Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2023-06-28 CVE-2023-21180 Out-of-bounds Read vulnerability in Google Android 13.0
In xmlParseTryOrFinish of parser.c, there is a possible out of bounds read due to a heap buffer overflow.
network
low complexity
google CWE-125
7.5
2023-06-28 CVE-2023-21183 Unspecified vulnerability in Google Android 13.0
In ForegroundUtils of ForegroundUtils.java, there is a possible way to read NFC tag data while the app is still in the background due to a logic error in the code.
local
low complexity
google
7.8
2023-06-28 CVE-2023-21184 Unspecified vulnerability in Google Android 13.0
In getCurrentPrivilegedPackagesForAllUsers of CarrierPrivilegesTracker.java, there is a possible permission bypass due to a logic error in the code.
local
low complexity
google
7.8
2023-06-28 CVE-2023-21185 Missing Authorization vulnerability in Google Android 13.0
In multiple functions of WifiNetworkFactory.java, there is a missing permission check.
local
low complexity
google CWE-862
7.8
2023-06-28 CVE-2023-21186 Out-of-bounds Read vulnerability in Google Android 13.0
In LogResponse of Dns.cpp, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2023-06-28 CVE-2023-21187 Unspecified vulnerability in Google Android 13.0
In onCreate of UsbAccessoryUriActivity.java, there is a possible way to escape the Setup Wizard due to a logic error in the code.
local
low complexity
google
7.8
2023-06-28 CVE-2023-21189 Improper Locking vulnerability in Google Android 13.0
In startLockTaskMode of LockTaskController.java, there is a possible bypass of lock task mode due to a logic error in the code.
local
low complexity
google CWE-667
7.3
2023-06-28 CVE-2023-21191 Unspecified vulnerability in Google Android 13.0
In fixNotification of NotificationManagerService.java, there is a possible bypass of notification hide preference due to a logic error in the code.
local
low complexity
google
7.8
2023-06-28 CVE-2023-21192 Improper Input Validation vulnerability in Google Android 13.0
In setInputMethodWithSubtypeIdLocked of InputMethodManagerService.java, there is a possible way to setup input methods that are not enabled due to improper input validation.
local
low complexity
google CWE-20
7.8
2023-06-28 CVE-2023-21193 Integer Overflow or Wraparound vulnerability in Google Android 13.0
In VideoFrame of VideoFrame.h, there is a possible abort due to an integer overflow.
network
low complexity
google CWE-190
7.5