Vulnerabilities > Google > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-05-20 CVE-2022-29194 Unspecified vulnerability in Google Tensorflow
TensorFlow is an open source platform for machine learning.
local
low complexity
google
5.5
2022-05-10 CVE-2022-20117 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Google Android
In (TBD) of (TBD), there is a possible way to decrypt local data encrypted by the GSC due to improperly used crypto.
local
low complexity
google CWE-327
5.5
2022-05-10 CVE-2022-20119 Use of Uninitialized Resource vulnerability in Google Android
In private_handle_t of mali_gralloc_buffer.h, there is a possible information disclosure due to uninitialized data.
local
low complexity
google CWE-908
5.5
2022-05-10 CVE-2022-20121 Missing Authorization vulnerability in Google Android
In getNodeValue of USCCDMPlugin.java, there is a possible disclosure of ICCID due to a missing permission check.
local
low complexity
google CWE-862
5.5
2022-05-10 CVE-2021-39670 Allocation of Resources Without Limits or Throttling vulnerability in Google Android 12.0/12.1
In setStream of WallpaperManager.java, there is a possible way to cause a permanent DoS due to improper input validation.
local
low complexity
google CWE-770
5.5
2022-05-10 CVE-2021-39700 Unspecified vulnerability in Google Android 10.0/11.0/12.0
In the policies of adbd.te, there was a logic error which caused the CTS Listening Ports Test to report invalid results.
local
low complexity
google
5.5
2022-05-10 CVE-2022-20008 Use of Uninitialized Resource vulnerability in Google Android
In mmc_blk_read_single of block.c, there is a possible way to read kernel heap memory due to uninitialized data.
low complexity
google CWE-908
4.6
2022-05-10 CVE-2022-20009 Out-of-bounds Write vulnerability in Google Android
In various functions of the USB gadget subsystem, there is a possible out of bounds write due to a missing bounds check.
low complexity
google CWE-787
6.8
2022-05-10 CVE-2022-20010 Out-of-bounds Read vulnerability in Google Android 12.0/12.1
In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to an incorrect bounds check.
low complexity
google CWE-125
6.5
2022-05-10 CVE-2022-20011 Missing Authorization vulnerability in Google Android
In getArray of NotificationManagerService.java , there is a possible leak of one user notifications to another due to missing check.
local
low complexity
google CWE-862
5.5