Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-09-09 CVE-2022-36848 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper Authorization vulnerability in setDualDARPolicyCmd prior to SMR Sep-2022 Release 1 allows local attackers to cause local permanent denial of service.
local
low complexity
google
5.5
2022-09-09 CVE-2022-36850 Path Traversal vulnerability in Google Android 12.0
Path traversal vulnerability in CallBGProvider prior to SMR Sep-2022 Release 1 allows attacker to overwrite arbitrary file with phone uid.
local
high complexity
google CWE-22
4.7
2022-09-09 CVE-2022-36854 Out-of-bounds Read vulnerability in Google Android 10.0/11.0/12.0
Out of bound read in libapexjni.media.samsung.so prior to SMR Sep-2022 Release 1 allows attacker access unauthorized information.
local
low complexity
google CWE-125
5.5
2022-09-09 CVE-2022-36861 Improper Privilege Management vulnerability in Google Android 10.0/11.0/12.0
Custom permission misuse vulnerability in SystemUI prior to SMR Sep-2022 Release 1 allows attacker to use some protected functions with SystemUI privilege.
local
low complexity
google CWE-269
5.3
2022-09-06 CVE-2022-26448 Out-of-bounds Write vulnerability in Google Android 11.0/12.0
In apusys, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2022-09-06 CVE-2022-26449 Out-of-bounds Write vulnerability in Google Android 12.0
In apusys, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2022-09-06 CVE-2022-26450 Race Condition vulnerability in Google Android 12.0
In apusys, there is a possible use after free due to a race condition.
local
high complexity
google CWE-362
6.4
2022-09-06 CVE-2022-26451 Improper Locking vulnerability in Google Android 12.0
In ged, there is a possible use after free due to improper locking.
local
low complexity
google CWE-667
6.7
2022-09-06 CVE-2022-26453 Use After Free vulnerability in Google Android 11.0/12.0
In teei, there is a possible memory corruption due to a use after free.
local
low complexity
google CWE-416
6.7
2022-09-06 CVE-2022-26454 Integer Overflow or Wraparound vulnerability in Google Android 11.0/12.0
In teei, there is a possible memory corruption due to an integer overflow.
local
low complexity
google CWE-190
6.7