Google Android vulnerabilities
6,770 known vulnerabilities affecting google/android.
Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 144 of 339
CVE-2014-9891P4HIGHCVSS 7.8≤ 6.0.12016-08-06
CVE-2014-9891 [HIGH] CWE-264 CVE-2014-9891: drivers/misc/qseecom.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices do
drivers/misc/qseecom.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not validate certain buffer addresses, which allows attackers to gain privileges via a crafted application that makes an ioctl call, aka Android internal bug 28749283 and Qualcomm internal bug CR550061.
nvd
CVE-2014-9865P4HIGHCVSS 7.8≤ 6.0.12016-08-06
CVE-2014-9865 [HIGH] CWE-284 CVE-2014-9865: drivers/misc/qseecom.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (201
drivers/misc/qseecom.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices does not properly restrict user-space input, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28748271 and Qualcomm internal bug CR550013.
nvd
CVE-2016-3901P4HIGHCVSS 7.8≤ 7.02016-10-10
CVE-2016-3901 [HIGH] CWE-190 CVE-2016-3901: Multiple integer overflows in drivers/crypto/msm/qcedev.c in the Qualcomm cryptographic engine drive
Multiple integer overflows in drivers/crypto/msm/qcedev.c in the Qualcomm cryptographic engine driver in Android before 2016-10-05 on Nexus 5X, Nexus 6, Nexus 6P, and Android One devices allow attackers to gain privileges via a crafted application, aka Android internal bug 29999161 and Qualcomm internal bug CR 1046434.
nvd
CVE-2016-3870P4HIGHCVSS 7.8v4.0v4.0.1+21 more2016-09-11
CVE-2016-3870 [HIGH] CWE-264 CVE-2016-3870: omx/SimpleSoftOMXComponent.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x b
omx/SimpleSoftOMXComponent.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 does not prevent input-port changes, which allows attackers to gain privileges via a crafted application, aka internal bug 29421804.
nvd
CVE-2014-9882P4HIGHCVSS 7.8≤ 6.0.12016-08-06
CVE-2014-9882 [HIGH] CWE-119 CVE-2014-9882: Buffer overflow in drivers/media/radio/radio-iris.c in the Qualcomm components in Android before 201
Buffer overflow in drivers/media/radio/radio-iris.c in the Qualcomm components in Android before 2016-08-05 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28769546 and Qualcomm internal bug CR552329.
nvd
CVE-2017-0820P4HIGHCVSS 7.5v4.4.4v5.0.2+7 more2017-10-04
CVE-2017-0820 [HIGH] CVE-2017-0820: A vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2,
A vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-62187433.
nvd
CVE-2016-3905P4HIGHCVSS 7.8≤ 7.02016-10-10
CVE-2016-3905 [HIGH] CWE-264 CVE-2016-3905: CORE/HDD/src/wlan_hdd_main.c in the Qualcomm Wi-Fi driver in Android before 2016-10-05 on Nexus 5X d
CORE/HDD/src/wlan_hdd_main.c in the Qualcomm Wi-Fi driver in Android before 2016-10-05 on Nexus 5X devices allows attackers to gain privileges via a crafted application that sends a SENDACTIONFRAME command, aka Android internal bug 28061823 and Qualcomm internal bug CR 1001449.
nvd
CVE-2016-2481P4HIGHCVSS 7.8v4.0v4.0.1+16 more2016-06-13
CVE-2016-2481 [HIGH] CWE-119 CVE-2016-2481: The mm-video-v4l2 venc component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1
The mm-video-v4l2 venc component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles a buffer count, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27532497.
nvd
CVE-2016-0819P4HIGHCVSS 7.8v4.0v4.0.1+22 more2016-03-12
CVE-2016-0819 [HIGH] CWE-264 CVE-2016-0819: The Qualcomm performance component in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x bef
The Qualcomm performance component in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 allows attackers to gain privileges via a crafted application, aka internal bug 25364034.
nvdosv
CVE-2014-9790P4HIGHCVSS 7.8≤ 6.0.12016-07-11
CVE-2014-9790 [HIGH] CWE-264 CVE-2014-9790: drivers/mmc/core/debugfs.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7
drivers/mmc/core/debugfs.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices does not validate pointers used in read and write operations, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28769136 and Qualcomm internal bug CR545716.
nvd
CVE-2014-9874P4HIGHCVSS 7.8≤ 6.0.12016-08-06
CVE-2014-9874 [HIGH] CWE-119 CVE-2014-9874: Buffer overflow in the Qualcomm components in Android before 2016-08-05 on Nexus 5, 5X, 6P, and 7 (2
Buffer overflow in the Qualcomm components in Android before 2016-08-05 on Nexus 5, 5X, 6P, and 7 (2013) devices allows attackers to gain privileges via a crafted application, related to arch/arm/mach-msm/qdsp6v2/audio_utils.c and sound/soc/msm/qdsp6v2/q6asm.c, aka Android internal bug 28751152 and Qualcomm internal bug CR563086.
nvd
CVE-2016-2479P4HIGHCVSS 7.8v4.0v4.0.1+16 more2016-06-13
CVE-2016-2479 [HIGH] CWE-119 CVE-2016-2479: The mm-video-v4l2 vdec component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1
The mm-video-v4l2 vdec component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles a buffer count, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27532282.
nvd
CVE-2016-2413P4HIGHCVSS 7.8v5.0v5.0.1+4 more2016-04-18
CVE-2016-2413 [HIGH] CWE-264 CVE-2016-2413: media/libmedia/IOMX.cpp in mediaserver in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x be
media/libmedia/IOMX.cpp in mediaserver in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not initialize a handle pointer, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 26403627.
nvd
CVE-2016-2420P4HIGHCVSS 7.8v4.0v4.0.1+20 more2016-04-18
CVE-2016-2420 [HIGH] CWE-264 CVE-2016-2420: rootdir/init.rc in Android 4.x before 4.4.4 does not ensure that the /data/tombstones directory exis
rootdir/init.rc in Android 4.x before 4.4.4 does not ensure that the /data/tombstones directory exists for the Debuggerd component, which allows attackers to gain privileges via a crafted application, aka internal bug 26403620.
nvd
CVE-2017-8278P4HIGHCVSS 7.8≤ 8.02017-09-21
CVE-2017-8278 [HIGH] CWE-120 CVE-2017-8278: In all Qualcomm products with Android releases from CAF using the Linux kernel, while reading audio
In all Qualcomm products with Android releases from CAF using the Linux kernel, while reading audio data from an unspecified driver, a buffer overflow or integer overflow could occur.
nvd
CVE-2016-2440P4HIGHCVSS 7.8v4.0v4.0.1+20 more2016-05-09
CVE-2016-2440 [HIGH] CWE-264 CVE-2016-2440: libs/binder/IPCThreadState.cpp in Binder in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x befo
libs/binder/IPCThreadState.cpp in Binder in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 mishandles object references, which allows attackers to gain privileges via a crafted application, aka internal bug 27252896.
nvd
CVE-2016-3751P4HIGHCVSS 7.8v4.0v4.0.1+20 more2016-07-11
CVE-2016-3751 [HIGH] CVE-2016-3751: Unspecified vulnerability in libpng before 1.6.20, as used in Android 4.x before 4.4.4, 5.0.x before
Unspecified vulnerability in libpng before 1.6.20, as used in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-07-01, allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 23265085.
nvd
CVE-2016-3910P4HIGHCVSS 7.8v5.0v5.0.1+5 more2016-10-10
CVE-2016-3910 [HIGH] CWE-264 CVE-2016-3910: services/soundtrigger/SoundTriggerHwService.cpp in mediaserver in Android 5.0.x before 5.0.2, 5.1.x
services/soundtrigger/SoundTriggerHwService.cpp in mediaserver in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-10-01, and 7.0 before 2016-10-01 allows attackers to gain privileges via a crafted application, aka internal bug 30148546.
nvd
CVE-2017-0593P4HIGHCVSS 7.8v6.0v6.0.1+4 more2017-05-12
CVE-2017-0593 [HIGH] CWE-732 CVE-2017-0593: An elevation of privilege vulnerability in the Framework APIs could enable a local malicious applica
An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to obtain access to custom permissions. This issue is rated as High because it is a general bypass for operating system protections that isolate application data from other applications. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Andr
nvd
CVE-2014-9872P4HIGHCVSS 7.8≤ 6.0.12016-08-06
CVE-2014-9872 [HIGH] CWE-20 CVE-2014-9872: The diag driver in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not
The diag driver in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not ensure unique identifiers in a DCI client table, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28750155 and Qualcomm internal bug CR590721.
nvd