Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-09-02 CVE-2024-20088 Out-of-bounds Read vulnerability in Google Android 12.0/13.0/14.0
In keyinstall, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.4
2024-08-15 CVE-2024-34742 Unspecified vulnerability in Google Android 14.0
In shouldWrite of OwnersData.java, there is a possible edge case that prevents MDM policies from being persisted due to a logic error in the code.
local
low complexity
google
5.5
2024-07-01 CVE-2024-39427 Out-of-bounds Write vulnerability in Google Android 12.0/13.0/14.0
In trusty service, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
4.4
2024-07-01 CVE-2024-39428 Out-of-bounds Write vulnerability in Google Android 12.0/13.0/14.0
In trusty service, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
4.4
2024-07-01 CVE-2024-39429 Out-of-bounds Write vulnerability in Google Android 12.0
In faceid servive, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.2
2024-07-01 CVE-2024-39430 Out-of-bounds Write vulnerability in Google Android 12.0
In faceid servive, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.2
2024-06-13 CVE-2024-29778 Out-of-bounds Read vulnerability in Google Android
In ProtocolPsDedicatedBearInfoAdapter::processQosSession of protocolpsadapter.cpp, there is a possible out of bounds read due to a missing bounds check.
local
high complexity
google CWE-125
4.7
2024-06-13 CVE-2024-29780 Use of Uninitialized Resource vulnerability in Google Android
In hwbcc_ns_deprivilege of trusty/user/base/lib/hwbcc/client/hwbcc.c, there is a possible uninitialized stack data disclosure due to uninitialized data.
local
low complexity
google CWE-908
5.5
2024-06-13 CVE-2024-29785 Use of Uninitialized Resource vulnerability in Google Android
In aur_get_state of aurora.c, there is a possible information disclosure due to uninitialized data.
local
low complexity
google CWE-908
5.5
2024-06-13 CVE-2024-32893 Incorrect Type Conversion or Cast vulnerability in Google Android
In _s5e9865_mif_set_rate of exynos_dvfs.c, there is a possible out of bounds read due to improper casting.
local
low complexity
google CWE-704
5.5