Vulnerabilities > Google > Android > Low

DATE CVE VULNERABILITY TITLE RISK
2021-10-06 CVE-2021-0644 Information Exposure vulnerability in Google Android 10.0/11.0
In conditionallyRemoveIdentifiers of SubscriptionController.java, there is a possible way to retrieve a trackable identifier due to a missing permission check.
local
low complexity
google CWE-200
2.1
2021-09-27 CVE-2021-0425 Unspecified vulnerability in Google Android 10.0/11.0
In memory management driver, there is a possible side channel information disclosure.
local
low complexity
google
2.1
2021-09-27 CVE-2021-0424 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 10.0/11.0
In memory management driver, there is a possible system crash due to a missing bounds check.
local
low complexity
google CWE-119
2.1
2021-09-27 CVE-2021-0423 Improper Initialization vulnerability in Google Android 10.0/11.0
In memory management driver, there is a possible information disclosure due to uninitialized data.
local
low complexity
google CWE-665
2.1
2021-09-27 CVE-2021-0422 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 10.0/11.0
In memory management driver, there is a possible system crash due to a missing bounds check.
local
low complexity
google CWE-119
2.1
2021-09-27 CVE-2021-0421 Classic Buffer Overflow vulnerability in Google Android 10.0/11.0
In memory management driver, there is a possible information disclosure due to a missing bounds check.
local
low complexity
google CWE-120
2.1
2021-09-09 CVE-2021-25462 NULL Pointer Dereference vulnerability in Google Android 10.0/11.0/9.0
NULL pointer dereference vulnerability in NPU driver prior to SMR Sep-2021 Release 1 allows attackers to cause memory corruption.
local
low complexity
google CWE-476
2.1
2021-09-09 CVE-2021-25460 Unspecified vulnerability in Google Android 10.0/11.0
An improper access control vulnerability in sspExit() in BlockchainTZService prior to SMR Sep-2021 Release 1 allows attackers to terminate BlockchainTZService.
local
low complexity
google
2.1
2021-09-09 CVE-2021-25459 Unspecified vulnerability in Google Android 10.0/11.0
An improper access control vulnerability in sspInit() in BlockchainTZService prior to SMR Sep-2021 Release 1 allows attackers to start BlockchainTZService.
local
low complexity
google
2.1
2021-09-09 CVE-2021-25458 NULL Pointer Dereference vulnerability in Google Android
NULL pointer dereference vulnerability in ION driver prior to SMR Sep-2021 Release 1 allows attackers to cause memory corruption.
local
low complexity
google CWE-476
2.1