Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-06-06 CVE-2022-21755 Out-of-bounds Read vulnerability in Google Android 11.0/12.0
In WLAN driver, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
4.4
2022-06-06 CVE-2022-21756 Out-of-bounds Read vulnerability in Google Android 11.0/12.0
In WLAN driver, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
4.4
2022-06-06 CVE-2022-21758 Double Free vulnerability in Google Android 11.0/12.0
In ccu, there is a possible memory corruption due to a double free.
local
low complexity
google CWE-415
6.7
2022-06-06 CVE-2022-21759 Out-of-bounds Write vulnerability in Google Android 11.0/12.0
In power service, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2022-06-06 CVE-2022-21760 Integer Overflow or Wraparound vulnerability in Google Android 12.0
In apusys driver, there is a possible system crash due to an integer overflow.
local
low complexity
google CWE-190
4.4
2022-06-06 CVE-2022-21761 Integer Overflow or Wraparound vulnerability in Google Android 10.0/11.0/12.0
In apusys driver, there is a possible system crash due to an integer overflow.
local
low complexity
google CWE-190
4.4
2022-06-06 CVE-2022-21762 Integer Overflow or Wraparound vulnerability in Google Android 12.0
In apusys driver, there is a possible system crash due to an integer overflow.
local
low complexity
google CWE-190
4.4
2022-05-10 CVE-2022-20117 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Google Android
In (TBD) of (TBD), there is a possible way to decrypt local data encrypted by the GSC due to improperly used crypto.
local
low complexity
google CWE-327
5.5
2022-05-10 CVE-2022-20119 Use of Uninitialized Resource vulnerability in Google Android
In private_handle_t of mali_gralloc_buffer.h, there is a possible information disclosure due to uninitialized data.
local
low complexity
google CWE-908
5.5
2022-05-10 CVE-2022-20121 Missing Authorization vulnerability in Google Android
In getNodeValue of USCCDMPlugin.java, there is a possible disclosure of ICCID due to a missing permission check.
local
low complexity
google CWE-862
5.5