-2023-20691 Integer Overflow or Wraparound vulnerability in multiple products
In wlan firmware, there is possible system crash due to an integer overflow.
network
low complexity
linuxfoundation google CWE-190
7.5
2023-07-04 CVE-2023-20692 Improper Handling of Exceptional Conditions vulnerability in multiple products
In wlan firmware, there is possible system crash due to an uncaught exception.
network
low complexity
linuxfoundation google CWE-755
7.5
2023-07-04 CVE-2023-20693 Integer Overflow or Wraparound vulnerability in multiple products
In wlan firmware, there is possible system crash due to an uncaught exception.
network
low complexity
linuxfoundation google CWE-190
7.5
2023-07-04 CVE-2023-20773 Missing Authorization vulnerability in Google Android 12.0/13.0
In vow, there is a possible escalation of privilege due to a missing permission check.
local
low complexity
google CWE-862
7.8
2023-06-28 CVE-2022-20443 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Android 13.0
In hasInputInfo of Layer.cpp, there is a possible bypass of user interaction requirements due to a tapjacking/overlay attack.
local
low complexity
google CWE-1021
7.8
2023-06-28 CVE-2023-21147 Use After Free vulnerability in Google Android
In lwis_i2c_device_disable of lwis_device_i2c.c, there is a possible UAF due to a logic error in the code.
local
low complexity
google CWE-416
7.8
2023-06-28 CVE-2023-21149 Missing Authorization vulnerability in Google Android
In registerGsmaServiceIntentReceiver of ShannonRcsService.java, there is a possible way to activate/deactivate RCS service due to a missing permission check.
local
low complexity
google CWE-862
7.8
2023-06-28 CVE-2023-21172 Unspecified vulnerability in Google Android 13.0
In multiple functions of WifiCallingSettings.java, there is a possible way to change calling preferences for the admin user due to a permissions bypass.
local
low complexity
google
7.8