Vulnerabilities > Google > Android > Low

DATE CVE VULNERABILITY TITLE RISK
2021-06-11 CVE-2021-25392 Inadequate Encryption Strength vulnerability in Google Android 10.0/11.0/9.0
Improper protection of backup path configuration in Samsung Dex prior to SMR MAY-2021 Release 1 allows local attackers to get sensitive information via changing the path.
local
low complexity
google CWE-326
2.1
2021-06-11 CVE-2021-25391 Unspecified vulnerability in Google Android 11.0
Intent redirection vulnerability in Secure Folder prior to SMR MAY-2021 Release 1 allows attackers to execute privileged action.
local
low complexity
google
2.1
2021-06-11 CVE-2021-25390 Unspecified vulnerability in Google Android
Intent redirection vulnerability in PhotoTable prior to SMR MAY-2021 Release 1 allows attackers to execute privileged action.
local
google
1.9
2021-06-11 CVE-2021-25389 Improper Authentication vulnerability in Google Android 9.0
Improper running task check in S Secure prior to SMR MAY-2021 Release 1 allows attackers to use locked app without authentication.
local
low complexity
google CWE-287
3.6
2021-06-11 CVE-2021-25388 Improper Validation of Integrity Check Value vulnerability in Google Android 11.0
Improper caller check vulnerability in Knox Core prior to SMR MAY-2021 Release 1 allows attackers to install arbitrary app.
local
low complexity
google CWE-354
3.6
2021-04-13 CVE-2021-0400 Improper Input Validation vulnerability in Google Android 10.0/11.0/9.0
In injectBestLocation and handleUpdateLocation of GnssLocationProvider.java, there is a possible incorrect reporting of location data to emergency services due to improper input validation.
local
low complexity
google CWE-20
2.1
2021-04-13 CVE-2021-0428 Missing Authorization vulnerability in Google Android 10.0
In getSimSerialNumber of TelephonyManager.java, there is a possible way to read a trackable identifier due to a missing permission check.
local
low complexity
google CWE-862
2.1
2021-04-13 CVE-2021-0436 Integer Overflow or Wraparound vulnerability in Google Android
In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds read due to integer overflow.
local
low complexity
google CWE-190
2.1
2021-04-13 CVE-2021-0443 Race Condition vulnerability in Google Android
In several functions of ScreenshotHelper.java and related files, there is a possible incorrectly saved screenshot due to a race condition.
local
google CWE-362
1.9
2021-04-13 CVE-2021-0444 Unspecified vulnerability in Google Android
In onActivityResult of QuickContactActivity.java, there is an unnecessary return of an intent.
local
google
1.9