Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2020-06-11 CVE-2020-0208 Incorrect Default Permissions vulnerability in Google Android 10.0
In multiple functions of AccountManager.java, there is a possible permissions bypass.
local
low complexity
google CWE-276
7.8
2020-06-11 CVE-2020-0204 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Google Android 10.0
In InstallPackage of package.cpp, there is a possible bypass of a signature check due to a Time of Check/Time of Use condition.
local
high complexity
google CWE-367
7.0
2020-06-11 CVE-2020-0203 Improper Resource Shutdown or Release vulnerability in Google Android 10.0
In freeIsolatedUidLocked of ProcessList.java, there is a possible UID reuse due to improper cleanup.
local
low complexity
google CWE-404
7.8
2020-06-11 CVE-2020-0202 Missing Authorization vulnerability in Google Android 11.0
In onHandleIntent of TraceService.java, there is a possible bypass of developer settings requirements for capturing system traces due to a missing permission check.
local
low complexity
google CWE-862
7.8
2020-06-11 CVE-2020-0198 Integer Overflow or Wraparound vulnerability in multiple products
In exif_data_load_data_content of exif-data.c, there is a possible UBSAN abort due to an integer overflow.
7.5
2020-06-11 CVE-2020-0194 Integer Overflow or Wraparound vulnerability in Google Android 10.0
In ihevcd_parse_slice_header of ihevcd_parse_slice_header.c, there is a possible out of bounds write due to an integer overflow.
network
low complexity
google CWE-190
8.8
2020-06-11 CVE-2020-0190 Out-of-bounds Write vulnerability in Google Android 10.0
In ideint_weave_blk of ideint_utils.c, there is a possible out of bounds write due to a heap buffer overflow.
network
low complexity
google CWE-787
8.8
2020-06-11 CVE-2020-0188 Unspecified vulnerability in Google Android 10.0
In onCreatePermissionRequest of SettingsSliceProvider.java, there is a possible permissions bypass due to a PendingIntent error.
local
low complexity
google
7.8
2020-06-11 CVE-2020-0183 Incomplete Cleanup vulnerability in Google Android 10.0
In handleMessage of BluetoothManagerService, there is an incomplete reset.
local
low complexity
google CWE-459
7.8
2020-06-11 CVE-2020-0181 Integer Overflow or Wraparound vulnerability in multiple products
In exif_data_load_data_thumbnail of exif-data.c, there is a possible denial of service due to an integer overflow.
network
low complexity
google fedoraproject libexif-project CWE-190
7.5