Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2021-12-15 CVE-2021-0649 Incorrect Authorization vulnerability in Google Android 11.0
In stopVpnProfile of Vpn.java, there is a possible VPN profile reset due to a permissions bypass.
local
low complexity
google CWE-863
7.8
2021-12-15 CVE-2021-0675 Out-of-bounds Write vulnerability in Google Android
In alac decoder, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
7.8
2021-12-15 CVE-2021-0769 Unspecified vulnerability in Google Android 12.0
In onCreate of AllowBindAppWidgetActivity.java, there is a possible bypass of user interaction requirements due to unclear UI.
local
low complexity
google
7.3
2021-12-15 CVE-2021-0799 Unspecified vulnerability in Google Android 12.0
In ActivityThread.java, there is a possible way to collide the content provider's authorities.
local
low complexity
google
7.8
2021-12-15 CVE-2021-0918 Out-of-bounds Write vulnerability in Google Android 12.0
In gatt_process_notification of gatt_cl.cc, there is a possible out of bounds write due to a missing bounds check.
low complexity
google CWE-787
8.8
2021-12-15 CVE-2021-0921 Improper Input Validation vulnerability in Google Android 11.0
In ParsingPackageImpl of ParsingPackageImpl.java, there is a possible parcel serialization/deserialization mismatch due to improper input validation.
local
low complexity
google CWE-20
7.8
2021-12-15 CVE-2021-0922 Missing Authorization vulnerability in Google Android 11.0
In enforceCrossUserOrProfilePermission of PackageManagerService.java, there is a possible bypass of INTERACT_ACROSS_PROFILES permission due to a missing permission check.
local
low complexity
google CWE-862
7.8
2021-12-15 CVE-2021-0923 Missing Authorization vulnerability in Google Android 12.0
In createOrUpdate of Permission.java, there is a possible way to gain internal permissions due to a missing permission check.
local
low complexity
google CWE-862
7.8
2021-12-15 CVE-2021-0924 Out-of-bounds Read vulnerability in Google Android
In xhci_vendor_get_ops of xhci.c, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
7.8
2021-12-15 CVE-2021-0925 Out-of-bounds Read vulnerability in Google Android 12.0
In rw_t4t_sm_detect_ndef of rw_t4t.cc, there is a possible out of bounds read due to an incorrect bounds check.
network
low complexity
google CWE-125
7.5