Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-03-16 CVE-2021-39730 Out-of-bounds Read vulnerability in Google Android
In TBD of TBD, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.4
2022-03-16 CVE-2021-39731 Out-of-bounds Write vulnerability in Google Android
In ProtocolStkProactiveCommandAdapter::Init of protocolstkadapter.cpp, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
6.7
2022-03-16 CVE-2021-39733 Out-of-bounds Write vulnerability in Google Android
In amcs_cdev_unlocked_ioctl of audiometrics.c, there is a possible out of bounds write due to improper input validation.
local
low complexity
google CWE-787
6.7
2022-03-16 CVE-2021-39735 Race Condition vulnerability in Google Android
In gasket_alloc_coherent_memory of gasket_page_table.c, there is a possible memory corruption due to a race condition.
local
high complexity
google CWE-362
6.4
2022-03-16 CVE-2021-39736 Integer Overflow or Wraparound vulnerability in Google Android
In prepare_io_entry and prepare_response of lwis_ioctl.c and lwis_periodic_io.c, there is a possible out of bounds write due to an integer overflow.
local
low complexity
google CWE-190
6.7
2022-03-16 CVE-2021-39792 Race Condition vulnerability in Google Android
In usb_gadget_giveback_request of core.c, there is a possible use after free out of bounds read due to a race condition.
local
high complexity
google CWE-362
4.1
2022-03-10 CVE-2022-25816 Improper Authentication vulnerability in Google Android 10.0/11.0/12.0
Improper authentication in Samsung Lock and mask apps setting prior to SMR Mar-2022 Release 1 allows attacker to change enable/disable without authentication
low complexity
google CWE-287
4.6
2022-03-10 CVE-2022-25819 Out-of-bounds Read vulnerability in Google Android 10.0/11.0/12.0
OOB read vulnerability in hdcp2 device node prior to SMR Mar-2022 Release 1 allow an attacker to view Kernel stack memory.
local
low complexity
google CWE-125
5.5
2022-03-10 CVE-2022-25820 Improper Restriction of Excessive Authentication Attempts vulnerability in Google Android 11.0/12.0
A vulnerable design in fingerprint matching algorithm prior to SMR Mar-2022 Release 1 allows physical attackers to perform brute force attack on screen lock password.
low complexity
google CWE-307
4.6
2022-03-10 CVE-2022-25822 Use After Free vulnerability in Google Android 10.0/11.0/12.0
An use after free vulnerability in sdp driver prior to SMR Mar-2022 Release 1 allows kernel crash.
local
low complexity
google CWE-416
6.2