Vulnerabilities > Google > Android > Low

DATE CVE VULNERABILITY TITLE RISK
2020-09-17 CVE-2020-0425 Information Exposure vulnerability in Google Android 11.0
There is a possible way to view notifications even when the "Lockdown" feature is on.
local
low complexity
google CWE-200
2.1
2020-09-17 CVE-2020-0426 Incorrect Default Permissions vulnerability in Google Android 11.0
In SyncManager, there is a possible permission bypass due to an unsafe PendingIntent.
local
low complexity
google CWE-276
2.1
2020-09-17 CVE-2020-0379 Unspecified vulnerability in Google Android
In the Bluetooth service, there is a possible spoofing attack due to a logic error.
2.9
2020-09-17 CVE-2020-0382 Improper Check for Unusual or Exceptional Conditions vulnerability in Google Android 10.0/11.0
In RunInternal of dumpstate.cpp, there is a possible user consent bypass due to an uncaught exception.
local
low complexity
google CWE-754
2.1
2020-09-17 CVE-2020-0389 Incorrect Authorization vulnerability in Google Android 10.0/11.0
In createSaveNotification of RecordingService.java, there is a possible permission bypass due to an unsafe PendingIntent.
local
low complexity
google CWE-863
2.1
2020-09-17 CVE-2020-0390 Incorrect Default Permissions vulnerability in Google Android 10.0/11.0
In the app zygote SE Policy, there is a possible permissions bypass.
local
low complexity
google CWE-276
2.1
2020-09-17 CVE-2020-0407 Inadequate Encryption Strength vulnerability in Google Android
In various functions in fscrypt_ice.c and related files in some implementations of f2fs encryption that use encryption hardware which only supports 32-bit IVs (Initialization Vectors), 64-bit IVs are used and later are truncated to 32 bits.
local
low complexity
google CWE-326
2.1
2020-08-31 CVE-2020-25046 Information Exposure Through Log Files vulnerability in Google Android
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software.
local
low complexity
google CWE-532
2.1
2020-08-31 CVE-2020-25047 Unspecified vulnerability in Google Android 10.0/9.0
An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (released in China and India) software.
local
low complexity
google
2.1
2020-08-31 CVE-2020-25048 Injection vulnerability in Google Android 10.0
An issue was discovered on Samsung mobile devices with Q(10.0) (with ONEUI 2.1) software.
local
low complexity
google CWE-74
2.1