Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-10-08 CVE-2023-40649 Missing Authorization vulnerability in Google Android 11.0/12.0
In Messaging, there is a possible missing permission check.
local
low complexity
google CWE-862
5.5
2023-10-08 CVE-2023-40650 Missing Authorization vulnerability in Google Android 11.0/12.0
In Telecom service, there is a possible missing permission check.
local
low complexity
google CWE-862
5.5
2023-10-08 CVE-2023-40651 Out-of-bounds Write vulnerability in Google Android 11.0/12.0/13.0
In urild service, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
4.4
2023-10-08 CVE-2023-40652 Out-of-bounds Write vulnerability in Google Android 11.0
In jpg driver, there is a possible out of bounds write due to improper input validation.
local
low complexity
google CWE-787
4.4
2023-10-08 CVE-2023-40653 Missing Authorization vulnerability in Google Android 11.0
In FW-PackageManager, there is a possible missing permission check.
local
low complexity
google CWE-862
6.7
2023-10-08 CVE-2023-40654 Missing Authorization vulnerability in Google Android 11.0
In FW-PackageManager, there is a possible missing permission check.
local
low complexity
google CWE-862
6.7
2023-10-06 CVE-2023-21244 Missing Authorization vulnerability in Google Android
In visitUris of Notification.java, there is a possible bypass of user profile boundaries due to a missing permission check.
local
low complexity
google CWE-862
6.7
2023-10-06 CVE-2023-21252 Unspecified vulnerability in Google Android
In validatePassword of WifiConfigurationUtil.java, there is a possible way to get the device into a boot loop due to improper input validation.
local
low complexity
google
5.5
2023-10-06 CVE-2023-21253 Resource Exhaustion vulnerability in Google Android
In multiple locations, there is a possible way to crash multiple system services due to resource exhaustion.
local
low complexity
google CWE-400
5.5
2023-10-06 CVE-2023-21291 Missing Authorization vulnerability in Google Android
In visitUris of Notification.java, there is a possible way to reveal image contents from another user due to a missing permission check.
local
low complexity
google CWE-862
5.5