Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2022-10-07 CVE-2022-39854 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper protection in IOMMU prior to SMR Oct-2022 Release 1 allows unauthorized access to secure memory.
local
low complexity
google
7.8
2022-09-14 CVE-2022-20364 Out-of-bounds Write vulnerability in Google Android
In sysmmu_unmap of TBD, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2022-09-13 CVE-2021-0697 Use After Free vulnerability in Google Android
In PVRSRVRGXSubmitTransferKM of rgxtransfer.c, there is a possible user after free due to a race condition.
local
high complexity
google CWE-416
7.0
2022-09-13 CVE-2021-0871 Integer Overflow or Wraparound vulnerability in Google Android
In PVRSRVBridgePMRPDumpSymbolicAddr of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access.
local
low complexity
google CWE-190
7.8
2022-09-13 CVE-2021-0943 Out-of-bounds Write vulnerability in Google Android
In MMU_MapPages of TBD, there is a possible out of bounds write due to improper input validation.
local
low complexity
google CWE-787
7.8
2022-09-13 CVE-2022-20392 Improper Input Validation vulnerability in Google Android
In declareDuplicatePermission of ParsedPermissionUtils.java, there is a possible way to obtain a dangerous permission without user consent due to improper input validation.
local
low complexity
google CWE-20
7.8
2022-09-13 CVE-2022-20395 Path Traversal vulnerability in Google Android
In checkAccess of MediaProvider.java, there is a possible file deletion due to a path traversal error.
local
low complexity
google CWE-22
7.8
2022-09-13 CVE-2022-20398 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android 13.0
In addOrUpdateNetwork of WifiServiceImpl.java, there is a possible way for a guest user to configure Wi-Fi due to a permissions bypass.
local
low complexity
google CWE-732
7.8
2022-09-09 CVE-2022-36841 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/12.0
A heap-based overflow vulnerability in PrepareRecogLibrary_Part function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Release 1 allows attacker to cause memory access fault.
local
low complexity
google CWE-787
7.8
2022-09-09 CVE-2022-36842 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/12.0
A heap-based overflow vulnerability in prepareRecogLibrary function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Release 1 allows attacker to cause memory access fault.
local
low complexity
google CWE-787
7.8