Vulnerabilities > Google > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-02-11 CVE-2021-39687 Out-of-bounds Read vulnerability in Google Android
In HandleTransactionIoEvent of actuator_driver.cc, there is a possible out of bounds read due to a heap buffer overflow.
local
low complexity
google CWE-125
5.5
2022-02-11 CVE-2021-39688 Out-of-bounds Read vulnerability in Google Android
In TBD of TBD, there is a possible out of bounds read due to TBD.
local
low complexity
google CWE-125
5.5
2022-02-11 CVE-2022-22291 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Logging of excessive data vulnerability in telephony prior to SMR Feb-2022 Release 1 allows privileged attackers to get Cell Location Information through log of user device.
local
low complexity
google
5.5
2022-02-11 CVE-2022-23426 Unspecified vulnerability in Google Android 10.0/11.0
A vulnerability using PendingIntent in DeX Home and DeX for PC prior to SMR Feb-2022 Release 1 allows attackers to access files with system privilege.
local
low complexity
google
6.0
2022-02-11 CVE-2022-23429 Out-of-bounds Read vulnerability in Google Android 10.0/11.0/12.0
An improper boundary check in audio hal service prior to SMR Feb-2022 Release 1 allows attackers to read invalid memory and it leads to application crash.
local
low complexity
google CWE-125
4.4
2022-02-11 CVE-2022-23431 Classic Buffer Overflow vulnerability in Google Android 10.0/11.0/12.0
An improper boundary check in RPMB ldfw prior to SMR Feb-2022 Release 1 allows arbitrary memory write and code execution.
local
low complexity
google CWE-120
6.7
2022-02-11 CVE-2022-23432 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/12.0
An improper input validation in SMC_SRPMB_WSM handler of RPMB ldfw prior to SMR Feb-2022 Release 1 allows arbitrary memory write and code execution.
local
low complexity
google CWE-787
6.7
2022-02-11 CVE-2022-24001 Unspecified vulnerability in Google Android 12.0
Information disclosure vulnerability in Edge Panel prior to Android S(12) allows physical attackers to access screenshot in clipboard via Edge Panel.
low complexity
google
4.6
2022-02-11 CVE-2022-24925 Improper Input Validation vulnerability in Google Android 12.0
Improper input validation vulnerability in SettingsProvider prior to Android S(12) allows privileged attackers to trigger a permanent denial of service attack on a victim's devices.
network
low complexity
google CWE-20
6.5
2022-02-09 CVE-2022-20017 Improper Input Validation vulnerability in Google Android 10.0/11.0/12.0
In ion driver, there is a possible information disclosure due to an incorrect bounds check.
local
low complexity
google CWE-20
5.5