Vulnerabilities > Google > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-10-25 CVE-2021-0661 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/9.0
In audio DSP, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
6.7
2021-10-25 CVE-2021-0662 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/9.0
In audio DSP, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
6.7
2021-10-25 CVE-2021-0663 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/9.0
In audio DSP, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
6.7
2021-10-25 CVE-2021-0935 Use After Free vulnerability in Google Android
In ip6_xmit of ip6_output.c, there is a possible out of bounds write due to a use after free.
local
low complexity
google CWE-416
6.7
2021-10-25 CVE-2021-0938 Use of Uninitialized Resource vulnerability in Google Android
In memzero_explicit of compiler-clang.h, there is a possible bypass of defense in depth due to uninitialized data.
local
low complexity
google CWE-908
5.5
2021-10-25 CVE-2021-0939 Out-of-bounds Read vulnerability in Google Android
In set_default_passthru_cfg of passthru.c, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.4
2021-10-25 CVE-2021-0940 Out-of-bounds Write vulnerability in Google Android
In TBD of TBD, there is a possible out of bounds write due to improper locking.
local
low complexity
google CWE-787
6.7
2021-10-25 CVE-2021-0941 Use After Free vulnerability in Google Android
In bpf_skb_change_head of filter.c, there is a possible out of bounds read due to a use after free.
local
low complexity
google CWE-416
6.7
2021-10-22 CVE-2021-0643 Missing Authorization vulnerability in Google Android 10.0/11.0/12.0
In getAllSubInfoList of SubscriptionController.java, there is a possible way to retrieve a long term identifier without the correct permissions due to a missing permission check.
local
low complexity
google CWE-862
5.5
2021-10-22 CVE-2021-0651 Improper Input Validation vulnerability in Google Android 10.0/11.0/9.0
In loadLabel of PackageItemInfo.java, there is a possible way to DoS a device by having a long label in an app due to incorrect input validation.
local
low complexity
google CWE-20
5.5