Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-05-03 CVE-2022-28782 Unspecified vulnerability in Google Android 11.0/12.0
Improper access control vulnerability in Contents To Window prior to SMR May-2022 Release 1 allows physical attacker to install package before completion of Setup wizard.
low complexity
google
4.6
2022-05-03 CVE-2022-28785 Out-of-bounds Read vulnerability in Google Android 10.0/11.0/12.0
Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leading to possible temporary denial of service.
local
low complexity
google CWE-125
5.5
2022-05-03 CVE-2022-28786 Out-of-bounds Read vulnerability in Google Android 10.0/11.0/12.0
Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leading to possible temporary denial of service.
local
low complexity
google CWE-125
5.5
2022-05-03 CVE-2022-28787 Out-of-bounds Read vulnerability in Google Android 10.0/11.0/12.0
Improper buffer size check logic in wmfextractor library prior to SMR May-2022 Release 1 allows out of bounds read leading to possible temporary denial of service.
local
low complexity
google CWE-125
5.5
2022-05-03 CVE-2022-28788 Out-of-bounds Read vulnerability in Google Android 10.0/11.0/12.0
Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leading to possible temporary denial of service.
local
low complexity
google CWE-125
5.5
2022-04-12 CVE-2021-39800 Use After Free vulnerability in Google Android
In ion_ioctl of ion-ioctl.c, there is a possible way to leak kernel head data due to a use after free.
local
low complexity
google CWE-416
5.5
2022-04-12 CVE-2021-39803 Use After Free vulnerability in Google Android
In ~Impl of C2AllocatorIon.cpp, there is a possible out of bounds read due to a use after free.
network
low complexity
google CWE-416
6.5
2022-04-12 CVE-2021-39804 NULL Pointer Dereference vulnerability in Google Android 11.0/12.0/12.1
In reinit of HeifDecoderImpl.cpp, there is a possible crash due to a missing null check.
network
low complexity
google CWE-476
6.5
2022-04-12 CVE-2021-39805 Out-of-bounds Read vulnerability in Google Android 12.0/12.1
In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check.
low complexity
google CWE-125
6.5
2022-04-12 CVE-2021-39814 Out-of-bounds Write vulnerability in Google Android
In ppmp_validate_wsm of drm_fw.c, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
6.7