Vulnerabilities > Google > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-06-15 CVE-2022-20129 Unspecified vulnerability in Google Android
In registerPhoneAccount of PhoneAccountRegistrar.java, there is a possible way to prevent the user from selecting a phone account due to improper input validation.
local
low complexity
google
5.5
2022-06-15 CVE-2022-20132 Out-of-bounds Read vulnerability in Google Android
In lg_probe and related functions of hid-lg.c and other USB HID files, there is a possible out of bounds read due to improper input validation.
low complexity
google CWE-125
4.6
2022-06-07 CVE-2022-30727 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
Improper handling of insufficient permissions vulnerability in addAppPackageNameToAllowList in PersonaManagerService prior to SMR Jun-2022 Release 1 allows local attackers to set some setting value in work space.
local
low complexity
google CWE-755
5.5
2022-06-07 CVE-2022-30709 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper input validation check logic vulnerability in SECRIL prior to SMR Jun-2022 Release 1 allows attackers to trigger crash.
network
low complexity
google CWE-20
5.3
2022-06-07 CVE-2022-30715 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper access control vulnerability in DofViewer prior to SMR Jun-2022 Release 1 allows attackers to control floating system alert window.
network
low complexity
google
5.3
2022-06-07 CVE-2022-30716 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
Unprotected broadcast in sendIntentForToastDumpLog in DisplayToast prior to SMR Jun-2022 Release 1 allows untrusted applications to access toast message information from device.
network
low complexity
google CWE-755
5.3
2022-06-07 CVE-2022-30719 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper input validation check logic vulnerability in libsmkvextractor prior to SMR Jun-2022 Release 1 allows attackers to trigger crash.
network
low complexity
google CWE-20
5.3
2022-06-07 CVE-2022-30720 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper input validation check logic vulnerability in libsmkvextractor prior to SMR Jun-2022 Release 1 allows attackers to trigger crash.
network
low complexity
google CWE-20
5.3
2022-06-07 CVE-2022-30721 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
Improper input validation check logic vulnerability in libsmkvextractor prior to SMR Jun-2022 Release 1 allows attackers to trigger crash.
network
low complexity
google CWE-20
5.3
2022-06-07 CVE-2022-30723 Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0/12.0
Broadcasting Intent including the BluetoothDevice object without proper restriction of receivers in activateVoiceRecognitionWithDevice function of Bluetooth prior to SMR Jun-2022 Release 1 leaks MAC address of the connected Bluetooth device.
low complexity
google CWE-755
4.3