Vulnerabilities > Google

DATE CVE VULNERABILITY TITLE RISK
2024-11-13 CVE-2024-43082 Unspecified vulnerability in Google Android 12.0/12.1
In onActivityResult of EditUserPhotoController.java, there is a possible cross-user media read due to a confused deputy.
local
low complexity
google
5.5
2024-11-13 CVE-2024-43083 Allocation of Resources Without Limits or Throttling vulnerability in Google Android
In validate of WifiConfigurationUtil.java , there is a possible persistent denial of service due to resource exhaustion.
local
low complexity
google CWE-770
5.5
2024-11-13 CVE-2024-43084 Unspecified vulnerability in Google Android
In visitUris of multiple files, there is a possible information disclosure due to a confused deputy.
local
low complexity
google
5.5
2024-11-13 CVE-2024-43085 Unspecified vulnerability in Google Android
In handleMessage of UsbDeviceManager.java, there is a possible method to access device contents over USB without unlocking the device due to a logic error in the code.
local
low complexity
google
7.8
2024-11-13 CVE-2024-43086 Unspecified vulnerability in Google Android
In validateAccountsInternal of AccountManagerService.java, there is a possible way to leak account credentials to a third party app due to a confused deputy.
local
low complexity
google
5.5
2024-11-13 CVE-2024-43087 Unspecified vulnerability in Google Android
In getInstalledAccessibilityPreferences of AccessibilitySettings.java, there is a possible way to hide an enabled accessibility service in the accessibility service settings due to a logic error in the code.
local
low complexity
google
7.8
2024-11-13 CVE-2024-43088 Missing Authorization vulnerability in Google Android
In multiple functions in AppInfoBase.java, there is a possible way to manipulate app permission settings belonging to another user on the device due to a missing permission check.
local
low complexity
google CWE-862
7.8
2024-11-13 CVE-2024-43089 Missing Authorization vulnerability in Google Android
In updateInternal of MediaProvider.java , there is a possible access of another app's files due to a missing permission check.
local
low complexity
google CWE-862
7.8
2024-11-13 CVE-2024-43090 Missing Authorization vulnerability in Google Android
In multiple locations, there is a possible cross-user image read due to a missing permission check.
local
low complexity
google CWE-862
5.0
2024-11-13 CVE-2024-43091 Integer Overflow or Wraparound vulnerability in Google Android
In filterMask of SkEmbossMaskFilter.cpp, there is a possible out of bounds write due to an integer overflow.
network
low complexity
google CWE-190
critical
9.8