Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-10-07 CVE-2024-20097 Out-of-bounds Read vulnerability in Google Android 12.0
In vdec, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.4
2024-10-07 CVE-2024-20102 Out-of-bounds Read vulnerability in Google Android 13.0/14.0
In wlan driver, there is a possible out of bounds read due to improper input validation.
network
low complexity
google CWE-125
4.9
2024-09-27 CVE-2024-39431 Out-of-bounds Write vulnerability in Google Android 12.0/13.0/14.0
In UMTS RLC driver, there is a possible out of bounds write due to a missing bounds check.
low complexity
google CWE-787
4.5
2024-09-27 CVE-2024-39432 Out-of-bounds Write vulnerability in Google Android 12.0/13.0/14.0
In UMTS RLC driver, there is a possible out of bounds read due to a missing bounds check.
low complexity
google CWE-787
4.5
2024-09-27 CVE-2024-39433 Out-of-bounds Write vulnerability in Google Android 13.0/14.0
In drm service, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
4.4
2024-09-27 CVE-2024-39434 Out-of-bounds Read vulnerability in Google Android 13.0/14.0
In drm service, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.4
2024-09-13 CVE-2024-44096 Insecure Default Initialization of Resource vulnerability in Google Android
there is a possible arbitrary read due to an insecure default value.
local
low complexity
google CWE-1188
4.4
2024-09-11 CVE-2024-40656 Unspecified vulnerability in Google Android
In handleCreateConferenceComplete of ConnectionServiceWrapper.java, there is a possible way to reveal images across users due to a confused deputy.
local
low complexity
google
5.5
2024-09-11 CVE-2024-40659 Unspecified vulnerability in Google Android 14.0
In getRegistration of RemoteProvisioningService.java, there is a possible way to permanently disable the AndroidKeyStore key generation feature by updating the attestation keys of all installed apps due to improper input validation.
local
low complexity
google
5.5
2024-09-02 CVE-2024-20084 Out-of-bounds Read vulnerability in multiple products
In power, there is a possible out of bounds read due to a missing bounds check.
4.4