Vulnerabilities > Google > Android > Low

DATE CVE VULNERABILITY TITLE RISK
2022-06-07 CVE-2022-30723 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
Broadcasting Intent including the BluetoothDevice object without proper restriction of receivers in activateVoiceRecognitionWithDevice function of Bluetooth prior to SMR Jun-2022 Release 1 leaks MAC address of the connected Bluetooth device.
low complexity
google CWE-755
3.3
2022-06-07 CVE-2022-30714 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0/12.0
Information exposure vulnerability in SemIWCMonitor prior to SMR Jun-2022 Release 1 allows local attackers to get MAC address information.
local
low complexity
google CWE-668
2.1
2022-06-07 CVE-2022-28794 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0/12.0
Sensitive information exposure in low-battery dumpstate log prior to SMR Jun-2022 Release 1 allows local attackers to get SIM card information.
local
low complexity
google CWE-668
2.1
2022-06-06 CVE-2022-21756 Out-of-bounds Read vulnerability in Google Android 11.0/12.0
In WLAN driver, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
2.1
2022-06-06 CVE-2022-21755 Out-of-bounds Read vulnerability in Google Android 11.0/12.0
In WLAN driver, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
2.1
2022-06-06 CVE-2022-21747 Out-of-bounds Read vulnerability in Google Android
In imgsensor, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
2.1
2022-06-06 CVE-2022-21746 Out-of-bounds Read vulnerability in Google Android
In imgsensor, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
2.1
2022-05-10 CVE-2022-20121 Missing Authorization vulnerability in Google Android
In getNodeValue of USCCDMPlugin.java, there is a possible disclosure of ICCID due to a missing permission check.
local
low complexity
google CWE-862
2.1
2022-05-10 CVE-2022-20119 Use of Uninitialized Resource vulnerability in Google Android
In private_handle_t of mali_gralloc_buffer.h, there is a possible information disclosure due to uninitialized data.
local
low complexity
google CWE-908
2.1
2022-05-10 CVE-2022-20117 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Google Android
In (TBD) of (TBD), there is a possible way to decrypt local data encrypted by the GSC due to improperly used crypto.
local
low complexity
google CWE-327
2.1