Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2023-12-08 CVE-2023-48403 Out-of-bounds Write vulnerability in Google Android
In sms_DecodeCodedTpMsg of sms_PduCodec.c, there is a possible out of bounds read due to a heap buffer overflow.
network
low complexity
google CWE-787
7.5
2023-12-08 CVE-2023-48404 Out-of-bounds Read vulnerability in Google Android
In ProtocolMiscCarrierConfigSimInfoIndAdapter of protocolmiscadapter.cpp, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2023-12-08 CVE-2023-48407 Unspecified vulnerability in Google Android
there is a possible DCK won't be deleted after factory reset due to a logic error in the code.
local
low complexity
google
7.8
2023-12-08 CVE-2023-48409 Integer Overflow or Wraparound vulnerability in Google Android
In gpu_pixel_handle_buffer_liveness_update_ioctl of private/google-modules/gpu/mali_kbase/mali_kbase_core_linux.c, there is a possible out of bounds write due to an integer overflow.
local
low complexity
google CWE-190
7.8
2023-12-08 CVE-2023-48410 Out-of-bounds Read vulnerability in Google Android
In cd_ParseMsg of cd_codec.c, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2023-12-08 CVE-2023-48416 NULL Pointer Dereference vulnerability in Google Android
In multiple locations, there is a possible null dereference due to a missing null check.
network
low complexity
google CWE-476
7.5
2023-12-08 CVE-2023-48421 Out-of-bounds Write vulnerability in Google Android
In gpu_pixel_handle_buffer_liveness_update_ioctl of private/google-modules/gpu/mali_kbase/platform/pixel/pixel_gpu_slc.c, there is a possible out of bounds write due to improper input validation.
local
low complexity
google CWE-787
7.8
2023-12-04 CVE-2023-21227 Unspecified vulnerability in Google Android
In HTBLogKM of htbserver.c, there is a possible information disclosure due to log information disclosure.
network
low complexity
google
7.5
2023-12-04 CVE-2023-40077 Race Condition vulnerability in Google Android
In multiple functions of MetaDataBase.cpp, there is a possible UAF write due to a race condition.
network
high complexity
google CWE-362
8.1
2023-12-04 CVE-2023-40079 Unspecified vulnerability in Google Android 14.0
In injectSendIntentSender of ShortcutService.java, there is a possible background activity launch due to a permissions bypass.
local
low complexity
google
7.8