Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-08-12 CVE-2022-20263 Missing Authorization vulnerability in Google Android 13.0
In ActivityManager, there is a way to read process state for other users due to a missing permission check.
local
low complexity
google CWE-862
5.5
2022-08-12 CVE-2022-20265 Unspecified vulnerability in Google Android 13.0
In Settings, there is a possible way to bypass factory reset permissions due to a permissions bypass.
low complexity
google
4.6
2022-08-12 CVE-2022-20266 Improper Input Validation vulnerability in Google Android 13.0
In Companion, there is a possible way to keep a service running with elevated importance without showing foreground service notification due to improper input validation.
local
low complexity
google CWE-20
5.0
2022-08-12 CVE-2022-20269 Out-of-bounds Write vulnerability in Google Android 13.0
In Bluetooth, there is a possible out of bounds write due to an incorrect bounds check.
low complexity
google CWE-787
6.8
2022-08-12 CVE-2022-20270 Unspecified vulnerability in Google Android 13.0
In Content, there is a possible way to learn gmail account name on the device due to a permissions bypass.
local
low complexity
google
5.5
2022-08-12 CVE-2022-20272 Incorrect Default Permissions vulnerability in Google Android 13.0
In PermissionController, there is a possible misunderstanding about the default SMS application's permission set due to misleading text.
local
low complexity
google CWE-276
5.5
2022-08-12 CVE-2022-20273 Out-of-bounds Write vulnerability in Google Android 13.0
In Bluetooth, there is a possible out of bounds read due to a heap buffer overflow.
low complexity
google CWE-787
6.5
2022-08-12 CVE-2022-20275 Information Exposure Through Discrepancy vulnerability in Google Android 13.0
In DevicePolicyManager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
5.5
2022-08-12 CVE-2022-20276 Information Exposure Through Discrepancy vulnerability in Google Android 13.0
In DevicePolicyManager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
5.5
2022-08-12 CVE-2022-20277 Information Exposure Through Discrepancy vulnerability in Google Android 13.0
In DevicePolicyManager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
5.5