Google Android vulnerabilities
6,770 known vulnerabilities affecting google/android.
Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 10 of 339
CVE-2016-1155P3CRITICALCVSS 9.8v2.2v2.2.1+41 more2017-04-13
CVE-2016-1155 [CRITICAL] CWE-74 CVE-2016-1155: HTTP header injection vulnerability in the URLConnection class in Android OS 2.2 through 6.0 allows
HTTP header injection vulnerability in the URLConnection class in Android OS 2.2 through 6.0 allows remote attackers to execute arbitrary scripts or set arbitrary values in cookies.
nvd
CVE-2017-13229P3CRITICALCVSS 9.8v5.1.1v6.0+6 more2018-02-12
CVE-2017-13229 [CRITICAL] CWE-20 CVE-2017-13229: A remote code execution vulnerability in the Android media framework (n/a). Product: Android. Versio
A remote code execution vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. ID: A-68160703.
nvd
CVE-2020-0201P3CRITICALCVSS 9.8v10.0vAndroid-102020-06-11
CVE-2020-0201 [CRITICAL] CVE-2020-0201: In showSecurityFields of WifiConfigController.java there is a possible credential leak due to a conf
In showSecurityFields of WifiConfigController.java there is a possible credential leak due to a confused deputy. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-143601727
nvd
CVE-2017-13267P3CRITICALCVSS 9.8v6.0v6.0.1+5 more2018-04-04
CVE-2017-13267 [CRITICAL] CWE-119 CVE-2017-13267: In avrc_pars_vendor_cmd of avrc_pars_tg.cc, there is a possible stack corruption due to a missing bo
In avrc_pars_vendor_cmd of avrc_pars_tg.cc, there is a possible stack corruption due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-6947900
nvd
CVE-2020-0103P3CRITICALCVSS 9.8v9.0v10.0+1 more2020-05-14
CVE-2020-0103 [CRITICAL] CWE-763 CVE-2020-0103: In a2dp_aac_decoder_cleanup of a2dp_aac_decoder.cc, there is a possible invalid free due to memory c
In a2dp_aac_decoder_cleanup of a2dp_aac_decoder.cc, there is a possible invalid free due to memory corruption. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-9Android ID: A-148107188
nvd
CVE-2020-0071P3CRITICALCVSS 9.8v8.0v8.1+3 more2020-04-17
CVE-2020-0071 [CRITICAL] CWE-787 CVE-2020-0071: In rw_t2t_extract_default_locks_info of rw_t2t_ndef.cc, there is a possible out of bounds write due
In rw_t2t_extract_default_locks_info of rw_t2t_ndef.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over NFC with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android I
nvd
CVE-2020-0073P3CRITICALCVSS 9.8v8.0v8.1+3 more2020-04-17
CVE-2020-0073 [CRITICAL] CWE-787 CVE-2020-0073: In rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc, there is a possible out of bounds write due to a
In rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over NFC with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-
nvd
CVE-2020-0070P3CRITICALCVSS 9.8v8.0v8.1+3 more2020-04-17
CVE-2020-0070 [CRITICAL] CWE-787 CVE-2020-0070: In rw_t2t_update_lock_attributes of rw_t2t_ndef.cc, there is a possible out of bounds write due to a
In rw_t2t_update_lock_attributes of rw_t2t_ndef.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over NFC with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID:
nvd
CVE-2020-0072P3CRITICALCVSS 9.8v8.0v8.1+3 more2020-04-17
CVE-2020-0072 [CRITICAL] CWE-787 CVE-2020-0072: In rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc, there is a possible out of bounds write due to a
In rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over NFC with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-
nvd
CVE-2020-0354P3CRITICALCVSS 9.8v11.0vAndroid-112020-09-18
CVE-2020-0354 [CRITICAL] CWE-787 CVE-2020-0354: In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead
In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-143604331
nvd
CVE-2023-20965P3CRITICALCVSS 9.8v13.0v132023-08-14
CVE-2023-20965 [CRITICAL] CWE-522 CVE-2023-20965: In processMessageImpl of ClientModeImpl.java, there is a possible credential disclosure in the TOFU
In processMessageImpl of ClientModeImpl.java, there is a possible credential disclosure in the TOFU flow due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2023-20954P3CRITICALCVSS 9.8v11.0v12.0+3 more2023-03-24
CVE-2023-20954 [CRITICAL] CWE-787 CVE-2023-20954: In SDP_AddAttribute of sdp_db.cc, there is a possible out of bounds write due to an incorrect bounds
In SDP_AddAttribute of sdp_db.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12 Android-12L Android-13Android ID: A-261867748
nvd
CVE-2023-21242P3CRITICALCVSS 9.8v13.0v132023-08-14
CVE-2023-21242 [CRITICAL] CVE-2023-21242: In isServerCertChainValid of InsecureEapNetworkHandler.java, there is a possible way to trust an imp
In isServerCertChainValid of InsecureEapNetworkHandler.java, there is a possible way to trust an imposter server due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2023-21401P3CRITICALCVSS 9.8vAndroid SoC2023-12-04
CVE-2023-21401 [CRITICAL] CVE-2023-21401: In DevmemIntChangeSparse of devicemem_server.c, there is a possible out of bounds write due to an in
In DevmemIntChangeSparse of devicemem_server.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2016-1503P3CRITICALCVSS 9.8v4.0v4.0.1+20 more2016-04-18
CVE-2016-1503 [CRITICAL] CWE-119 CVE-2016-1503: dhcpcd before 6.10.0, as used in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, a
dhcpcd before 6.10.0, as used in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 and other products, mismanages option lengths, which allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow) via a malformed DHCP response, aka internal bug 26461634.
nvd
CVE-2022-20411P3HIGHCVSS 8.8v10.0v11.0+4 more2022-12-13
CVE-2022-20411 [HIGH] CWE-787 CVE-2022-20411: In avdt_msg_asmbl of avdt_msg.cc, there is a possible out of bounds write due to a missing bounds ch
In avdt_msg_asmbl of avdt_msg.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12L Android-13Android ID: A-2
nvd
CVE-2018-9445P4MEDIUMCVSS 6.8PoCv6.0v6.0.1+5 more2018-11-06
CVE-2018-9445 [MEDIUM] CWE-22 CVE-2018-9445: In readMetadata of Utils.cpp, there is a possible path traversal bug due to a confused deputy. This
In readMetadata of Utils.cpp, there is a possible path traversal bug due to a confused deputy. This could lead to local escalation of privilege when mounting a USB device with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-6.0 Android-6.0.1 Android-7.0 Android-7.1.1 Android-
nvd
CVE-2018-9411P3HIGHCVSS 8.8v8.0v8.1+2 more2024-11-19
CVE-2018-9411 [HIGH] CWE-787 CVE-2018-9411: In decrypt of ClearKeyCasPlugin.cpp there is a possible out-of-bounds write due to a missing bounds
In decrypt of ClearKeyCasPlugin.cpp there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote arbitrary code execution with no additional execution privileges needed. User interaction is needed for exploitation.
nvd
CVE-2019-2126P3HIGHCVSS 8.8v7.0v7.1.1+5 more2019-08-20
CVE-2019-2126 [HIGH] CWE-415 CVE-2019-2126: In ParseContentEncodingEntry of mkvparser.cc, there is a possible double free due to a missing reset
In ParseContentEncodingEntry of mkvparser.cc, there is a possible double free due to a missing reset of a freed pointer. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-
nvd
CVE-2019-2205P3CRITICALCVSS 9.8v8.0v8.1+3 more2019-11-13
CVE-2019-2205 [CRITICAL] CWE-416 CVE-2019-2205: In ProxyResolverV8::SetPacScript of proxy_resolver_v8.cc, there is a possible memory corruption due
In ProxyResolverV8::SetPacScript of proxy_resolver_v8.cc, there is a possible memory corruption due to a use after free. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-139806216
nvd