Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-08-01 CVE-2022-26431 Out-of-bounds Write vulnerability in multiple products
In mailbox, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google yoctoproject CWE-787
6.7
2022-08-01 CVE-2022-26432 Out-of-bounds Write vulnerability in multiple products
In mailbox, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google yoctoproject CWE-787
6.7
2022-08-01 CVE-2022-26433 Type Confusion vulnerability in multiple products
In mailbox, there is a possible out of bounds write due to type confusion.
local
low complexity
google yoctoproject CWE-843
6.7
2022-08-01 CVE-2022-26434 Out-of-bounds Write vulnerability in multiple products
In mailbox, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google yoctoproject CWE-787
6.7
2022-08-01 CVE-2022-26435 Type Confusion vulnerability in multiple products
In mailbox, there is a possible out of bounds write due to type confusion.
local
low complexity
google yoctoproject CWE-843
6.7
2022-08-01 CVE-2022-26436 Out-of-bounds Read vulnerability in Google Android 12.0
In emi mpu, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.4
2022-07-13 CVE-2022-20217 Unspecified vulnerability in Google Android
There is a unauthorized broadcast in the SprdContactsProvider.
network
low complexity
google
6.5
2022-07-13 CVE-2022-20219 Cleartext Storage of Sensitive Information vulnerability in Google Android
In multiple functions of StorageManagerService.java and UserManagerService.java, there is a possible way to leave user's directories unencrypted due to a logic error in the code.
local
low complexity
google CWE-312
5.5
2022-07-13 CVE-2022-20221 Out-of-bounds Read vulnerability in Google Android
In avrc_ctrl_pars_vendor_cmd of avrc_pars_ct.cc, there is a possible out of bounds read due to improper input validation.
low complexity
google CWE-125
6.5
2022-07-13 CVE-2022-20225 Missing Authorization vulnerability in Google Android
In getSubscriptionProperty of SubscriptionController.java, there is a possible read of a sensitive identifier due to a missing permission check.
local
low complexity
google CWE-862
5.5