Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-06-15 CVE-2022-20200 Missing Authorization vulnerability in Google Android 12.1
In updateApState of SoftApManager.java, there is a possible leak of hotspot state due to a missing permission check.
local
low complexity
google CWE-862
5.5
2022-06-15 CVE-2022-20201 Out-of-bounds Read vulnerability in Google Android 12.1
In getAppSize of InstalldNativeService.cpp, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
6.7
2022-06-15 CVE-2022-20202 Out-of-bounds Write vulnerability in Google Android 12.1
In ih264_resi_trans_quant_4x4_sse42 of ih264_resi_trans_quant_sse42.c, there is a possible out of bounds read due to a heap buffer overflow.
network
low complexity
google CWE-787
6.5
2022-06-15 CVE-2022-20205 Improper Input Validation vulnerability in Google Android 12.1
In isFileUri of FileUtil.java, there is a possible way to bypass the check for a file:// scheme due to improper input validation.
local
low complexity
google CWE-20
5.5
2022-06-15 CVE-2022-20206 Missing Authorization vulnerability in Google Android 12.1
In setPackageOrComponentEnabled of NotificationManagerService.java, there is a missing permission check.
local
low complexity
google CWE-862
5.5
2022-06-15 CVE-2022-20208 Out-of-bounds Read vulnerability in Google Android 12.1
In parseRecursively of cppbor_parse.cpp, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
4.4
2022-06-15 CVE-2022-20233 Out-of-bounds Write vulnerability in Google Android
In param_find_digests_internal and related functions of the Titan-M source, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
6.7
2022-06-15 CVE-2022-20125 Unspecified vulnerability in Google Android
In GBoard, there is a possible way to bypass factory reset protections due to a sandbox escape.
low complexity
google
6.8
2022-06-15 CVE-2022-20129 Unspecified vulnerability in Google Android
In registerPhoneAccount of PhoneAccountRegistrar.java, there is a possible way to prevent the user from selecting a phone account due to improper input validation.
local
low complexity
google
5.5
2022-06-15 CVE-2022-20132 Out-of-bounds Read vulnerability in Google Android
In lg_probe and related functions of hid-lg.c and other USB HID files, there is a possible out of bounds read due to improper input validation.
low complexity
google CWE-125
4.6