Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2024-02-15 CVE-2023-40106 Unspecified vulnerability in Google Android
In sanitizeSbn of NotificationManagerService.java, there is a possible way to launch an activity from the background due to BAL Bypass.
local
low complexity
google
7.8
2024-02-15 CVE-2023-40107 Use After Free vulnerability in Google Android
In ARTPWriter of ARTPWriter.cpp, there is a possible use after free due to uninitialized data.
local
low complexity
google CWE-416
7.8
2024-02-15 CVE-2023-40109 Unspecified vulnerability in Google Android
In createFromParcel of UsbConfiguration.java, there is a possible background activity launch (BAL) due to a permissions bypass.
local
low complexity
google
7.8
2024-02-15 CVE-2023-40110 Out-of-bounds Write vulnerability in Google Android
In multiple functions of MtpPacket.cpp, there is a possible out of bounds write due to a heap buffer overflow.
local
low complexity
google CWE-787
7.8
2024-02-15 CVE-2023-40111 Unspecified vulnerability in Google Android 14.0
In setMediaButtonReceiver of MediaSessionRecord.java, there is a possible way to send a pending intent on behalf of system_server due to a confused deputy.
local
low complexity
google
7.8
2024-02-15 CVE-2023-40114 Use After Free vulnerability in Google Android
In multiple functions of MtpFfsHandle.cpp , there is a possible out of bounds write due to a use after free.
local
low complexity
google CWE-416
7.8
2024-02-15 CVE-2023-40115 Use After Free vulnerability in Google Android
In readLogs of StatsService.cpp, there is a possible memory corruption due to a use after free.
local
low complexity
google CWE-416
7.8
2024-02-07 CVE-2024-22012 Out-of-bounds Write vulnerability in Google Android
there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2024-02-05 CVE-2024-20007 Out-of-bounds Write vulnerability in Google Android 12.0/13.0/14.0
In mp3 decoder, there is a possible out of bounds write due to a race condition.
network
high complexity
google CWE-787
7.5
2024-02-05 CVE-2024-20009 Out-of-bounds Write vulnerability in Google Android 12.0/13.0/14.0
In alac decoder, there is a possible out of bounds write due to an incorrect error handling.
network
low complexity
google CWE-787
8.8