VendorsGoogleandroid12.0
Vulnerabilities

Google Android 12.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1915CVEs
CVE-2024-23712
In multiple functions of AppOpsService.java, there is a possible way to saturate the content of /data/system/appops_accesses.xml due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2024-05-07 · Modified
5.5EPSS 0.001
CVE-2023-42649
In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
Published 2023-11-01 · Modified
5.5EPSS 0.001
CVE-2023-42647
In Ifaa service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed
Published 2023-11-01 · Modified
5.5EPSS 0.001
CVE-2022-44428
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
Published 2023-01-04 · Modified
5.5EPSS 0.001
CVE-2022-44429
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
Published 2023-01-04 · Modified
5.5EPSS 0.001
CVE-2022-44430
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
Published 2023-01-04 · Modified
5.5EPSS 0.001
CVE-2022-47335
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
Published 2023-04-11 · Modified
5.5EPSS 0.001
CVE-2022-47336
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
Published 2023-04-11 · Modified
5.5EPSS 0.001
CVE-2022-47337
In media service, there is a missing permission check. This could lead to local denial of service in media service.
Published 2023-04-11 · Modified
5.5EPSS 0.001
CVE-2022-47362
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
Published 2023-04-11 · Modified
5.5EPSS 0.001
CVE-2022-47463
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
Published 2023-04-11 · Modified
5.5EPSS 0.001
CVE-2022-47464
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
Published 2023-04-11 · Modified
5.5EPSS 0.001
CVE-2022-47465
In vdsp service, there is a missing permission check. This could lead to local denial of service in vdsp service.
Published 2023-04-11 · Modified
5.5EPSS 0.001
CVE-2023-20824
In duraspeed, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: ALPS07951402; Issue ID: ALPS07951402.
Published 2023-09-04 · Modified
5.5EPSS 0.001
CVE-2023-20825
In duraspeed, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: ALPS07951402; Issue ID: ALPS07951413.
Published 2023-09-04 · Modified
5.5EPSS 0.001
CVE-2023-20826
In cta, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: ALPS07978550; Issue ID: ALPS07978550.
Published 2023-09-04 · Modified
5.5EPSS 0.001
CVE-2023-21141
In several functions of several files, there is a possible way to access developer mode traces due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12 Android-12L Android-13Android ID: A-262244249
Published 2023-06-15 · Modified
5.5EPSS 0.001
CVE-2023-21142
In multiple files, there is a possible way to access traces in the dev mode due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12 Android-12L Android-13Android ID: A-262243665
Published 2023-06-15 · Modified
5.5EPSS 0.001
CVE-2023-30936
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
Published 2023-07-12 · Modified
5.5EPSS 0.001
CVE-2023-38465
In ims service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges
Published 2023-09-04 · Modified
5.5EPSS 0.001
CVE-2023-38466
In ims service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges
Published 2023-09-04 · Modified
5.5EPSS 0.001
CVE-2023-40108
In multiple locations, there is a possible way to access media content belonging to another user due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2025-01-21 · Modified
5.5EPSS 0.001
CVE-2023-42653
In faceid service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges
Published 2023-11-01 · Modified
5.5EPSS 0.001
CVE-2022-48391
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
Published 2023-06-06 · Modified
5.5EPSS 0.001
CVE-2022-48446
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
Published 2023-06-06 · Modified
5.5EPSS 0.001
CVE-2022-48447
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
Published 2023-06-06 · Modified
5.5EPSS 0.001
CVE-2023-21082
In getNumberFromCallIntent of NewOutgoingCallIntentBroadcaster.java, there is a possible way to enumerate other user's contact phone number due to a confused deputy. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12 Android-12L Android-13Android ID: A-257030107
Published 2023-04-19 · Modified
5.5EPSS 0.001
CVE-2023-48354
In telephone service, there is a possible improper input validation. This could lead to local information disclosure with no additional execution privileges needed
Published 2024-01-18 · Modified
5.5EPSS 0.001
CVE-2023-40105
In backupAgentCreated of ActivityManagerService.java, there is a possible way to leak sensitive data due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2024-02-15 · Analyzed
5.5EPSS 0.001
CVE-2023-40113
In multiple locations, there is a possible way for apps to access cross-user message data due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2024-02-15 · Analyzed
5.5EPSS 0.001
CVE-2024-40656
In handleCreateConferenceComplete of ConnectionServiceWrapper.java, there is a possible way to reveal images across users due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
Published 2024-09-11 · Analyzed
5.5EPSS 0.001
CVE-2023-52347
In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed
Published 2024-04-08 · Analyzed
5.5EPSS 0.001
CVE-2023-48350
In video decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed
Published 2024-01-18 · Modified
5.5EPSS 0.001
CVE-2023-48351
In video decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed
Published 2024-01-18 · Modified
5.5EPSS 0.001
CVE-2023-48348
In video decoder, there is a possible out of bounds write due to improper input validation. This could lead to local denial of service with no additional execution privileges needed
Published 2024-01-18 · Modified
5.5EPSS 0.001
CVE-2023-48349
In video decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed
Published 2024-01-18 · Modified
5.5EPSS 0.001
CVE-2023-48347
In video decoder, there is a possible out of bounds read due to improper input validation. This could lead to local denial of service with no additional execution privileges needed
Published 2024-01-18 · Modified
5.5EPSS 0.001
CVE-2023-48352
In phasecheckserver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed
Published 2024-01-18 · Modified
5.5EPSS 0.001
CVE-2023-48343
In video decoder, there is a possible out of bounds write due to improper input validation. This could lead to local denial of service with no additional execution privileges needed
Published 2024-01-18 · Modified
5.5EPSS 0.001
CVE-2023-48346
In video decoder, there is a possible improper input validation. This could lead to local denial of service with no additional execution privileges needed
Published 2024-01-18 · Modified
5.5EPSS 0.001
← Prev38 / 48Next →