Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-12-15 CVE-2021-0952 Unspecified vulnerability in Google Android
In doCropPhoto of PhotoSelectionHandler.java, there is a possible permission bypass due to a confused deputy.
local
low complexity
google
5.0
2021-12-15 CVE-2021-0958 Unspecified vulnerability in Google Android 11.0/12.0
In update of km_compat.cpp, there is a possible loss of potentially sensitive data due to a logic error in the code.
local
low complexity
google
4.4
2021-12-15 CVE-2021-0961 Missing Initialization of Resource vulnerability in Google Android
In quota_proc_write of xt_quota2.c, there is a possible way to read kernel memory due to uninitialized data.
local
low complexity
google CWE-909
4.4
2021-12-15 CVE-2021-0964 Incorrect Conversion between Numeric Types vulnerability in Google Android
In C2SoftMP3::process() of C2SoftMp3Dec.cpp, there is a possible out of bounds write due to a heap buffer overflow.
network
low complexity
google CWE-681
6.5
2021-12-15 CVE-2021-0966 Missing Initialization of Resource vulnerability in Google Android 11.0/12.0
In code generated by BuildParcelFields of generate_cpp.cpp, there is a possible way for a crafted parcelable to reveal uninitialized memory of a target process due to uninitialized data.
local
low complexity
google CWE-909
5.5
2021-12-15 CVE-2021-0969 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0
In getTitle of AccessPoint.java, there is a possible unhandled exception due to a missing null check.
network
low complexity
google CWE-755
6.5
2021-12-15 CVE-2021-0971 Out-of-bounds Write vulnerability in Google Android
In MPEG4Source::read of MPEG4Extractor.cpp, there is a possible out of bounds write due to a missing bounds check.
network
low complexity
google CWE-787
6.5
2021-12-15 CVE-2021-0973 Improper Handling of Case Sensitivity vulnerability in Google Android 12.0
In isFileUri of UriUtil.java, there is a possible way to bypass ignoring file://URI attachment due to improper handling of case sensitivity.
local
low complexity
google CWE-178
5.0
2021-12-15 CVE-2021-0976 Out-of-bounds Read vulnerability in Google Android 12.0
In toBARK of floor0.c, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
6.5
2021-12-15 CVE-2021-0977 Out-of-bounds Write vulnerability in Google Android 12.0
In phNxpNHal_DtaUpdate of phNxpNciHal_dta.cc, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
6.7