Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-02-26 CVE-2021-0366 Race Condition vulnerability in Google Android 10.0/11.0
In vpu, there is a possible memory corruption due to a race condition.
local
high complexity
google CWE-362
6.4
2021-02-10 CVE-2021-0338 Allocation of Resources Without Limits or Throttling vulnerability in Google Android 10.0/11.0
In SystemSettingsValidators, there is a possible permanent denial of service due to missing bounds checks on UI settings.
local
low complexity
google CWE-770
5.5
2021-02-10 CVE-2021-0335 Use After Free vulnerability in Google Android 11.0
In process of C2SoftHevcDec.cpp, there is a possible out of bounds write due to a use after free.
network
low complexity
google CWE-416
6.5
2021-02-06 CVE-2020-11836 Unspecified vulnerability in Google Android
OPPO Android Phone with MTK chipset and Android 8.1/9/10/11 versions have an information leak vulnerability.
local
low complexity
google
5.5
2021-02-04 CVE-2021-0350 Improper Input Validation vulnerability in Google Android
In ged, there is a possible system crash due to an improper input validation.
local
low complexity
google CWE-20
4.4
2021-02-04 CVE-2021-0349 Use After Free vulnerability in Google Android 10.0/11.0/9.0
In display driver, there is a possible memory corruption due to a use after free.
local
low complexity
google CWE-416
6.7
2021-02-04 CVE-2021-0348 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/9.0
In vpu, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2021-02-04 CVE-2021-0347 Out-of-bounds Read vulnerability in Google Android
In ccu, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.4
2021-02-04 CVE-2021-0346 Out-of-bounds Write vulnerability in Google Android 10.0/11.0
In vpu, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
6.7
2021-02-04 CVE-2021-0345 Improper Input Validation vulnerability in Google Android 10.0/11.0
In mobile_log_d, there is a possible escalation of privilege due to improper input validation.
local
low complexity
google CWE-20
6.7