Vulnerabilities > Google > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-03-16 | CVE-2021-39694 | Incorrect Default Permissions vulnerability in Google Android 12.0 In parse of RoleParser.java, there is a possible way for default apps to get permissions explicitly denied by the user due to a permissions bypass. | 7.2 |
2022-03-16 | CVE-2021-39695 | Improper Preservation of Permissions vulnerability in Google Android 11.0 In createOrUpdate of BasePermission.java, there is a possible permission bypass due to a logic error in the code. | 7.2 |
2022-03-16 | CVE-2021-39697 | Missing Authorization vulnerability in Google Android 11.0/12.0 In checkFileUriDestination of DownloadProvider.java, there is a possible way to bypass external storage private directories protection due to a missing permission check. | 7.2 |
2022-03-16 | CVE-2021-39698 | Use After Free vulnerability in Google Android In aio_poll_complete_work of aio.c, there is a possible memory corruption due to a use after free. | 7.2 |
2022-03-16 | CVE-2021-39703 | Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android 12.0 In updateState of UsbDeviceManager.java, there is a possible unauthorized access of files due to a confused deputy. | 7.2 |
2022-03-16 | CVE-2021-39707 | Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android 10.0/11.0/12.0 In onReceive of AppRestrictionsFragment.java, there is a possible way to start a phone call without permissions due to a confused deputy. | 7.2 |
2022-03-16 | CVE-2021-39709 | Unspecified vulnerability in Google Android 12.0 In sendSipAccountsRemovedNotification of SipAccountRegistry.java, there is a possible permission bypass due to an unsafe PendingIntent. | 7.2 |
2022-03-16 | CVE-2021-39713 | Race Condition vulnerability in multiple products Product: AndroidVersions: Android kernelAndroid ID: A-173788806References: Upstream kernel | 7.0 |
2022-03-16 | CVE-2021-39714 | Use After Free vulnerability in Google Android In ion_buffer_kmap_get of ion.c, there is a possible use-after-free due to an integer overflow. | 7.8 |
2022-03-16 | CVE-2021-39793 | Out-of-bounds Write vulnerability in Google Android In kbase_jd_user_buf_pin_pages of mali_kbase_mem.c, there is a possible out of bounds write due to a logic error in the code. | 7.2 |