Vulnerabilities > Google > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-03-04 CVE-2021-25345 Unspecified vulnerability in Google Android 10.0/11.0
Graphic format mismatch while converting video format in hwcomposer prior to SMR Mar-2021 Release 1 results in kernel panic due to unsupported format.
local
low complexity
google
5.5
2021-03-04 CVE-2021-25344 Missing Authorization vulnerability in Google Android 10.0/11.0
Missing permission check in knox_custom service prior to SMR Mar-2021 Release 1 allows attackers to gain access to device's serial number without permission.
local
low complexity
google CWE-862
5.5
2021-03-04 CVE-2021-25339 Improper Input Validation vulnerability in Google Android 10.0/11.0
Improper address validation in HArx in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows an attacker, given a compromised kernel, to corrupt EL2 memory.
low complexity
google CWE-20
5.2
2021-03-04 CVE-2021-25338 Unspecified vulnerability in Google Android 10.0/11.0
Improper memory access control in RKP in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows an attacker, given a compromised kernel, to write certain part of RKP EL2 memory region.
low complexity
google
5.2
2021-03-04 CVE-2021-25334 Improper Input Validation vulnerability in Google Android 10.0/11.0/9.0
Improper input check in wallpaper service in Samsung mobile devices prior to SMR Feb-2021 Release 1 allows untrusted application to cause permanent denial of service.
local
low complexity
google CWE-20
5.5
2021-03-02 CVE-2021-27901 Unspecified vulnerability in Google Android 11.0
An issue was discovered on LG mobile devices with Android OS 11 software.
low complexity
google
6.8
2021-02-26 CVE-2021-0406 Out-of-bounds Write vulnerability in Google Android 10.0/11.0
In cameraisp, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2021-02-26 CVE-2021-0405 Out-of-bounds Write vulnerability in Google Android 10.0/11.0
In performance driver, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2021-02-26 CVE-2021-0404 Improper Input Validation vulnerability in Google Android 11.0
In mobile_log_d, there is a possible information disclosure due to improper input validation.
local
low complexity
google CWE-20
4.4
2021-02-26 CVE-2021-0403 Missing Authorization vulnerability in Google Android 11.0
In netdiag, there is a possible information disclosure due to a missing permission check.
local
low complexity
google CWE-862
4.4