cbcvebase.

Google Android vulnerabilities

9,713 known vulnerabilities affecting google/android.

Total CVEs
9,713
CISA KEV
49
actively exploited
Public exploits
89
Exploited in wild
44
Severity breakdown
CRITICAL883HIGH5220MEDIUM3343LOW265UNKNOWN2

Vulnerabilities

Page 10 of 486
CVE-2025-20779HIGHCVSS 7.0v14.0v15.0+1 more2026-01-06
CVE-2025-20779 [HIGH] CWE-416 CVE-2025-20779: In display, there is a possible use after free due to a race condition. This could lead to local esc In display, there is a possible use after free due to a race condition. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10184084; Issue ID: MSV-4720.
nvd
CVE-2025-20797HIGHCVSS 7.8v14.0v15.0+1 more2026-01-06
CVE-2025-20797 [HIGH] CWE-121 CVE-2025-20797: In battery, there is a possible out of bounds write due to a missing bounds check. This could lead t In battery, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10315812; Issue ID: MSV-5534.
nvd
CVE-2025-20798HIGHCVSS 7.8v14.0v15.0+1 more2026-01-06
CVE-2025-20798 [HIGH] CWE-787 CVE-2025-20798: In battery, there is a possible out of bounds write due to a missing bounds check. This could lead t In battery, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10315812; Issue ID: MSV-5533.
nvd
CVE-2025-20801HIGHCVSS 7.0v13.0v14.0+2 more2026-01-06
CVE-2025-20801 [HIGH] CWE-415 CVE-2025-20801: In seninf, there is a possible memory corruption due to a race condition. This could lead to local e In seninf, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10251210; Issue ID: MSV-4926.
nvd
CVE-2025-20796HIGHCVSS 7.8v15.02026-01-06
CVE-2025-20796 [HIGH] CWE-1285 CVE-2025-20796: In imgsys, there is a possible out of bounds write due to improper input validation. This could lead In imgsys, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is needed for exploitation. Patch ID: ALPS10314745; Issue ID: MSV-5553.
nvd
CVE-2025-20799HIGHCVSS 7.8v15.0v16.02026-01-06
CVE-2025-20799 [HIGH] CWE-416 CVE-2025-20799: In c2ps, there is a possible memory corruption due to use after free. This could lead to local escal In c2ps, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10274607; Issue ID: MSV-5049.
nvd
CVE-2025-20778HIGHCVSS 7.8v14.0v15.0+1 more2026-01-06
CVE-2025-20778 [HIGH] CWE-787 CVE-2025-20778: In display, there is a possible out of bounds write due to a missing bounds check. This could lead t In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10184870; Issue ID: MSV-4729.
nvd
CVE-2025-20800HIGHCVSS 7.8v14.0v15.0+1 more2026-01-06
CVE-2025-20800 [HIGH] CWE-787 CVE-2025-20800: In mminfra, there is a possible out of bounds write due to a missing bounds check. This could lead t In mminfra, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10267349; Issue ID: MSV-5033.
nvd
CVE-2025-20780HIGHCVSS 7.8v15.0v16.02026-01-06
CVE-2025-20780 [HIGH] CWE-416 CVE-2025-20780: In display, there is a possible memory corruption due to use after free. This could lead to local es In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10184061; Issue ID: MSV-4712.
nvd
CVE-2025-20781HIGHCVSS 7.8v14.0v15.0+1 more2026-01-06
CVE-2025-20781 [HIGH] CWE-415 CVE-2025-20781: In display, there is a possible memory corruption due to use after free. This could lead to local es In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10182914; Issue ID: MSV-4699.
nvd
CVE-2025-20795HIGHCVSS 7.8v13.0v14.0+2 more2026-01-06
CVE-2025-20795 [HIGH] CWE-787 CVE-2025-20795: In KeyInstall, there is a possible out of bounds write due to a missing bounds check. This could lea In KeyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10276761; Issue ID: MSV-5141.
nvd
CVE-2025-20787MEDIUMCVSS 6.7v14.0v15.0+1 more2026-01-06
CVE-2025-20787 [MEDIUM] CWE-416 CVE-2025-20787: In display, there is a possible memory corruption due to use after free. This could lead to local es In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10149879; Issue ID: MSV-4658.
nvd
CVE-2025-20807MEDIUMCVSS 6.7v16.02026-01-06
CVE-2025-20807 [MEDIUM] CWE-190 CVE-2025-20807: In dpe, there is a possible out of bounds write due to an integer overflow. This could lead to local In dpe, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10114841; Issue ID: MSV-4451.
nvd
CVE-2025-20803MEDIUMCVSS 6.7v16.02026-01-06
CVE-2025-20803 [MEDIUM] CWE-190 CVE-2025-20803: In dpe, there is a possible memory corruption due to an integer overflow. This could lead to local e In dpe, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is needed for exploitation. Patch ID: ALPS10199779; Issue ID: MSV-4504.
nvd
CVE-2025-20805MEDIUMCVSS 6.7v16.02026-01-06
CVE-2025-20805 [MEDIUM] CWE-416 CVE-2025-20805: In dpe, there is a possible memory corruption due to use after free. This could lead to local escala In dpe, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10114696; Issue ID: MSV-4480.
nvd
CVE-2025-20806MEDIUMCVSS 6.7v16.02026-01-06
CVE-2025-20806 [MEDIUM] CWE-416 CVE-2025-20806: In dpe, there is a possible memory corruption due to use after free. This could lead to local escala In dpe, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10114835; Issue ID: MSV-4479.
nvd
CVE-2025-20784MEDIUMCVSS 6.7v14.0v15.0+1 more2026-01-06
CVE-2025-20784 [MEDIUM] CWE-457 CVE-2025-20784: In display, there is a possible memory corruption due to uninitialized data. This could lead to loca In display, there is a possible memory corruption due to uninitialized data. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10182882; Issue ID: MSV-4683.
nvd
CVE-2025-20802MEDIUMCVSS 6.7v15.02026-01-06
CVE-2025-20802 [MEDIUM] CWE-416 CVE-2025-20802: In geniezone, there is a possible memory corruption due to use after free. This could lead to local In geniezone, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10238968; Issue ID: MSV-4914.
nvd
CVE-2025-20804MEDIUMCVSS 6.7v16.02026-01-06
CVE-2025-20804 [MEDIUM] CWE-416 CVE-2025-20804: In dpe, there is a possible memory corruption due to use after free. This could lead to local escala In dpe, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is needed for exploitation. Patch ID: ALPS10198951; Issue ID: MSV-4503.
nvd
CVE-2025-20783MEDIUMCVSS 6.7v14.0v15.0+1 more2026-01-06
CVE-2025-20783 [MEDIUM] CWE-787 CVE-2025-20783: In display, there is a possible out of bounds write due to a missing bounds check. This could lead t In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10182882; Issue ID: MSV-4684.
nvd