Vulnerabilities > Google > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-12-15 CVE-2021-0971 Out-of-bounds Write vulnerability in Google Android
In MPEG4Source::read of MPEG4Extractor.cpp, there is a possible out of bounds write due to a missing bounds check.
network
low complexity
google CWE-787
6.5
2021-12-15 CVE-2021-0973 Improper Handling of Case Sensitivity vulnerability in Google Android 12.0
In isFileUri of UriUtil.java, there is a possible way to bypass ignoring file://URI attachment due to improper handling of case sensitivity.
local
low complexity
google CWE-178
5.0
2021-12-15 CVE-2021-0976 Out-of-bounds Read vulnerability in Google Android 12.0
In toBARK of floor0.c, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
6.5
2021-12-15 CVE-2021-0977 Out-of-bounds Write vulnerability in Google Android 12.0
In phNxpNHal_DtaUpdate of phNxpNciHal_dta.cc, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
6.7
2021-12-15 CVE-2021-0979 Incorrect Default Permissions vulnerability in Google Android 12.0
In isRequestPinItemSupported of ShortcutService.java, there is a possible cross-user leak of packages in which the default launcher supports requests to create pinned shortcuts due to a permissions bypass.
local
low complexity
google CWE-276
5.5
2021-12-15 CVE-2021-0986 Missing Authorization vulnerability in Google Android 12.0
In hasGrantedPolicy of DevicePolicyManagerService.java, there is a possible information disclosure about the device owner, profile owner, or device admin due to a logic error in the code.
local
low complexity
google CWE-862
5.5
2021-12-15 CVE-2021-0993 Unspecified vulnerability in Google Android 12.0
In getOffsetBeforeAfter of TextLine.java, there is a possible denial of service due to resource exhaustion.
network
low complexity
google
6.5
2021-12-15 CVE-2021-0996 Out-of-bounds Read vulnerability in Google Android 12.0
In nfaHciCallback of HciEventManager.cpp, there is a possible out of bounds read due to a missing bounds check.
low complexity
google CWE-125
4.5
2021-12-15 CVE-2021-0997 Information Exposure Through Log Files vulnerability in Google Android 12.0
In handleUpdateNetworkState of GnssNetworkConnectivityHandler.java , there is a possible APN disclosure due to log information disclosure.
local
low complexity
google CWE-532
5.5
2021-12-15 CVE-2021-0998 Out-of-bounds Read vulnerability in Google Android 12.0
In 'ih264e_find_bskip_params()' of ih264e_me.c, there is a possible out of bounds read due to a heap buffer overflow.
local
low complexity
google CWE-125
5.5