Lucene search

K

Play Services SDK Security Vulnerabilities

cve
cve

CVE-2022-2390

Apps developed with Google Play Services SDK incorrectly had the mutability flag set to PendingIntents that were passed to the Notification service. As Google Play services SDK is so widely used, this bug affects many applications. For an application affected, this bug will let the attacker, gain.....

8.4CVSS

8.5AI Score

0.0004EPSS

2022-08-12 11:15 AM
45
8
cve
cve

CVE-2022-1799

Incorrect signature trust exists within Google Play services SDK play-services-basement. A debug version of Google Play services is trusted by the SDK for devices that are non-GMS. We recommend upgrading the SDK past the 2022-05-03...

9.8CVSS

9.4AI Score

0.001EPSS

2022-07-29 10:15 AM
27
5
cve
cve

CVE-2014-7922

The GoogleAuthUtil.getToken method in the Google Play services SDK before 2015 sets parameters in OAuth token requests upon finding a corresponding opt parameter in the Bundle extras argument, which allows attackers to bypass an intended consent dialog and retrieve tokens for arbitrary OAuth...

6.8AI Score

0.001EPSS

2015-02-23 02:59 AM
18