Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-09-06 CVE-2019-9274 Out-of-bounds Write vulnerability in Google Android
In the Android kernel in the mnh driver there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2019-09-06 CVE-2019-9273 Improper Locking vulnerability in Google Android
In the Android kernel in the synaptics_dsx_htc touchscreen driver there is a possible use after free due to improper locking.
local
low complexity
google CWE-667
6.7
2019-09-06 CVE-2019-9271 Use After Free vulnerability in Google Android
In the Android kernel in the mnh driver there is a race condition due to insufficient locking.
local
high complexity
google CWE-416
6.4
2019-09-06 CVE-2019-9248 Out-of-bounds Write vulnerability in Google Android
In the Android kernel in the FingerTipS touchscreen driver there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2019-09-06 CVE-2019-9245 Out-of-bounds Read vulnerability in Google Android
In the Android kernel in the f2fs driver there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.4
2019-09-05 CVE-2019-2180 Out-of-bounds Read vulnerability in Google Android 8.0/8.1/9.0
In ippSetValueTag of ipp.c in Android 8.0, 8.1 and 9, there is a possible out of bounds read due to improper input validation.
local
low complexity
google CWE-125
5.5
2019-09-05 CVE-2019-2179 Integer Overflow or Wraparound vulnerability in Google Android
In NDEF_MsgValidate of ndef_utils in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a possible out of bounds read due to an integer overflow.
local
low complexity
google CWE-190
5.5
2019-09-05 CVE-2019-2124 Unspecified vulnerability in Google Android
In ComposeActivityEmailExternal of ComposeActivityEmailExternal.java in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a possible way to silently attach files to an email due to a confused deputy.
local
low complexity
google
5.5
2019-09-05 CVE-2019-2103 Information Exposure vulnerability in Google Android 9.0
In Google Assistant in Android 9, there is a possible permissions bypass that allows the Assistant to take a screenshot of apps with FLAG_SECURE.
local
low complexity
google CWE-200
5.5
2019-08-20 CVE-2019-2137 Missing Authorization vulnerability in Google Android 9.0
In the endCall() function of TelecomManager.java, there is a possible Denial of Service due to a missing permission check.
local
low complexity
google CWE-862
5.5