Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2023-03-24 CVE-2023-21035 Incorrect Authorization vulnerability in Google Android 13.0
In multiple functions of BackupHelper.java, there is a possible way for an app to get permissions previously granted to another app with the same package name due to a permissions bypass.
local
low complexity
google CWE-863
7.8
2023-03-24 CVE-2023-21040 Unspecified vulnerability in Google Android
In buildCommand of bluetooth_ccc.cc, there is a possible out of bounds write due to a logic error in the code.
local
low complexity
google
7.8
2023-03-24 CVE-2023-21041 Out-of-bounds Write vulnerability in Google Android
In append_to_params of param_util.c, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
7.8
2023-03-24 CVE-2023-21053 Out-of-bounds Read vulnerability in Google Android
In sms_ExtractCbLanguage of sms_CellBroadcast.c, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2023-03-24 CVE-2023-21054 Out-of-bounds Write vulnerability in Google Android
In EUTRAN_LCS_ConvertLCS_MOLRReq of LPP_CommonUtil.c, there is a possible out of bounds write due to a logic error in the code.
network
low complexity
google CWE-787
7.2
2023-03-24 CVE-2023-21059 Out-of-bounds Read vulnerability in Google Android
In EUTRAN_LCS_DecodeFacilityInformationElement of LPP_LcsManagement.c, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2023-03-24 CVE-2023-21060 Out-of-bounds Read vulnerability in Google Android
In sms_GetTpPiIe of sms_PduCodec.c, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2023-03-24 CVE-2023-21061 Unspecified vulnerability in Google Android
Product: AndroidVersions: Android kernelAndroid ID: A-229255400References: N/A
network
low complexity
google
7.5
2023-03-24 CVE-2023-21067 Unspecified vulnerability in Google Android
Product: AndroidVersions: Android kernelAndroid ID: A-254114726References: N/A
network
low complexity
google
7.5
2023-03-24 CVE-2023-21068 Unspecified vulnerability in Google Android
In (TBD) of (TBD), there is a possible way to boot with a hidden debug policy due to a missing warning to the user.
local
low complexity
google
7.8