Vulnerabilities (CVE)

Filtered by vendor Google Subscribe
Filtered by product Android
Total 8405 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-25820 1 Google 1 Android 2024-11-21 2.1 LOW 4.2 MEDIUM
A vulnerable design in fingerprint matching algorithm prior to SMR Mar-2022 Release 1 allows physical attackers to perform brute force attack on screen lock password.
CVE-2022-25819 2 Google, Samsung 2 Android, Exynos 2024-11-21 2.1 LOW 5.3 MEDIUM
OOB read vulnerability in hdcp2 device node prior to SMR Mar-2022 Release 1 allow an attacker to view Kernel stack memory.
CVE-2022-25818 1 Google 1 Android 2024-11-21 7.5 HIGH 6.5 MEDIUM
Improper boundary check in UWB stack prior to SMR Mar-2022 Release 1 allows arbitrary code execution.
CVE-2022-25817 1 Google 1 Android 2024-11-21 2.1 LOW 4.0 MEDIUM
Improper authentication in One UI Home prior to SMR Mar-2022 Release 1 allows attacker to generate pinned-shortcut without user consent.
CVE-2022-25816 1 Google 1 Android 2024-11-21 2.1 LOW 4.1 MEDIUM
Improper authentication in Samsung Lock and mask apps setting prior to SMR Mar-2022 Release 1 allows attacker to change enable/disable without authentication
CVE-2022-25815 1 Google 1 Android 2024-11-21 4.6 MEDIUM 5.5 MEDIUM
PendingIntent hijacking vulnerability in Weather application prior to SMR Mar-2022 Release 1 allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent.
CVE-2022-25814 1 Google 1 Android 2024-11-21 4.6 MEDIUM 5.5 MEDIUM
PendingIntent hijacking vulnerability in Wearable Manager Installer prior to SMR Mar-2022 Release 1 allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent.
CVE-2022-25635 3 Google, Linux, Realtek 3 Android, Linux Kernel, Bluetooth Mesh Software Development Kit 2024-11-21 N/A 6.5 MEDIUM
Realtek Linux/Android Bluetooth Mesh SDK has a buffer overflow vulnerability due to insufficient validation for broadcast network packet length. An unauthenticated attacker in the adjacent network can exploit this vulnerability to disrupt service.
CVE-2022-24932 2 Google, Samsung 2 Android, Cloud 2024-11-21 2.1 LOW 4.2 MEDIUM
Improper Protection of Alternate Path vulnerability in Setup wizard process prior to SMR Mar-2022 Release 1 allows physical attacker package installation before finishing Setup wizard.
CVE-2022-24931 1 Google 1 Android 2024-11-21 4.6 MEDIUM 7.9 HIGH
Improper access control vulnerability in dynamic receiver in ApkInstaller prior to SMR MAR-2022 Release allows unauthorized attackers to execute arbitrary activity without a proper permission
CVE-2022-24929 1 Google 1 Android 2024-11-21 2.1 LOW 4.1 MEDIUM
Unprotected Activity in AppLock prior to SMR Mar-2022 Release 1 allows attacker to change the list of locked app without authentication.
CVE-2022-24928 1 Google 1 Android 2024-11-21 7.2 HIGH 5.9 MEDIUM
Security misconfiguration of RKP in kernel prior to SMR Mar-2022 Release 1 allows a system not to be protected by RKP.
CVE-2022-24925 1 Google 1 Android 2024-11-21 6.8 MEDIUM 4.4 MEDIUM
Improper input validation vulnerability in SettingsProvider prior to Android S(12) allows privileged attackers to trigger a permanent denial of service attack on a victim's devices.
CVE-2022-24001 1 Google 1 Android 2024-11-21 2.1 LOW 3.8 LOW
Information disclosure vulnerability in Edge Panel prior to Android S(12) allows physical attackers to access screenshot in clipboard via Edge Panel.
CVE-2022-24000 1 Google 1 Android 2024-11-21 2.1 LOW 3.9 LOW
PendingIntent hijacking vulnerability in DataUsageReminderReceiver prior to SMR Feb-2022 Release 1 allows local attackers to access media files without permission in KnoxPrivacyNoticeReceiver via implicit Intent.
CVE-2022-23999 1 Google 1 Android 2024-11-21 2.1 LOW 3.9 LOW
PendingIntent hijacking vulnerability in CpaReceiver prior to SMR Feb-2022 Release 1 allows local attackers to access media files without permission in KnoxPrivacyNoticeReceiver via implicit Intent.
CVE-2022-23998 2 Google, Samsung 2 Android, Camera 2024-11-21 4.3 MEDIUM 6.2 MEDIUM
Improper access control vulnerability in Camera prior to versions 11.1.02.16 in Android R(11), 10.5.03.77 in Android Q(10) and 9.0.6.68 in Android P(9) allows untrusted applications to take a picture in screenlock status.
CVE-2022-23729 1 Google 1 Android 2024-11-21 6.9 MEDIUM 7.8 HIGH
When the device is in factory state, it can be access the shell without adb authentication process. The LG ID is LVE-SMP-210010.
CVE-2022-23728 1 Google 1 Android 2024-11-21 6.6 MEDIUM 6.1 MEDIUM
Attacker can reset the device with AT Command in the process of rebooting the device. The LG ID is LVE-SMP-210011.
CVE-2022-23434 2 Google, Samsung 2 Android, Bixby 2024-11-21 2.1 LOW 4.4 MEDIUM
A vulnerability using PendingIntent in Bixby Vision prior to versions 3.7.60.8 in Android S(12), 3.7.50.6 in Andorid R(11) and below allows attackers to execute privileged action by hijacking and modifying the intent.