Vulnerabilities > Google > Low

DATE CVE VULNERABILITY TITLE RISK
2022-04-11 CVE-2022-27832 Out-of-bounds Read vulnerability in Google Android 10.0/11.0/12.0
Improper boundary check in media.extractor library prior to SMR Apr-2022 Release 1 allows attackers to cause denial of service via a crafted media file.
local
low complexity
google CWE-125
2.1
2022-04-11 CVE-2022-27831 Out-of-bounds Read vulnerability in Google Android 10.0/11.0/12.0
Improper boundary check in sflvd_rdbuf_bits of libsflvextractor prior to SMR Apr-2022 Release 1 allows attackers to read out of bounds memory.
local
low complexity
google CWE-125
3.6
2022-04-11 CVE-2022-27822 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0/12.0
Information exposure vulnerability in ril property setting prior to SMR April-2022 Release 1 allows access to EF_RUIMID value without permission.
local
low complexity
google CWE-668
2.1
2022-04-11 CVE-2022-27575 Incorrect Authorization vulnerability in Google Android 10.0/11.0/12.0
Information exposure vulnerability in One UI Home prior to SMR April-2022 Release 1 allows to access currently launched foreground app information without permission.
local
low complexity
google CWE-863
3.3
2022-04-11 CVE-2022-26090 Unspecified vulnerability in Google Android 10.0/11.0
Improper access control vulnerability in SamsungContacts prior to SMR Apr-2022 Release 1 allows that attackers can access contact information without permission.
local
low complexity
google
3.3
2022-04-11 CVE-2022-25833 Improper Authentication vulnerability in Google Android 10.0/11.0
Improper authentication in ImsService prior to SMR Apr-2022 Release 1 allows attackers to get IMSI without READ_PRIVILEGED_PHONE_STATE permission.
local
low complexity
google CWE-287
2.1
2022-04-11 CVE-2022-20076 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
In ged, there is a possible memory corruption due to an incorrect error handling.
local
low complexity
google CWE-755
2.1
2022-04-11 CVE-2022-20066 Improper Handling of Exceptional Conditions vulnerability in Google Android 11.0/12.0
In atf (hwfde), there is a possible leak of sensitive information due to incorrect error handling.
local
low complexity
google CWE-755
2.1
2022-03-30 CVE-2021-39791 Information Exposure Through Discrepancy vulnerability in Google Android 12.1
In WallpaperManagerService, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
2.1
2022-03-30 CVE-2021-39788 Information Exposure Through Discrepancy vulnerability in Google Android 12.1
In TelecomManager, there is a possible way to check if a particular self managed phone account was registered on the device due to side channel information disclosure.
local
low complexity
google CWE-203
2.1