Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-06-28 CVE-2023-21158 Out-of-bounds Read vulnerability in Google Android
In encode of miscdata.cpp, there is a possible out of bounds read due to a heap buffer overflow.
local
low complexity
google CWE-125
4.4
2023-06-28 CVE-2023-21159 Out-of-bounds Write vulnerability in Google Android
In Parse of simdata.cpp, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2023-06-28 CVE-2023-21160 Out-of-bounds Read vulnerability in Google Android
In BuildSetTcsFci of protocolmiscbuilder.cpp, there is a possible out of bounds read due to a heap buffer overflow.
local
low complexity
google CWE-125
5.5
2023-06-28 CVE-2023-21161 Out-of-bounds Write vulnerability in Google Android
In Parse of simdata.cpp, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2023-06-28 CVE-2023-21167 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 13.0
In setProfileName of DevicePolicyManagerService.java, there is a possible way to crash the SystemUI menu due to a missing bounds check.
local
low complexity
google CWE-119
5.5
2023-06-28 CVE-2023-21168 Out-of-bounds Read vulnerability in Google Android 13.0
In convertCbYCrY of ColorConverter.cpp, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
5.5
2023-06-28 CVE-2023-21169 Out-of-bounds Read vulnerability in Google Android 13.0
In inviteInternal of p2p_iface.cpp, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.4
2023-06-28 CVE-2023-21170 Out-of-bounds Read vulnerability in Google Android 13.0
In executeSetClientTarget of ComposerCommandEngine.h, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.4
2023-06-28 CVE-2023-21171 Unspecified vulnerability in Google Android 13.0
In verifyInputEvent of InputDispatcher.cpp, there is a possible way to conduct click fraud due to side channel information disclosure.
local
low complexity
google
6.7
2023-06-28 CVE-2023-21173 Missing Authorization vulnerability in Google Android 13.0
In multiple methods of DataUsageList.java, there is a possible way to learn about admin user's network activities due to a missing permission check.
local
low complexity
google CWE-862
5.5