Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-06-15 CVE-2022-20172 Missing Authorization vulnerability in Google Android
In onbind of ShannonRcsService.java, there is a possible access to protect data due to a missing permission check.
local
low complexity
google CWE-862
5.5
2022-06-15 CVE-2022-20174 Out-of-bounds Read vulnerability in Google Android
In exynos_secEnv_init of mach-gs101.c, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
4.4
2022-06-15 CVE-2022-20176 Use of Uninitialized Resource vulnerability in Google Android
In auth_store of sjtag-driver.c, there is a possible read of uninitialized memory due to a missing bounds check.
local
low complexity
google CWE-908
4.4
2022-06-15 CVE-2022-20178 Integer Overflow or Wraparound vulnerability in Google Android
In ioctl_dpm_qos_update and ioctl_event_control_set of (TBD), there is a possible out of bounds write due to an integer overflow.
local
low complexity
google CWE-190
6.7
2022-06-15 CVE-2022-20182 Missing Authorization vulnerability in Google Android
In handle_ramdump of pixel_loader.c, there is a possible way to create a ramdump of non-secure memory due to a missing permission check.
local
low complexity
google CWE-862
4.4
2022-06-15 CVE-2022-20183 Out-of-bounds Write vulnerability in Google Android
In hypx_create_blob_dmabuf of faceauth_hypx.c, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2022-06-15 CVE-2022-20185 Use After Free vulnerability in Google Android
In TBD of TBD, there is a possible use after free bug.
local
low complexity
google CWE-416
6.7
2022-06-15 CVE-2022-20195 Deserialization of Untrusted Data vulnerability in Google Android 12.1
In the keystore library, there is a possible prevention of access to system Settings due to unsafe deserialization.
local
low complexity
google CWE-502
5.0
2022-06-15 CVE-2022-20196 Unspecified vulnerability in Google Android 12.1
In gallery3d and photos, there is a possible permission bypass due to a confused deputy.
local
low complexity
google
5.0
2022-06-15 CVE-2022-20198 Out-of-bounds Read vulnerability in Google Android 12.1
In llcp_dlc_proc_connect_pdu of llcp_dlc.cc, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.4