VendorsGoogleandroid11.0
Vulnerabilities

Google Android 11.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2103CVEs
CVE-2021-0563
In ih264e_fmt_conv_422i_to_420sp of ih264e_fmt_conv.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-172908358
Published 2021-06-22 · Modified
5.5EPSS 0.001
CVE-2022-39106
In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-39129
In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-39130
In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-39132
In camera driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-39133
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42754
In npu driver, there is a memory corruption due to a use after free. This could lead to local denial of service in kernel.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42755
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42759
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42760
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42761
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42762
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42763
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42764
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42773
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42774
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42779
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42780
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-42781
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
Published 2022-12-06 · Modified
5.5EPSS 0.001
CVE-2022-20455
In addAutomaticZenRule of ZenModeHelper.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12L Android-13Android ID: A-242537431
Published 2023-02-28 · Modified
5.5EPSS 0.001
CVE-2021-0689
In RGB_to_BGR1_portable of SkSwizzler_opts.h, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-8.1 Android-9Android ID: A-190188264
Published 2021-10-06 · Modified
5.5EPSS 0.001
CVE-2021-0375
In onPackageModified of VoiceInteractionManagerService.java, there is a possible change of default applications due to an insecure default value. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-167261484
Published 2021-03-10 · Modified
5.5EPSS 0.001
CVE-2021-0377
In DeltaPerformer::Write of delta_performer.cc, there is a possible use of untrusted input due to improper input validation. This could lead to a local bypass of defense in depth protections with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-160800689
Published 2021-03-10 · Modified
5.5EPSS 0.001
CVE-2022-39905
Implicit intent hijacking vulnerability in Telecom application prior to SMR Dec-2022 Release 1 allows attacker to access sensitive information via implicit intent.
Published 2022-12-08 · Modified
5.5EPSS 0.001
CVE-2023-21137
In several methods of JobStore.java, uncaught exceptions in job map parsing could lead to local persistent denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12 Android-12L Android-13Android ID: A-246541702
Published 2023-06-15 · Modified
5.5EPSS 0.001
CVE-2021-0682
In sendAccessibilityEvent of NotificationManagerService.java, there is a possible disclosure of notification data due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-159624555
Published 2021-10-06 · Modified
5.5EPSS 0.001
CVE-2022-38679
In music service, there is a missing permission check. This could lead to local denial of service in music service with no additional execution privileges needed.
Published 2022-10-14 · Modified
5.5EPSS 0.001
CVE-2022-39115
In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed.
Published 2022-10-14 · Modified
5.5EPSS 0.001
CVE-2021-25458
NULL pointer dereference vulnerability in ION driver prior to SMR Sep-2021 Release 1 allows attackers to cause memory corruption.
Published 2021-09-09 · Modified
5.5EPSS 0.001
CVE-2021-25462
NULL pointer dereference vulnerability in NPU driver prior to SMR Sep-2021 Release 1 allows attackers to cause memory corruption.
Published 2021-09-09 · Modified
5.5EPSS 0.001
CVE-2023-40081
In loadMediaDataInBgForResumption of MediaDataManager.kt, there is a possible way to view another user's images due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2023-12-04 · Modified
5.5EPSS 0.001
CVE-2023-35680
In multiple locations, there is a possible way to import contacts belonging to other users due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2023-09-11 · Modified
5.5EPSS 0.001
CVE-2022-20017
In ion driver, there is a possible information disclosure due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05862991; Issue ID: ALPS05862991.
Published 2022-02-09 · Modified
5.5EPSS 0.001
CVE-2022-20036
In ion driver, there is a possible information disclosure due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06171689; Issue ID: ALPS06171689.
Published 2022-02-09 · Modified
5.5EPSS 0.001
CVE-2022-20037
In ion driver, there is a possible information disclosure due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06171705; Issue ID: ALPS06171705.
Published 2022-02-09 · Modified
5.5EPSS 0.001
CVE-2022-44427
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
Published 2023-01-04 · Modified
5.5EPSS 0.001
CVE-2022-44426
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
Published 2023-01-04 · Modified
5.5EPSS 0.001
CVE-2022-44432
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
Published 2023-01-04 · Modified
5.5EPSS 0.001
CVE-2022-44425
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
Published 2023-01-04 · Modified
5.5EPSS 0.001
CVE-2021-25452
An improper input validation vulnerability in loading graph file in DSP driver prior to SMR Sep-2021 Release 1 allows attackers to perform permanent denial of service on the device.
Published 2021-09-09 · Modified
5.5EPSS 0.001
← Prev34 / 53Next →