Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-06-07 CVE-2022-30727 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
Improper handling of insufficient permissions vulnerability in addAppPackageNameToAllowList in PersonaManagerService prior to SMR Jun-2022 Release 1 allows local attackers to set some setting value in work space.
local
low complexity
google CWE-755
5.5
2022-06-07 CVE-2022-30709 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper input validation check logic vulnerability in SECRIL prior to SMR Jun-2022 Release 1 allows attackers to trigger crash.
network
low complexity
google CWE-20
5.3
2022-06-07 CVE-2022-30715 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper access control vulnerability in DofViewer prior to SMR Jun-2022 Release 1 allows attackers to control floating system alert window.
network
low complexity
google
5.3
2022-06-07 CVE-2022-30716 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
Unprotected broadcast in sendIntentForToastDumpLog in DisplayToast prior to SMR Jun-2022 Release 1 allows untrusted applications to access toast message information from device.
network
low complexity
google CWE-755
5.3
2022-06-07 CVE-2022-30719 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper input validation check logic vulnerability in libsmkvextractor prior to SMR Jun-2022 Release 1 allows attackers to trigger crash.
network
low complexity
google CWE-20
5.3
2022-06-07 CVE-2022-30720 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper input validation check logic vulnerability in libsmkvextractor prior to SMR Jun-2022 Release 1 allows attackers to trigger crash.
network
low complexity
google CWE-20
5.3
2022-06-07 CVE-2022-30721 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper input validation check logic vulnerability in libsmkvextractor prior to SMR Jun-2022 Release 1 allows attackers to trigger crash.
network
low complexity
google CWE-20
5.3
2022-06-07 CVE-2022-30723 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
Broadcasting Intent including the BluetoothDevice object without proper restriction of receivers in activateVoiceRecognitionWithDevice function of Bluetooth prior to SMR Jun-2022 Release 1 leaks MAC address of the connected Bluetooth device.
low complexity
google CWE-755
4.3
2022-06-07 CVE-2022-30724 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
Broadcasting Intent including the BluetoothDevice object without proper restriction of receivers in sendIntentSessionCompleted function of Bluetooth prior to SMR Jun-2022 Release 1 leaks MAC address of the connected Bluetooth device.
low complexity
google CWE-755
4.3
2022-06-07 CVE-2022-30725 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
Broadcasting Intent including the BluetoothDevice object without proper restriction of receivers in sendIntentSessionError function of Bluetooth prior to SMR Jun-2022 Release 1 leaks MAC address of the connected Bluetooth device.
low complexity
google CWE-755
4.3