Vulnerabilities > Google > Android > Low

DATE CVE VULNERABILITY TITLE RISK
2022-06-15 CVE-2022-20198 Out-of-bounds Read vulnerability in Google Android 12.1
In llcp_dlc_proc_connect_pdu of llcp_dlc.cc, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
2.1
2022-06-15 CVE-2022-20196 Unspecified vulnerability in Google Android 12.1
In gallery3d and photos, there is a possible permission bypass due to a confused deputy.
local
google
1.9
2022-06-15 CVE-2022-20195 Deserialization of Untrusted Data vulnerability in Google Android 12.1
In the keystore library, there is a possible prevention of access to system Settings due to unsafe deserialization.
local
google CWE-502
1.9
2022-06-15 CVE-2022-20174 Out-of-bounds Read vulnerability in Google Android
In exynos_secEnv_init of mach-gs101.c, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
2.1
2022-06-15 CVE-2022-20146 Unspecified vulnerability in Google Android
In uploadFile of FileUploadServiceImpl.java, there is a possible incorrect file access due to a confused deputy.
local
low complexity
google
2.1
2022-06-07 CVE-2022-30728 Exposure of Resource to Wrong Sphere vulnerability in Google Android 11.0/12.0
Information exposure vulnerability in ScanPool prior to SMR Jun-2022 Release 1 allows local attackers to get MAC address information.
local
low complexity
google CWE-668
2.1
2022-06-07 CVE-2022-30727 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
Improper handling of insufficient permissions vulnerability in addAppPackageNameToAllowList in PersonaManagerService prior to SMR Jun-2022 Release 1 allows local attackers to set some setting value in work space.
local
low complexity
google CWE-755
2.1
2022-06-07 CVE-2022-30729 Unspecified vulnerability in Google Android 12.0
Implicit Intent hijacking vulnerability in Settings prior to SMR Jun-2022 Release 1 allows attackers to get Wi-Fi SSID and password via a malicious QR code scanner.
local
low complexity
google
2.1
2022-06-07 CVE-2022-30725 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
Broadcasting Intent including the BluetoothDevice object without proper restriction of receivers in sendIntentSessionError function of Bluetooth prior to SMR Jun-2022 Release 1 leaks MAC address of the connected Bluetooth device.
low complexity
google CWE-755
3.3
2022-06-07 CVE-2022-30724 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
Broadcasting Intent including the BluetoothDevice object without proper restriction of receivers in sendIntentSessionCompleted function of Bluetooth prior to SMR Jun-2022 Release 1 leaks MAC address of the connected Bluetooth device.
low complexity
google CWE-755
3.3