Vulnerabilities > Google > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-02-12 CVE-2022-47371 Use After Free vulnerability in Google Android 10.0/11.0/12.0
In bt driver, there is a thread competition leads to early release of resources to be accessed.
local
low complexity
google CWE-416
5.5
2023-02-12 CVE-2022-47450 Missing Authorization vulnerability in Google Android 10.0/11.0/12.0
In wlan driver, there is a possible missing permission check.
local
low complexity
google CWE-862
5.5
2023-02-12 CVE-2022-47451 Integer Overflow or Wraparound vulnerability in Google Android 10.0/11.0/12.0
In wlan driver, there is a possible missing params check.
local
low complexity
google CWE-190
5.5
2023-02-12 CVE-2022-47452 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/12.0
In gnss driver, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
5.5
2023-02-07 CVE-2023-0697 Unspecified vulnerability in Google Chrome
Inappropriate implementation in Full screen mode in Google Chrome on Android prior to 110.0.5481.77 allowed a remote attacker to spoof the contents of the security UI via a crafted HTML page.
network
low complexity
google
6.5
2023-02-07 CVE-2023-0700 Unspecified vulnerability in Google Chrome
Inappropriate implementation in Download in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentially spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google
6.5
2023-02-07 CVE-2023-0704 Unspecified vulnerability in Google Chrome
Insufficient policy enforcement in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to bypass same origin policy and proxy settings via a crafted HTML page.
network
low complexity
google
6.5
2023-02-06 CVE-2022-32595 Out-of-bounds Read vulnerability in Google Android 10.0/11.0/12.0
In widevine, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
4.4
2023-02-06 CVE-2022-32642 Improper Synchronization vulnerability in Google Android 12.0
In ccd, there is a possible memory corruption due to a race condition.
local
high complexity
google CWE-662
6.4
2023-02-06 CVE-2022-32643 Improper Synchronization vulnerability in Google Android 12.0
In ccd, there is a possible use after free due to a race condition.
local
high complexity
google CWE-662
6.4