Filtered by vendor Google
Subscriptions
Filtered by product Android
Subscriptions
Total
8699 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2022-20194 | 1 Google | 1 Android | 2024-11-21 | 7.8 High |
In onCreate of ChooseLockGeneric.java, there is a possible permission bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12LAndroid ID: A-222684510 | ||||
CVE-2022-20193 | 1 Google | 1 Android | 2024-11-21 | 7.3 High |
In getUniqueUsagesWithLabels of PermissionUsageHelper.java, there is a possible incorrect permission attribution due to a logic error in the code. This could lead to local escalation of privilege by conflating apps with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-12LAndroid ID: A-212434116 | ||||
CVE-2022-20192 | 1 Google | 1 Android | 2024-11-21 | 7.8 High |
In grantEmbeddedWindowFocus of WindowManagerService.java, there is a possible way to change an input channel for embedded hierarchy due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12LAndroid ID: A-215912712 | ||||
CVE-2022-20191 | 1 Google | 1 Android | 2024-11-21 | 9.8 Critical |
Product: AndroidVersions: Android kernelAndroid ID: A-209324757References: N/A | ||||
CVE-2022-20190 | 1 Google | 1 Android | 2024-11-21 | 7.5 High |
Product: AndroidVersions: Android kernelAndroid ID: A-208744915References: N/A | ||||
CVE-2022-20188 | 1 Google | 1 Android | 2024-11-21 | 7.5 High |
Product: AndroidVersions: Android kernelAndroid ID: A-207254598References: N/A | ||||
CVE-2022-20186 | 1 Google | 1 Android | 2024-11-21 | 7.8 High |
In kbase_mem_alias of mali_kbase_mem_linux.c, there is a possible arbitrary code execution due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-215001024References: N/A | ||||
CVE-2022-20185 | 1 Google | 1 Android | 2024-11-21 | 6.7 Medium |
In TBD of TBD, there is a possible use after free bug. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-208842348References: N/A | ||||
CVE-2022-20184 | 1 Google | 1 Android | 2024-11-21 | 7.5 High |
Product: AndroidVersions: Android kernelAndroid ID: A-209153114References: N/A | ||||
CVE-2022-20183 | 1 Google | 1 Android | 2024-11-21 | 6.7 Medium |
In hypx_create_blob_dmabuf of faceauth_hypx.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-188911154References: N/A | ||||
CVE-2022-20182 | 1 Google | 1 Android | 2024-11-21 | 4.4 Medium |
In handle_ramdump of pixel_loader.c, there is a possible way to create a ramdump of non-secure memory due to a missing permission check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-222348453References: N/A | ||||
CVE-2022-20181 | 1 Google | 1 Android | 2024-11-21 | 7.5 High |
Product: AndroidVersions: Android kernelAndroid ID: A-210936609References: N/A | ||||
CVE-2022-20180 | 1 Google | 1 Android | 2024-11-21 | 7.8 High |
In several functions of mali_gralloc_reference.cpp, there is a possible arbitrary code execution due to a missing bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-212804042References: N/A | ||||
CVE-2022-20179 | 1 Google | 1 Android | 2024-11-21 | 7.5 High |
Product: AndroidVersions: Android kernelAndroid ID: A-211683760References: N/A | ||||
CVE-2022-20178 | 1 Google | 1 Android | 2024-11-21 | 6.7 Medium |
In ioctl_dpm_qos_update and ioctl_event_control_set of (TBD), there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-224932775References: N/A | ||||
CVE-2022-20177 | 1 Google | 1 Android | 2024-11-21 | 7.5 High |
Product: AndroidVersions: Android kernelAndroid ID: A-209906686References: N/A | ||||
CVE-2022-20176 | 1 Google | 1 Android | 2024-11-21 | 4.4 Medium |
In auth_store of sjtag-driver.c, there is a possible read of uninitialized memory due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-197787879References: N/A | ||||
CVE-2022-20175 | 1 Google | 1 Android | 2024-11-21 | 7.5 High |
Product: AndroidVersions: Android kernelAndroid ID: A-209252491References: N/A | ||||
CVE-2022-20174 | 1 Google | 1 Android | 2024-11-21 | 4.4 Medium |
In exynos_secEnv_init of mach-gs101.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-210847407References: N/A | ||||
CVE-2022-20173 | 1 Google | 1 Android | 2024-11-21 | 9.8 Critical |
Product: AndroidVersions: Android kernelAndroid ID: A-207116951References: N/A |