Vulnerabilities > Google > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-12-16 CVE-2022-20576 Out-of-bounds Write vulnerability in Google Android
In externalOnRequest of rilapplication.cpp, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2022-12-16 CVE-2022-20577 Out-of-bounds Write vulnerability in Google Android
In OemSimAuthRequest::encode of wlandata.cpp, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2022-12-16 CVE-2022-20578 Out-of-bounds Write vulnerability in Google Android
In RadioImpl::setGsmBroadcastConfig of ril_service_legacy.cpp, there is a possible stack clash leading to memory corruption.
local
low complexity
google CWE-787
6.7
2022-12-16 CVE-2022-20579 Out-of-bounds Write vulnerability in Google Android
In RadioImpl::setCdmaBroadcastConfig of ril_service_legacy.cpp, there is a possible stack clash leading to memory corruption.
local
low complexity
google CWE-787
6.7
2022-12-16 CVE-2022-20580 Out-of-bounds Write vulnerability in Google Android
In ufdt_do_one_fixup of ufdt_overlay.c, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
6.7
2022-12-16 CVE-2022-20581 Use After Free vulnerability in Google Android
In the Pixel camera driver, there is a possible use after free due to a logic error in the code.
local
low complexity
google CWE-416
6.7
2022-12-16 CVE-2022-20583 Out-of-bounds Write vulnerability in Google Android
In ppmp_unprotect_mfcfw_buf of drm_fw.c, there is a possible out of bounds write due to improper input validation.
local
low complexity
google CWE-787
6.7
2022-12-16 CVE-2022-20588 Improper Check for Unusual or Exceptional Conditions vulnerability in Google Android
In sysmmu_map of sysmmu.c, there is a possible EoP due to a precondition check failure.
local
low complexity
google CWE-754
6.7
2022-12-16 CVE-2022-20589 Improper Input Validation vulnerability in Google Android
In valid_va_secbuf_check of drm_access_control.c, there is a possible ID due to improper input validation.
local
low complexity
google CWE-20
4.4
2022-12-16 CVE-2022-20590 Improper Input Validation vulnerability in Google Android
In valid_va_sec_mfc_check of drm_access_control.c, there is a possible information disclosure due to improper input validation.
local
low complexity
google CWE-20
5.5