Vulnerabilities (CVE)

Filtered by vendor Google Subscribe
Filtered by product Android
Total 8338 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-36857 2 Google, Samsung 2 Android, Photo Editor 2024-11-21 N/A 1.9 LOW
Improper Authorization vulnerability in Photo Editor prior to SMR Sep-2022 Release 1 allows physical attackers to read internal application data.
CVE-2022-36856 1 Google 1 Android 2024-11-21 N/A 4.0 MEDIUM
Improper access control vulnerability in Telecom application prior to SMR Sep-2022 Release 1 allows attacker to start emergency calls via undefined permission.
CVE-2022-36855 1 Google 1 Android 2024-11-21 N/A 4.4 MEDIUM
A use after free vulnerability in iva_ctl driver prior to SMR Sep-2022 Release 1 allows attacker to cause memory access fault.
CVE-2022-36854 1 Google 1 Android 2024-11-21 N/A 4.0 MEDIUM
Out of bound read in libapexjni.media.samsung.so prior to SMR Sep-2022 Release 1 allows attacker access unauthorized information.
CVE-2022-36853 1 Google 1 Android 2024-11-21 N/A 3.3 LOW
Intent redirection in Photo Editor prior to SMR Sep-2022 Release 1 allows attacker to get sensitive information.
CVE-2022-36852 1 Google 1 Android 2024-11-21 N/A 1.9 LOW
Improper Authorization vulnerability in Video Editor prior to SMR Sep-2022 Release 1 allows local attacker to access internal application data.
CVE-2022-36850 1 Google 1 Android 2024-11-21 N/A 4.0 MEDIUM
Path traversal vulnerability in CallBGProvider prior to SMR Sep-2022 Release 1 allows attacker to overwrite arbitrary file with phone uid.
CVE-2022-36849 1 Google 1 Android 2024-11-21 N/A 4.9 MEDIUM
Use after free vulnerability in sdp_mm_set_process_sensitive function of sdpmm driver prior to SMR Sep-2022 Release 1 allows attackers to perform malicious actions.
CVE-2022-36848 1 Google 1 Android 2024-11-21 N/A 5.1 MEDIUM
Improper Authorization vulnerability in setDualDARPolicyCmd prior to SMR Sep-2022 Release 1 allows local attackers to cause local permanent denial of service.
CVE-2022-36847 1 Google 1 Android 2024-11-21 N/A 4.9 MEDIUM
Use after free vulnerability in mtp_send_signal function of MTP driver prior to SMR Sep-2022 Release 1 allows attackers to perform malicious actions.
CVE-2022-36846 1 Google 1 Android 2024-11-21 N/A 4.4 MEDIUM
A heap-based overflow vulnerability in ConstructDictionary function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Release 1 allows attacker to cause memory access fault.
CVE-2022-36845 1 Google 1 Android 2024-11-21 N/A 4.4 MEDIUM
A heap-based overflow vulnerability in MHW_RECOG_LIB_INFO function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Release 1 allows attacker to cause memory access fault.
CVE-2022-36844 1 Google 1 Android 2024-11-21 N/A 4.4 MEDIUM
A heap-based overflow vulnerability in HWR::EngJudgeModel::Construct() in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Release 1 allows attacker to cause memory access fault.
CVE-2022-36843 1 Google 1 Android 2024-11-21 N/A 4.4 MEDIUM
A heap-based overflow vulnerability in MHW_RECOG_LIB_INFO function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Release 1 allows attacker to cause memory access fault.
CVE-2022-36842 1 Google 1 Android 2024-11-21 N/A 4.4 MEDIUM
A heap-based overflow vulnerability in prepareRecogLibrary function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Release 1 allows attacker to cause memory access fault.
CVE-2022-36841 1 Google 1 Android 2024-11-21 N/A 4.4 MEDIUM
A heap-based overflow vulnerability in PrepareRecogLibrary_Part function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Release 1 allows attacker to cause memory access fault.
CVE-2022-36833 2 Google, Samsung 2 Android, Gameoptimizingservice 2024-11-21 N/A 7.3 HIGH
Improper Privilege Management vulnerability in Game Optimizing Service prior to versions 3.3.04.0 in Android 10, and 3.5.04.8 in Android 11 and above allows local attacker to execute hidden function for developer by changing package name.
CVE-2022-33732 1 Google 1 Android 2024-11-21 N/A 6.2 MEDIUM
Improper access control vulnerability in Samsung Dex for PC prior to SMR Aug-2022 Release 1 allows local attackers to scan and connect to PC by unprotected binder call.
CVE-2022-33731 1 Google 1 Android 2024-11-21 N/A 5.1 MEDIUM
Improper access control vulnerability in DesktopSystemUI prior to SMR Aug-2022 Release 1 allows attackers to enable and disable arbitrary components.
CVE-2022-33730 1 Google 1 Android 2024-11-21 N/A 6.8 MEDIUM
Heap-based buffer overflow vulnerability in Samsung Dex for PC prior to SMR Aug-2022 Release 1 allows arbitrary code execution by physical attackers.