Filtered by vendor Google
Subscriptions
Filtered by product Android
Subscriptions
Total
8700 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2022-26096 | 1 Google | 1 Android | 2024-11-21 | 5.9 Medium |
Null pointer dereference vulnerability in parser_ispe function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker. | ||||
CVE-2022-26095 | 1 Google | 1 Android | 2024-11-21 | 5.9 Medium |
Null pointer dereference vulnerability in parser_colr function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker. | ||||
CVE-2022-26094 | 1 Google | 1 Android | 2024-11-21 | 5.9 Medium |
Null pointer dereference vulnerability in parser_auxC function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker. | ||||
CVE-2022-26093 | 1 Google | 1 Android | 2024-11-21 | 5.9 Medium |
Null pointer dereference vulnerability in parser_irot function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker. | ||||
CVE-2022-26092 | 1 Google | 1 Android | 2024-11-21 | 7.4 High |
Improper boundary check in Quram Agif library prior to SMR Apr-2022 Release 1 allows arbitrary code execution. | ||||
CVE-2022-26091 | 1 Google | 1 Android | 2024-11-21 | 5.7 Medium |
Improper access control vulnerability in Knox Manage prior to SMR Apr-2022 Release 1 allows that physical attackers can bypass Knox Manage using a function key of hardware keyboard. | ||||
CVE-2022-26090 | 1 Google | 1 Android | 2024-11-21 | 5.3 Medium |
Improper access control vulnerability in SamsungContacts prior to SMR Apr-2022 Release 1 allows that attackers can access contact information without permission. | ||||
CVE-2022-25833 | 1 Google | 1 Android | 2024-11-21 | 3.3 Low |
Improper authentication in ImsService prior to SMR Apr-2022 Release 1 allows attackers to get IMSI without READ_PRIVILEGED_PHONE_STATE permission. | ||||
CVE-2022-25832 | 1 Google | 1 Android | 2024-11-21 | 4 Medium |
Improper authentication vulnerability in S Secure prior to SMR Apr-2022 Release 1 allows physical attackers to use locked Myfiles app without authentication. | ||||
CVE-2022-25831 | 1 Google | 1 Android | 2024-11-21 | 2 Low |
Improper access control vulnerability in S Secure prior to SMR Apr-2022 Release 1 allows physical attackers to access secured data in certain conditions. | ||||
CVE-2022-25822 | 1 Google | 1 Android | 2024-11-21 | 4 Medium |
An use after free vulnerability in sdp driver prior to SMR Mar-2022 Release 1 allows kernel crash. | ||||
CVE-2022-25821 | 2 Google, Samsung | 2 Android, Exynos | 2024-11-21 | 3.3 Low |
Improper use of SMS buffer pointer in Shannon baseband prior to SMR Mar-2022 Release 1 allows OOB read. | ||||
CVE-2022-25820 | 1 Google | 1 Android | 2024-11-21 | 4.2 Medium |
A vulnerable design in fingerprint matching algorithm prior to SMR Mar-2022 Release 1 allows physical attackers to perform brute force attack on screen lock password. | ||||
CVE-2022-25819 | 2 Google, Samsung | 2 Android, Exynos | 2024-11-21 | 5.3 Medium |
OOB read vulnerability in hdcp2 device node prior to SMR Mar-2022 Release 1 allow an attacker to view Kernel stack memory. | ||||
CVE-2022-25818 | 1 Google | 1 Android | 2024-11-21 | 6.5 Medium |
Improper boundary check in UWB stack prior to SMR Mar-2022 Release 1 allows arbitrary code execution. | ||||
CVE-2022-25817 | 1 Google | 1 Android | 2024-11-21 | 4 Medium |
Improper authentication in One UI Home prior to SMR Mar-2022 Release 1 allows attacker to generate pinned-shortcut without user consent. | ||||
CVE-2022-25816 | 1 Google | 1 Android | 2024-11-21 | 4.1 Medium |
Improper authentication in Samsung Lock and mask apps setting prior to SMR Mar-2022 Release 1 allows attacker to change enable/disable without authentication | ||||
CVE-2022-25815 | 1 Google | 1 Android | 2024-11-21 | 5.5 Medium |
PendingIntent hijacking vulnerability in Weather application prior to SMR Mar-2022 Release 1 allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent. | ||||
CVE-2022-25814 | 1 Google | 1 Android | 2024-11-21 | 5.5 Medium |
PendingIntent hijacking vulnerability in Wearable Manager Installer prior to SMR Mar-2022 Release 1 allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent. | ||||
CVE-2022-25635 | 3 Google, Linux, Realtek | 3 Android, Linux Kernel, Bluetooth Mesh Software Development Kit | 2024-11-21 | 6.5 Medium |
Realtek Linux/Android Bluetooth Mesh SDK has a buffer overflow vulnerability due to insufficient validation for broadcast network packet length. An unauthenticated attacker in the adjacent network can exploit this vulnerability to disrupt service. |