Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2019-06-07 CVE-2019-2102 Permissions, Privileges, and Access Controls vulnerability in Google Android
In the Bluetooth Low Energy (BLE) specification, there is a provided example Long Term Key (LTK).
low complexity
google CWE-264
8.8
2019-06-07 CVE-2019-2099 Out-of-bounds Write vulnerability in Google Android
In nfa_rw_store_ndef_rx_buf of nfa_rw_act.cc, there is a possible out-of-bound write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2019-06-07 CVE-2019-2098 Missing Authorization vulnerability in Google Android
In areNotificationsEnabledForPackage of NotificationManagerService.java, there is a possible permissions bypass due to a missing permissions check.
local
low complexity
google CWE-862
7.8
2019-06-07 CVE-2019-2096 Double Free vulnerability in Google Android
In EffectRelease of EffectBundle.cpp, there is a possible memory corruption due to a double free.
local
low complexity
google CWE-415
7.8
2019-06-07 CVE-2019-2095 Use After Free vulnerability in Google Android 9.0
In callGenIDChangeListeners and related functions of SkPixelRef.cpp, there is a possible use after free due to a race condition.
local
high complexity
google CWE-416
7.0
2019-06-07 CVE-2019-2094 Out-of-bounds Write vulnerability in Google Android
In parseMPEGCCData of NuPlayerCCDecoder.cpp, there is a possible out of bounds write due to missing bounds checks.
local
low complexity
google CWE-787
7.8
2019-06-07 CVE-2019-2093 Out-of-bounds Write vulnerability in Google Android 9.0
In huff_dec_1D of nlc_dec.cpp, there is a possible out of bounds write due to a missing bounds check.
network
low complexity
google CWE-787
8.8
2019-06-07 CVE-2019-2092 Missing Authorization vulnerability in Google Android
In isSeparateProfileChallengeAllowed of DevicePolicyManagerService.java, there is a possible permissions bypass due to a missing permission check.
local
low complexity
google CWE-862
7.8
2019-06-07 CVE-2019-2091 Missing Authorization vulnerability in Google Android
In GetPermittedAccessibilityServicesForUser of DevicePolicyManagerService.java, there is a possible permissions bypass due to a missing permission check.
local
low complexity
google CWE-862
7.8
2019-06-07 CVE-2019-2090 Missing Authorization vulnerability in Google Android
In isPackageDeviceAdminOnAnyUser of PackageManagerService.java, there is a possible permissions bypass due to a missing permissions check.
local
low complexity
google CWE-862
7.8