Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2021-08-17 CVE-2021-0519 Out-of-bounds Write vulnerability in Google Android
In BITSTREAM_FLUSH of ih264e_bitstream.h, there is a possible out of bounds write due to a heap buffer overflow.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0573 Out-of-bounds Write vulnerability in Google Android
In asf extractor, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0574 Out-of-bounds Write vulnerability in Google Android
In asf extractor, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0576 Out-of-bounds Write vulnerability in Google Android
In flv extractor, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0591 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android
In sendReplyIntentToReceiver of BluetoothPermissionActivity.java, there is a possible way to invoke privileged broadcast receivers due to a confused deputy.
local
low complexity
google CWE-610
7.3
2021-08-17 CVE-2021-0593 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android
In sendDevicePickedIntent of DevicePickerFragment.java, there is a possible way to invoke a privileged broadcast receiver due to a confused deputy.
local
low complexity
google CWE-610
7.8
2021-08-17 CVE-2021-0640 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/9.0
In noteAtomLogged of StatsdStats.cpp, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0645 Incorrect Authorization vulnerability in Google Android 11.0
In shouldBlockFromTree of ExternalStorageProvider.java, there is a possible permissions bypass.
local
low complexity
google CWE-863
7.8
2021-08-17 CVE-2021-0646 Out-of-bounds Write vulnerability in Google Android
In sqlite3_str_vappendf of sqlite3.c, there is a possible out of bounds write due to improper input validation.
local
low complexity
google CWE-787
7.8
2021-07-14 CVE-2020-0417 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android 10.0/8.1/9.0
In setNiNotification of GpsNetInitiatedHandler.java, there is a possible permissions bypass due to an empty mutable PendingIntent.
local
low complexity
google CWE-732
7.8