Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-10-30 CVE-2023-21366 Unspecified vulnerability in Google Android
In Scudo, there is a possible way for an attacker to predict heap allocation patterns due to insecure implementation/design.
local
low complexity
google
5.5
2023-10-30 CVE-2023-21367 Unspecified vulnerability in Google Android
In Scudo, there is a possible way to exploit certain heap OOB read/write issues due to an insecure implementation/design.
local
low complexity
google
5.5
2023-10-30 CVE-2023-21368 Out-of-bounds Read vulnerability in Google Android
In Audio, there is a possible out of bounds read due to missing bounds check.
local
low complexity
google CWE-125
5.5
2023-10-30 CVE-2023-21369 Unspecified vulnerability in Google Android
In Usage Access, there is a possible way to display a Settings usage access restriction toggle screen due to a permissions bypass.
local
low complexity
google
5.5
2023-10-30 CVE-2023-21370 Integer Overflow or Wraparound vulnerability in Google Android
In the Security Element API, there is a possible out of bounds write due to an integer overflow.
local
low complexity
google CWE-190
6.7
2023-10-30 CVE-2023-21371 Integer Overflow or Wraparound vulnerability in Google Android
In Secure Element, there is a possible out of bounds write due to an integer overflow.
local
low complexity
google CWE-190
6.7
2023-10-27 CVE-2023-40121 Deserialization of Untrusted Data vulnerability in Google Android
In appendEscapedSQLString of DatabaseUtils.java, there is a possible SQL injection due to unsafe deserialization.
local
low complexity
google CWE-502
5.5
2023-10-27 CVE-2023-40123 Unspecified vulnerability in Google Android
In updateActionViews of PipMenuView.java, there is a possible bypass of a multi user security boundary due to a confused deputy.
local
low complexity
google
5.5
2023-10-27 CVE-2023-40133 Unspecified vulnerability in Google Android
In multiple locations of DialogFillUi.java, there is a possible way to view another user's images due to a confused deputy.
local
low complexity
google
5.5
2023-10-27 CVE-2023-40139 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android
In FillUi of FillUi.java, there is a possible way to view another user's images due to a confused deputy.
local
low complexity
google CWE-610
5.5