Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-02-06 CVE-2023-20616 Type Confusion vulnerability in Google Android 11.0/12.0
In ion, there is a possible out of bounds read due to type confusion.
local
low complexity
google CWE-843
6.7
2023-02-06 CVE-2023-20618 Improper Locking vulnerability in Google Android 11.0/12.0/13.0
In vcu, there is a possible memory corruption due to improper locking.
local
low complexity
google CWE-667
6.7
2023-02-06 CVE-2023-20619 Improper Locking vulnerability in Google Android 11.0/12.0/13.0
In vcu, there is a possible memory corruption due to improper locking.
local
low complexity
google CWE-667
6.7
2023-01-26 CVE-2023-20908 Resource Exhaustion vulnerability in Google Android
In several functions of SettingsState.java, there is a possible system crash loop due to resource exhaustion.
local
low complexity
google CWE-400
5.5
2023-01-26 CVE-2023-20922 Resource Exhaustion vulnerability in Google Android
In setMimeGroup of PackageManagerService.java, there is a possible crash loop due to resource exhaustion.
local
low complexity
google CWE-400
5.5
2023-01-26 CVE-2023-20923 Unspecified vulnerability in Google Android
In exported content providers of ShannonRcs, there is a possible way to get access to protected content providers due to a permissions bypass.
local
low complexity
google
5.5
2023-01-26 CVE-2023-20924 Improper Authentication vulnerability in Google Android
In (TBD) of (TBD), there is a possible way to bypass the lockscreen due to Biometric Auth Failure.
low complexity
google CWE-287
6.8
2023-01-26 CVE-2022-20213 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Android 10.0/11.0/12.0
In ApplicationsDetailsActivity of AndroidManifest.xml, there is a possible DoS due to a tapjacking/overlay attack.
local
low complexity
google CWE-1021
5.5
2023-01-26 CVE-2022-20214 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Android 10.0/11.0/12.0
In Car Settings app, the toggle button in Modify system settings is vulnerable to tapjacking attack.
network
low complexity
google CWE-1021
4.7
2023-01-26 CVE-2022-20215 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Android 10.0/11.0/12.0
In onCreate of MasterClearConfirmFragment.java, there is a possible factory reset due to a tapjacking/overlay attack.
local
low complexity
google CWE-1021
5.5