cbcvebase.

Google Android vulnerabilities

6,770 known vulnerabilities affecting google/android.

Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36

Vulnerabilities

Page 110 of 339
CVE-2020-25055P3CRITICALCVSS 9.8v8.0v8.1+2 more2020-08-31
CVE-2020-25055 [CRITICAL] CWE-863 CVE-2020-25055: An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The per An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The persona service allows attackers (who control an unprivileged SecureFolder process) to bypass admin restrictions in KnoxContainer. The Samsung ID is SVE-2020-18133 (August 2020).
nvd
CVE-2015-6620P3CRITICALCVSS 9.3≥ 5.0, < 5.1.1v6.02015-12-08
CVE-2015-6620 [CRITICAL] CWE-264 CVE-2015-6620: libstagefright in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to gain pri libstagefright in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bugs 24123723 and 24445127.
nvd
CVE-2024-47022P3HIGHCVSS 7.5fixed in 2024-10-05vAndroid kernel2024-10-25
CVE-2024-47022 [HIGH] CVE-2024-47022: Android before 2024-10-05 on Google Pixel devices allows information disclosure in the ACPM componen Android before 2024-10-05 on Google Pixel devices allows information disclosure in the ACPM component, A-331255656.
nvd
CVE-2024-47020P3HIGHCVSS 7.5fixed in 2024-10-05vAndroid kernel2024-10-25
CVE-2024-47020 [HIGH] CVE-2024-47020: Android before 2024-10-05 on Google Pixel devices allows information disclosure in the ABL component Android before 2024-10-05 on Google Pixel devices allows information disclosure in the ABL component, A-331966488.
nvd
CVE-2024-10382P3HIGHCVSS 7.5≥ 1.4.0, < 1.7.0-beta022024-11-20
CVE-2024-10382 [HIGH] CWE-502 CVE-2024-10382: There exists a code execution vulnerability in the Car App Android Jetpack Library. CarAppService us There exists a code execution vulnerability in the Car App Android Jetpack Library. CarAppService uses deserialization logic that allows construction of arbitrary java classes. This can lead to arbitrary code execution when combined with specific Java deserialization gadgets. An attacker needs to install a malicious application on victims device to be
nvd
CVE-2024-32922P3HIGHCVSS 7.4vAndroid kernel2024-06-13
CVE-2024-32922 [HIGH] CWE-843 CVE-2024-32922: In gpu_pm_power_on_top_nolock of pixel_gpu_power.c, there is a possible compromise of protected memo In gpu_pm_power_on_top_nolock of pixel_gpu_power.c, there is a possible compromise of protected memory due to a logic error in the code. This could lead to local escalation of privilege to TEE with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2022-27573P3HIGHCVSS 7.2v10.0v11.0+1 more2022-04-11
CVE-2022-27573 [HIGH] CWE-20 CVE-2022-27573: Improper input validation vulnerability in parser_infe and sheifd_find_itemIndexin fuctions of libsi Improper input validation vulnerability in parser_infe and sheifd_find_itemIndexin fuctions of libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by privileged attackers.
nvd
CVE-2025-48548P3HIGHCVSS 7.3v13.0v14.0+4 more2025-09-04
CVE-2025-48548 [HIGH] CWE-362 CVE-2025-48548: In multiple functions of AppOpsControllerImpl.java, there is a possible way to record audio without In multiple functions of AppOpsControllerImpl.java, there is a possible way to record audio without displaying the privacy indicator due to a race condition. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.
nvd
CVE-2025-48639P3HIGHCVSS 7.3v13.0v14.0+6 more2025-12-08
CVE-2025-48639 [HIGH] CWE-1021 CVE-2025-48639: In DefaultTransitionHandler.java, there is a possible way to unknowingly grant permissions to an app In DefaultTransitionHandler.java, there is a possible way to unknowingly grant permissions to an app due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
nvd
CVE-2018-9370P3HIGHCVSS 7.3vSoCVersion2024-11-19
CVE-2018-9370 [HIGH] CWE-787 CVE-2018-9370: In download.c there is a special mode allowing user to download data into memory and causing possibl In download.c there is a special mode allowing user to download data into memory and causing possible memory corruptions due to missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
nvd
CVE-2018-9369P3HIGHCVSS 7.3vSoCVersion2024-11-19
CVE-2018-9369 [HIGH] CWE-276 CVE-2018-9369: In bootloader there is fastboot command allowing user specified kernel command line arguments. This In bootloader there is fastboot command allowing user specified kernel command line arguments. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
nvd
CVE-2025-48547P3HIGHCVSS 7.3v13.0v14.0+6 more2025-09-04
CVE-2025-48547 [HIGH] CWE-862 CVE-2025-48547: In multiple locations, there is a possible one-time permission bypass due to a logic error in the co In multiple locations, there is a possible one-time permission bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
nvd
CVE-2025-22417P3HIGHCVSS 7.3v14.0v15.0+2 more2025-09-02
CVE-2025-22417 [HIGH] CWE-1021 CVE-2025-22417: In finishTransition of Transition.java, there is a possible way to bypass touch filtering restrictio In finishTransition of Transition.java, there is a possible way to bypass touch filtering restrictions due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
nvd
CVE-2024-56189P3MEDIUMCVSS 6.5vAndroid kernel2025-09-04
CVE-2024-56189 [MEDIUM] CWE-125 CVE-2024-56189: In SAEMM_DiscloseMsId of SAEMM_RadioMessageCodec.c, there is a possible out of bounds read due to a In SAEMM_DiscloseMsId of SAEMM_RadioMessageCodec.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure post authentication with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2016-0805P3HIGHCVSS 8.4v4.0v4.0.1+22 more2016-02-07
CVE-2016-0805 [HIGH] CWE-264 CVE-2016-0805: The performance event manager for Qualcomm ARM processors in Android 4.x before 4.4.4, 5.x before 5. The performance event manager for Qualcomm ARM processors in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49G, and 6.x before 2016-02-01 allows attackers to gain privileges via a crafted application, aka internal bug 25773204.
nvd
CVE-2016-2409P3HIGHCVSS 8.1v6.0v6.0.12016-04-18
CVE-2016-2409 [HIGH] CWE-264 CVE-2016-2409: A Texas Instruments (TI) haptic kernel driver in Android 6.x before 2016-04-01 allows attackers to g A Texas Instruments (TI) haptic kernel driver in Android 6.x before 2016-04-01 allows attackers to gain privileges via a crafted application that leverages control over a service that can call this driver, aka internal bug 25981545.
nvd
CVE-2016-3851P3HIGHCVSS 8.1≤ 6.0.12016-08-05
CVE-2016-3851 [HIGH] CWE-264 CVE-2016-3851: The LG Electronics bootloader Android before 2016-08-05 on Nexus 5X devices allows attackers to gain The LG Electronics bootloader Android before 2016-08-05 on Nexus 5X devices allows attackers to gain privileges by leveraging access to a privileged process, aka internal bug 29189941.
nvd
CVE-2016-3822P3HIGHCVSS 7.8v4.0v4.0.1+20 more2016-08-05
CVE-2016-3822 [HIGH] CWE-119 CVE-2016-3822: exif.c in Matthias Wandel jhead 2.87, as used in libjhead in Android 4.x before 4.4.4, 5.0.x before exif.c in Matthias Wandel jhead 2.87, as used in libjhead in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01, allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds access) via crafted EXIF data, aka internal bug 28868315.
nvd
CVE-2016-6728P3HIGHCVSS 7.8≤ 7.1.0v7.02016-11-25
CVE-2016-6728 [HIGH] CWE-264 CVE-2016-6728: An elevation of privilege vulnerability in the kernel ION subsystem in Android before 2016-11-05 cou An elevation of privilege vulnerability in the kernel ION subsystem in Android before 2016-11-05 could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair
nvd
CVE-2017-0340P3HIGHCVSS 7.8v7.1.22017-07-07
CVE-2017-0340 [HIGH] CWE-119 CVE-2017-0340: An elevation of privilege vulnerability in the NVIDIA Libnvparser component due to a memcpy into a f An elevation of privilege vulnerability in the NVIDIA Libnvparser component due to a memcpy into a fixed sized buffer with a user-controlled size could lead to a memory corruption and possible remote code execution. This issue is rated as High. Product: Android. Version: N/A. Android ID: A-33968204. References: N-CVE-2017-0340.
nvd
Google Android vulnerabilities | cvebase