Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2021-12-15 CVE-2021-1048 Use After Free vulnerability in Google Android
In ep_loop_check_proc of eventpoll.c, there is a possible way to corrupt memory due to a use after free.
local
low complexity
google CWE-416
7.8
2021-12-15 CVE-2021-39640 Improper Locking vulnerability in Google Android
In __dwc3_gadget_ep0_queue of ep0.c, there is a possible out of bounds write due to improper locking.
local
low complexity
google CWE-667
7.8
2021-12-15 CVE-2021-39646 Unspecified vulnerability in Google Android
Product: AndroidVersions: Android kernelAndroid ID: A-201537251References: N/A
network
low complexity
google
7.5
2021-12-15 CVE-2021-39651 Missing Authorization vulnerability in Google Android
In TBD of TBD, there is a possible way to access PIN protected settings bypassing PIN confirmation due to a missing permission check.
local
low complexity
google CWE-862
7.8
2021-12-15 CVE-2021-39653 Unspecified vulnerability in Google Android
In (TBD) of (TBD), there is a possible way to boot with a hidden debug policy due to a missing warning to the user.
local
low complexity
google
7.8
2021-12-08 CVE-2021-25510 Improper Input Validation vulnerability in Google Android 10.0/11.0/9.0
An improper validation vulnerability in FilterProvider prior to SMR Dec-2021 Release 1 allows local arbitrary code execution.
local
low complexity
google CWE-20
7.8
2021-12-08 CVE-2021-25511 Path Traversal vulnerability in Google Android 10.0/11.0/9.0
An improper validation vulnerability in FilterProvider prior to SMR Dec-2021 Release 1 allows attackers to write arbitrary files via a path traversal vulnerability.
local
low complexity
google CWE-22
7.8
2021-12-08 CVE-2021-25512 Improper Input Validation vulnerability in Google Android 10.0/11.0/9.0
An improper validation vulnerability in telephony prior to SMR Dec-2021 Release 1 allows attackers to launch certain activities.
local
low complexity
google CWE-20
7.8
2021-12-08 CVE-2021-25516 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/9.0
An improper check or handling of exceptional conditions in Exynos baseband prior to SMR Dec-2021 Release 1 allows attackers to track locations.
network
low complexity
google CWE-755
7.5
2021-12-08 CVE-2021-25517 Improper Input Validation vulnerability in Google Android 10.0/11.0
An improper input validation vulnerability in LDFW prior to SMR Dec-2021 Release 1 allows attackers to perform arbitrary code execution.
local
low complexity
google CWE-20
7.8