Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2022-04-11 CVE-2022-27828 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper validation vulnerability in MediaMonitorEvent prior to SMR Apr-2022 Release 1 allows attackers to launch certain activities.
local
low complexity
google CWE-20
7.8
2022-04-11 CVE-2022-27829 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper validation vulnerability in VerifyCredentialResponse prior to SMR Apr-2022 Release 1 allows attackers to launch certain activities.
local
low complexity
google CWE-20
7.8
2022-04-11 CVE-2022-27830 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper validation vulnerability in SemBlurInfo prior to SMR Apr-2022 Release 1 allows attackers to launch certain activities.
local
low complexity
google CWE-20
7.8
2022-04-11 CVE-2022-27833 Integer Overflow or Wraparound vulnerability in Google Android 10.0/11.0/12.0
Improper input validation in DSP driver prior to SMR Apr-2022 Release 1 allows out-of-bounds write by integer overflow.
local
low complexity
google CWE-190
7.8
2022-04-11 CVE-2022-27834 Use After Free vulnerability in Google Android 10.0/11.0/12.0
Use after free vulnerability in dsp_context_unload_graph function of DSP driver prior to SMR Apr-2022 Release 1 allows attackers to perform malicious actions.
local
high complexity
google CWE-416
7.0
2022-04-11 CVE-2022-27835 Out-of-bounds Write vulnerability in Google Android 12.0
Improper boundary check in UWB firmware prior to SMR Apr-2022 Release 1 allows arbitrary memory write.
local
low complexity
google CWE-787
7.8
2022-04-11 CVE-2022-27836 Incorrect Authorization vulnerability in Google Android 12.0
Improper access control and path traversal vulnerability in Storage Manager and Storage Manager Service prior to SMR Apr-2022 Release 1 allow local attackers to access arbitrary system files without a proper permission.
local
low complexity
google CWE-863
7.8
2022-03-30 CVE-2021-1000 Incorrect Default Permissions vulnerability in Google Android 12.1
In createBluetoothDeviceSlice of ConnectedDevicesSliceProvider.java, there is a possible permission bypass due to an unsafe PendingIntent.
local
low complexity
google CWE-276
7.8
2022-03-30 CVE-2021-1033 Incorrect Default Permissions vulnerability in Google Android 12.1
In createGeneralSlice of ConnectedDevicesSliceProvider.java.java, there is a possible permission bypass due to an unsafe PendingIntent.
local
low complexity
google CWE-276
7.8
2022-03-30 CVE-2021-39741 Out-of-bounds Write vulnerability in Google Android 12.1
In Keymaster, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8