Google Android vulnerabilities
6,770 known vulnerabilities affecting google/android.
Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 135 of 339
CVE-2025-36917P3MEDIUMCVSS 6.5vAndroid kernel2025-12-11
CVE-2025-36917 [MEDIUM] CWE-120 CVE-2025-36917: In SwDcpItg of up_L2commonPdcpSecurity.cpp, there is a possible denial of service due to an incorrec
In SwDcpItg of up_L2commonPdcpSecurity.cpp, there is a possible denial of service due to an incorrect bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-0039P3MEDIUMCVSS 6.5v14.0v15.0+8 more2026-06-01
CVE-2026-0039 [MEDIUM] CWE-190 CVE-2026-0039: In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of servic
In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2018-21082P4HIGHCVSS 8.4v7.0v7.1.0+2 more2020-04-08
CVE-2018-21082 [HIGH] CWE-863 CVE-2018-21082: An issue was discovered on Samsung mobile devices with N(7.x) software. Dex Station allows App Pinni
An issue was discovered on Samsung mobile devices with N(7.x) software. Dex Station allows App Pinning bypass and lock-screen bypass via the "Use screen lock type to unpin" option. The Samsung ID is SVE-2017-11106 (February 2018).
nvd
CVE-2016-3871P4HIGHCVSS 7.8v4.0v4.0.1+21 more2016-09-11
CVE-2016-3871 [HIGH] CWE-264 CVE-2016-3871: Multiple buffer overflows in codecs/mp3dec/SoftMP3.cpp in libstagefright in mediaserver in Android 4
Multiple buffer overflows in codecs/mp3dec/SoftMP3.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 allow attackers to gain privileges via a crafted application, aka internal bug 29422022.
nvd
CVE-2016-2068P4HIGHCVSS 7.8≤ 6.0.12016-07-11
CVE-2016-2068 [HIGH] CWE-190 CVE-2016-2068: The MSM QDSP6 audio driver (aka sound driver) for the Linux kernel 3.x, as used in Qualcomm Innovati
The MSM QDSP6 audio driver (aka sound driver) for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges or cause a denial of service (integer overflow, and buffer overflow or buffer over-read) via a crafted application that performs a (1) AUDIO_EFF
nvd
CVE-2014-9786P4HIGHCVSS 7.8≤ 6.0.12016-07-11
CVE-2014-9786 [HIGH] CWE-119 CVE-2014-9786: Heap-based buffer overflow in drivers/media/platform/msm/camera_v2/sensor/actuator/msm_actuator.c in
Heap-based buffer overflow in drivers/media/platform/msm/camera_v2/sensor/actuator/msm_actuator.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28557260 and Qualcomm internal bug CR545979.
nvd
CVE-2016-3934P4HIGHCVSS 7.8≤ 7.02016-10-10
CVE-2016-3934 [HIGH] CWE-119 CVE-2016-3934: drivers/media/platform/msm/camera_v2/sensor/io/msm_camera_cci_i2c.c in the Qualcomm camera driver in
drivers/media/platform/msm/camera_v2/sensor/io/msm_camera_cci_i2c.c in the Qualcomm camera driver in Android before 2016-10-05 on Nexus 5, Nexus 5X, Nexus 6, Nexus 6P, and Android One devices relies on variable-length arrays, which allows attackers to gain privileges via a crafted application, aka Android internal bug 30102557 and Qualcomm internal bug
nvd
CVE-2016-3872P4HIGHCVSS 7.8v4.0v4.0.1+21 more2016-09-11
CVE-2016-3872 [HIGH] CWE-119 CVE-2016-3872: Buffer overflow in codecs/on2/dec/SoftVPX.cpp in libstagefright in mediaserver in Android 4.x before
Buffer overflow in codecs/on2/dec/SoftVPX.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 allows attackers to gain privileges via a crafted application, aka internal bug 29421675.
nvd
CVE-2016-0826P4HIGHCVSS 7.8v4.0v4.0.1+22 more2016-03-12
CVE-2016-0826 [HIGH] CWE-264 CVE-2016-0826: libcameraservice in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before
libcameraservice in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 does not require use of the ICameraService::dump method for a camera service dump, which allows attackers to gain privileges via a crafted application that directly dumps, as demonstrated by obtaining Signature or SignatureOrSystem access, aka
nvdosv
CVE-2016-3900P4HIGHCVSS 7.8v5.0v5.0.1+5 more2016-10-10
CVE-2016-3900 [HIGH] CWE-264 CVE-2016-3900: cmds/servicemanager/service_manager.c in ServiceManager in Android 5.0.x before 5.0.2, 5.1.x before
cmds/servicemanager/service_manager.c in ServiceManager in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-10-01, and 7.0 before 2016-10-01 does not properly restrict service registration, which allows attackers to gain privileges via a crafted application, aka internal bug 29431260.
nvd
CVE-2014-9799P4HIGHCVSS 7.8≤ 6.0.12016-07-11
CVE-2014-9799 [HIGH] CWE-264 CVE-2014-9799: The makefile in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices
The makefile in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices omits the -fno-strict-overflow option to gcc, which might allow attackers to gain privileges via a crafted application that leverages incorrect compiler optimization of an integer-overflow protection mechanism, aka Android internal bug 28821731 and Qualc
nvd
CVE-2016-0827P4HIGHCVSS 7.8v4.0v4.0.1+22 more2016-03-12
CVE-2016-0827 [HIGH] CWE-189 CVE-2016-0827: Multiple integer overflows in libeffects in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.
Multiple integer overflows in libeffects in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 allow attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, related to EffectBundle.cpp and EffectReverb.cpp, aka internal bug 26347509.
nvdosv
CVE-2015-8890P4HIGHCVSS 7.8≤ 6.0.12016-07-11
CVE-2015-8890 [HIGH] CWE-264 CVE-2015-8890: platform/msm_shared/partition_parser.c in the Qualcomm components in Android before 2016-07-05 on Ne
platform/msm_shared/partition_parser.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices does not validate certain GUID Partition Table (GPT) data, which allows attackers to bypass intended access restrictions via a crafted MultiMediaCard (MMC), aka Android internal bug 28822878 and Qualcomm internal bug CR823461.
nvd
CVE-2016-3913P4HIGHCVSS 7.8v4.0v4.0.1+21 more2016-10-10
CVE-2016-3913 [HIGH] CWE-264 CVE-2016-3913: media/libmediaplayerservice/MediaPlayerService.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x
media/libmediaplayerservice/MediaPlayerService.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-10-01, and 7.0 before 2016-10-01 does not validate a certain static_cast operation, which allows attackers to gain privileges via a crafted application, aka internal bug 30204103.
nvd
CVE-2016-3912P4HIGHCVSS 7.8v4.0v4.0.1+21 more2016-10-10
CVE-2016-3912 [HIGH] CWE-264 CVE-2016-3912: The framework APIs in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2
The framework APIs in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-10-01, and 7.0 before 2016-10-01 allow attackers to gain privileges via a crafted application, aka internal bug 30202481.
nvd
CVE-2015-8941P4HIGHCVSS 7.8≤ 6.0.12016-08-06
CVE-2015-8941 [HIGH] CWE-264 CVE-2015-8941: drivers/media/platform/msm/camera_v2/isp/msm_isp_axi_util.c in the Qualcomm components in Android be
drivers/media/platform/msm/camera_v2/isp/msm_isp_axi_util.c in the Qualcomm components in Android before 2016-08-05 on Nexus 6 and 7 (2013) devices does not properly validate array indexes, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28814502 and Qualcomm internal bug CR792473.
nvd
CVE-2016-3911P4HIGHCVSS 7.8v4.0v4.0.1+21 more2016-10-10
CVE-2016-3911 [HIGH] CWE-264 CVE-2016-3911: core/java/android/os/Process.java in Zygote in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x b
core/java/android/os/Process.java in Zygote in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-10-01, and 7.0 before 2016-10-01 allows attackers to gain privileges via a crafted application, aka internal bug 30143607.
nvd
CVE-2017-0812P4HIGHCVSS 7.8v7.0v7.1.0+3 more2017-10-04
CVE-2017-0812 [HIGH] CWE-125 CVE-2017-0812: An elevation of privilege vulnerability in the Android media framework (audio hal). Product: Android
An elevation of privilege vulnerability in the Android media framework (audio hal). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-62873231.
nvd
CVE-2015-8951P4HIGHCVSS 7.8≤ 7.02016-10-10
CVE-2015-8951 [HIGH] CWE-264 CVE-2015-8951: Multiple use-after-free vulnerabilities in sound/soc/msm/qdsp6v2/msm-lsm-client.c in the Qualcomm so
Multiple use-after-free vulnerabilities in sound/soc/msm/qdsp6v2/msm-lsm-client.c in the Qualcomm sound driver in Android before 2016-10-05 on Nexus 5X, Nexus 6P, and Android One devices allow attackers to gain privileges via a crafted application, aka Android internal bug 30142668 and Qualcomm internal bug CR 948902.
nvd
CVE-2016-2452P4HIGHCVSS 7.8v4.0v4.0.1+20 more2016-05-09
CVE-2016-2452 [HIGH] CWE-264 CVE-2016-2452: codecs/amrnb/dec/SoftAMR.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x bef
codecs/amrnb/dec/SoftAMR.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate buffer sizes, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bugs 27662364 an
nvd