Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-12-16 CVE-2022-20527 Out-of-bounds Read vulnerability in Google Android 13.0
In HalCoreCallback of halcore.cc, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
5.5
2022-12-16 CVE-2022-20530 Unspecified vulnerability in Google Android 13.0
In strings.xml, there is a possible permission bypass due to a misleading string.
network
low complexity
google
5.3
2022-12-16 CVE-2022-20531 Unspecified vulnerability in Google Android
In Telecom, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google
5.5
2022-12-16 CVE-2022-20538 Information Exposure Through Discrepancy vulnerability in Google Android 13.0
In getSmsRoleHolder of RoleService.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
5.5
2022-12-16 CVE-2022-20539 Out-of-bounds Write vulnerability in Google Android 13.0
In parameterToHal of Effect.cpp, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2022-12-16 CVE-2022-20541 Out-of-bounds Read vulnerability in Google Android 13.0
In phNxpNciHal_ioctl of phNxpNciHal.cc, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.2
2022-12-16 CVE-2022-20544 Missing Authorization vulnerability in Google Android 13.0
In onOptionsItemSelected of ManageApplications.java, there is a possible bypass of profile owner restrictions due to a missing permission check.
local
low complexity
google CWE-862
4.4
2022-12-16 CVE-2022-20546 Out-of-bounds Write vulnerability in Google Android 13.0
In getCurrentConfigImpl of Effect.cpp, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2022-12-16 CVE-2022-20549 Out-of-bounds Write vulnerability in Google Android 13.0
In authToken2AidlVec of KeyMintUtils.cpp, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
6.7
2022-12-16 CVE-2022-20552 Use After Free vulnerability in Google Android 13.0
In btif_a2dp_sink_command_ready of btif_a2dp_sink.cc, there is a possible out of bounds read due to a use after free.
local
low complexity
google CWE-416
5.5