Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-10-11 CVE-2023-35653 Incorrect Authorization vulnerability in Google Android
In TBD of TBD, there is a possible way to access location information due to a permissions bypass.
local
low complexity
google CWE-863
4.4
2023-10-11 CVE-2023-35654 Out-of-bounds Read vulnerability in Google Android
In ctrl_roi of stmvl53l1_module.c, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
6.7
2023-10-11 CVE-2023-35655 Out-of-bounds Read vulnerability in Google Android
In CanConvertPadV2Op of darwinn_mlir_converter_aidl.cc, there is a possible out of bounds read due to a heap buffer overflow.
local
low complexity
google CWE-125
6.7
2023-10-11 CVE-2023-35660 Use After Free vulnerability in Google Android
In lwis_transaction_client_cleanup of lwis_transaction.c, there is a possible way to corrupt memory due to a use after free.
local
low complexity
google CWE-416
6.7
2023-10-11 CVE-2023-35645 Out-of-bounds Write vulnerability in Google Android
In tbd of tbd, there is a possible memory corruption due to a race condition.
local
high complexity
google CWE-787
6.4
2023-10-08 CVE-2023-40631 Missing Authorization vulnerability in Google Android 10.0/11.0/12.0
In Dialer, there is a possible missing permission check.
local
low complexity
google CWE-862
4.4
2023-10-08 CVE-2023-40633 Missing Authorization vulnerability in Google Android 11.0/12.0/13.0
In phasecheckserver, there is a possible missing permission check.
local
low complexity
google CWE-862
5.5
2023-10-08 CVE-2023-40636 Missing Authorization vulnerability in Google Android 11.0
In telecom service, there is a possible way to write permission usage records of an app due to a missing permission check.
local
low complexity
google CWE-862
4.4
2023-10-08 CVE-2023-40637 Missing Authorization vulnerability in Google Android 10.0/11.0/12.0
In telecom service, there is a possible missing permission check.
local
low complexity
google CWE-862
5.5
2023-10-08 CVE-2023-40638 Missing Authorization vulnerability in Google Android 11.0
In Telecom service, there is a possible missing permission check.
local
low complexity
google CWE-862
4.4