Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-08-31 CVE-2020-25047 Unspecified vulnerability in Google Android 10.0/9.0
An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (released in China and India) software.
local
low complexity
google
5.5
2020-08-31 CVE-2020-25046 Information Exposure Through Log Files vulnerability in Google Android
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software.
local
low complexity
google CWE-532
5.5
2020-08-11 CVE-2020-0258 Incomplete Cleanup vulnerability in Google Android 10.0
In stopZygoteLocked of AppZygote.java, there is an insufficient cleanup.
local
low complexity
google CWE-459
5.5
2020-08-11 CVE-2020-0256 Out-of-bounds Write vulnerability in multiple products
In LoadPartitionTable of gpt.cc, there is a possible out of bounds write due to a missing bounds check.
low complexity
google debian CWE-787
6.8
2020-08-11 CVE-2020-0250 Missing Authorization vulnerability in Google Android 10.0
In requestCellInfoUpdateInternal of PhoneInterfaceManager.java, there is a missing permission check.
local
low complexity
google CWE-862
5.5
2020-08-11 CVE-2020-0249 Unspecified vulnerability in Google Android
In postInstantAppNotif of InstantAppNotifier.java, there is a possible permission bypass due to a PendingIntent error.
local
low complexity
google
5.5
2020-08-11 CVE-2020-0248 Unspecified vulnerability in Google Android 10.0
In postInstantAppNotif of InstantAppNotifier.java, there is a possible permission bypass due to a PendingIntent error.
local
low complexity
google
5.5
2020-08-11 CVE-2020-0247 Infinite Loop vulnerability in Google Android 10.0/8.0/8.1
In Threshold::getHistogram of ImageProcessHelper.java, there is a possible crash loop due to an uncaught exception.
local
low complexity
google CWE-835
5.5
2020-08-11 CVE-2020-0239 Missing Authorization vulnerability in Google Android 10.0/9.0
In getDocumentMetadata of DocumentsContract.java, there is a possible disclosure of location metadata from a file due to a permissions bypass.
local
low complexity
google CWE-862
5.5
2020-07-17 CVE-2020-0122 Incorrect Default Permissions vulnerability in Google Android
In the permission declaration for com.google.android.providers.gsf.permission.WRITE_GSERVICES in AndroidManifest.xml, there is a possible permissions bypass.
local
low complexity
google CWE-276
6.7