Vulnerabilities > Google > Android > Low

DATE CVE VULNERABILITY TITLE RISK
2020-03-10 CVE-2020-0087 Information Exposure vulnerability in Google Android 10.0
In getProcessPss of ActivityManagerService.java, there is a possible side channel information disclosure.
local
google CWE-200
1.9
2020-03-10 CVE-2020-0029 Information Exposure vulnerability in Google Android 10.0
In the WifiConfigManager, there is a possible storage of location history which can only be deleted by triggering a factory reset.
local
low complexity
google CWE-200
2.1
2020-03-10 CVE-2020-0042 Out-of-bounds Read vulnerability in Google Android
In fpc_ta_hw_auth_unwrap_key of fpc_ta_hw_auth_qsee.c, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
2.1
2020-03-10 CVE-2020-0043 Out-of-bounds Read vulnerability in Google Android
In authorize_enrol of fpc_ta_hw_auth.c, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
2.1
2020-03-10 CVE-2020-0044 Out-of-bounds Read vulnerability in Google Android
In set_nonce of fpc_ta_qc_auth.c, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
2.1
2020-03-10 CVE-2020-0058 Out-of-bounds Read vulnerability in Google Android 10.0
In l2c_rcv_acl_data of l2c_main.cc, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
2.1
2020-03-10 CVE-2020-0059 Out-of-bounds Read vulnerability in Google Android 10.0
In btm_ble_batchscan_filter_track_adv_vse_cback of btm_ble_batchscan.cc, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
2.1
2020-03-10 CVE-2020-0060 SQL Injection vulnerability in Google Android 10.0
In query of SmsProvider.java and MmsSmsProvider.java, there is a possible permission bypass due to SQL injection.
local
low complexity
google CWE-89
2.1
2020-02-13 CVE-2020-0017 Information Exposure vulnerability in Google Android
In multiple places, it was possible for the primary user’s dictionary to be visible to and modifiable by secondary users.
local
google CWE-200
3.3
2020-02-13 CVE-2020-0018 Information Exposure Through Log Files vulnerability in Google Android
In MotionEntry::appendDescription of InputDispatcher.cpp, there is a possible log information disclosure.
local
low complexity
google CWE-532
2.1