Vulnerabilities > Google > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-01-03 CVE-2022-32645 Improper Synchronization vulnerability in Google Android 11.0/12.0/13.0
In vow, there is a possible information disclosure due to a race condition.
local
high complexity
google CWE-662
4.1
2023-01-03 CVE-2022-32646 Out-of-bounds Write vulnerability in Google Android 11.0/12.0/13.0
In gpu drm, there is a possible stack overflow due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2023-01-03 CVE-2022-32647 Out-of-bounds Write vulnerability in Google Android 12.0/13.0
In ccu, there is a possible out of bounds write due to improper input validation.
local
low complexity
google CWE-787
6.7
2023-01-03 CVE-2022-32648 Improper Synchronization vulnerability in Google Android 11.0/12.0
In disp, there is a possible use after free due to a race condition.
local
high complexity
google CWE-662
6.4
2023-01-03 CVE-2022-32649 Incorrect Calculation of Buffer Size vulnerability in Google Android 12.0
In jpeg, there is a possible use after free due to a logic error.
local
low complexity
google CWE-131
6.7
2023-01-03 CVE-2022-32650 Incorrect Calculation of Buffer Size vulnerability in Google Android 12.0/13.0
In mtk-isp, there is a possible use after free due to a logic error.
local
low complexity
google CWE-131
6.7
2023-01-03 CVE-2022-32651 Incorrect Calculation of Buffer Size vulnerability in Google Android 12.0
In mtk-aie, there is a possible use after free due to a logic error.
local
low complexity
google CWE-131
6.7
2023-01-03 CVE-2022-32652 Improper Input Validation vulnerability in Google Android 11.0/12.0/13.0
In mtk-aie, there is a possible use after free due to a logic error.
local
low complexity
google CWE-20
6.7
2023-01-03 CVE-2022-32653 Improper Input Validation vulnerability in Google Android 12.0/13.0
In mtk-aie, there is a possible use after free due to a logic error.
local
low complexity
google CWE-20
6.7
2023-01-02 CVE-2021-21200 Out-of-bounds Read vulnerability in Google Chrome
Out of bounds read in WebUI Settings in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
network
low complexity
google CWE-125
5.4