Vulnerabilities > Google > Low

DATE CVE VULNERABILITY TITLE RISK
2022-03-30 CVE-2021-39779 Incorrect Default Permissions vulnerability in Google Android 12.0
In getCallStateUsingPackage of Telecom Service, there is a missing permission check.
local
low complexity
google CWE-276
2.1
2022-03-30 CVE-2021-39778 Improper Input Validation vulnerability in Google Android 12.0
In Telecomm, there is a possible way to determine whether an app is installed, without query permissions, due to improper input validation.
local
low complexity
google CWE-20
2.1
2022-03-30 CVE-2021-39777 Exposure of Resource to Wrong Sphere vulnerability in Google Android 12.0
In Telephony, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check.
local
low complexity
google CWE-668
2.1
2022-03-30 CVE-2021-39775 Information Exposure Through Discrepancy vulnerability in Google Android 12.0
In People, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
2.1
2022-03-30 CVE-2021-39774 Out-of-bounds Read vulnerability in Google Android 12.0
In Bluetooth, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
2.1
2022-03-30 CVE-2021-39773 Information Exposure Through Discrepancy vulnerability in Google Android 12.0
In VpnManagerService, there is a possible disclosure of installed VPN packages due to side channel information disclosure.
local
low complexity
google CWE-203
2.1
2022-03-30 CVE-2021-39770 Incorrect Default Permissions vulnerability in Google Android 12.1
In Framework, there is a possible disclosure of the device owner package due to a missing permission check.
local
low complexity
google CWE-276
2.1
2022-03-30 CVE-2021-39769 Incorrect Default Permissions vulnerability in Google Android 12.1
In Device Policy, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check.
local
low complexity
google CWE-276
2.1
2022-03-30 CVE-2021-39766 Information Exposure Through Discrepancy vulnerability in Google Android 12.1
In Settings, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
2.1
2022-03-30 CVE-2021-39765 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android 12.1
In Gallery, there is a possible permission bypass due to a confused deputy.
local
low complexity
google CWE-610
2.1