cbcvebase.

Google Android vulnerabilities

6,770 known vulnerabilities affecting google/android.

Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36

Vulnerabilities

Page 184 of 339
CVE-2023-20721P4MEDIUMCVSS 6.7v12.0v13.02023-05-15
CVE-2023-20721 [MEDIUM] CWE-20 CVE-2023-20721: In isp, there is a possible out of bounds write due to improper input validation. This could lead to In isp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07162155; Issue ID: ALPS07162155.
nvd
CVE-2023-20722P4MEDIUMCVSS 6.7v12.0v13.02023-05-15
CVE-2023-20722 [MEDIUM] CWE-20 CVE-2023-20722: In m4u, there is a possible out of bounds write due to improper input validation. This could lead to In m4u, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07771518; Issue ID: ALPS07680084.
nvd
CVE-2024-20037P4MEDIUMCVSS 6.7v12.0v13.0+1 more2024-03-04
CVE-2024-20037 [MEDIUM] CWE-754 CVE-2024-20037: In pq, there is a possible write-what-where condition due to an incorrect bounds check. This could l In pq, there is a possible write-what-where condition due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08495937; Issue ID: ALPS08495937.
nvd
CVE-2023-32826P4MEDIUMCVSS 6.7v12.0v13.02023-10-02
CVE-2023-32826 [MEDIUM] CWE-787 CVE-2023-32826: In camera middleware, there is a possible out of bounds write due to a missing input validation. Thi In camera middleware, there is a possible out of bounds write due to a missing input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07993539; Issue ID: ALPS07993544.
nvd
CVE-2023-32828P4MEDIUMCVSS 6.7v12.02023-10-02
CVE-2023-32828 [MEDIUM] CWE-190 CVE-2023-32828: In vpu, there is a possible out of bounds write due to an integer overflow. This could lead to local In vpu, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07767817; Issue ID: ALPS07767817.
nvd
CVE-2023-32827P4MEDIUMCVSS 6.7v12.0v13.02023-10-02
CVE-2023-32827 [MEDIUM] CWE-787 CVE-2023-32827: In camera middleware, there is a possible out of bounds write due to a missing input validation. Thi In camera middleware, there is a possible out of bounds write due to a missing input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07993539; Issue ID: ALPS07993539.
nvd
CVE-2023-20680P4MEDIUMCVSS 6.7v11.0v12.0+1 more2023-04-06
CVE-2023-20680 [MEDIUM] CWE-269 CVE-2023-20680: In adsp, there is a possible out of bounds write due to improper input validation. This could lead t In adsp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07664785; Issue ID: ALPS07664785.
nvd
CVE-2018-9390P4MEDIUMCVSS 6.7vKernel2024-12-05
CVE-2018-9390 [MEDIUM] CWE-125 CVE-2018-9390: In procfile_write of gl_proc.c, there is a possible out of bounds read of a function pointer du In procfile_write of gl_proc.c, there is a possible out of bounds read of a function pointer due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-20090P4MEDIUMCVSS 6.7v12.02024-10-07
CVE-2024-20090 [MEDIUM] CWE-787 CVE-2024-20090: In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to l In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09028313; Issue ID: MSV-1703.
nvd
CVE-2025-20657P4MEDIUMCVSS 6.7v12.0v15.02025-04-07
CVE-2025-20657 [MEDIUM] CWE-787 CVE-2025-20657: In vdec, there is a possible permission bypass due to improper input validation. This could lead to In vdec, there is a possible permission bypass due to improper input validation. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS09486425; Issue ID: MSV-2609.
nvd
CVE-2023-32829P4MEDIUMCVSS 6.7v12.0v13.02023-10-02
CVE-2023-32829 [MEDIUM] CWE-190 CVE-2023-32829: In apusys, there is a possible out of bounds write due to an integer overflow. This could lead to lo In apusys, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07713478; Issue ID: ALPS07713478.
nvd
CVE-2023-20822P4MEDIUMCVSS 6.7v12.0v13.02023-09-04
CVE-2023-20822 [MEDIUM] CWE-787 CVE-2023-20822: In netdagent, there is a possible out of bounds write due to a missing bounds check. This could lead In netdagent, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07944012; Issue ID: ALPS07944012.
nvd
CVE-2023-20784P4MEDIUMCVSS 6.7v11.0v12.0+1 more2023-08-07
CVE-2023-20784 [MEDIUM] CWE-787 CVE-2023-20784: In keyinstall, there is a possible out of bounds write due to a missing bounds check. This could lea In keyinstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07826989; Issue ID: ALPS07826989.
nvd
CVE-2023-20783P4MEDIUMCVSS 6.7v11.0v12.0+1 more2023-08-07
CVE-2023-20783 [MEDIUM] CWE-787 CVE-2023-20783: In keyinstall, there is a possible out of bounds write due to a missing bounds check. This could lea In keyinstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07826905; Issue ID: ALPS07826905.
nvd
CVE-2023-32873P4MEDIUMCVSS 6.7v12.0v13.0+1 more2024-05-06
CVE-2023-32873 [MEDIUM] CWE-787 CVE-2023-32873: In keyInstall, there is a possible out of bounds write due to a missing bounds check. This could lea In keyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08583919; Issue ID: ALPS08304227.
nvd
CVE-2023-32834P4MEDIUMCVSS 6.7v11.0v12.0+1 more2023-11-06
CVE-2023-32834 [MEDIUM] CWE-843 CVE-2023-32834: In secmem, there is a possible memory corruption due to type confusion. This could lead to local esc In secmem, there is a possible memory corruption due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08161762; Issue ID: ALPS08161762.
nvd
CVE-2023-32836P4MEDIUMCVSS 6.7v11.0v12.0+1 more2023-11-06
CVE-2023-32836 [MEDIUM] CWE-787 CVE-2023-32836: In display, there is a possible out of bounds write due to an integer overflow. This could lead to l In display, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08126725; Issue ID: ALPS08126725.
nvd
CVE-2023-32823P4MEDIUMCVSS 6.7v12.0v13.02023-10-02
CVE-2023-32823 [MEDIUM] CWE-190 CVE-2023-32823: In rpmb , there is a possible memory corruption due to a missing bounds check. This could lead to lo In rpmb , there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07912966; Issue ID: ALPS07912966.
nvd
CVE-2018-9399P4MEDIUMCVSS 6.7vKernel2024-12-05
CVE-2018-9399 [MEDIUM] CWE-787 CVE-2018-9399: In /proc/driver/wmt_dbg driver, there are several possible out of bounds writes. These could lea In /proc/driver/wmt_dbg driver, there are several possible out of bounds writes. These could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-20106P4MEDIUMCVSS 6.7v12.0v13.0+2 more2024-11-04
CVE-2024-20106 [MEDIUM] CWE-843 CVE-2024-20106: In m4u, there is a possible out of bounds write due to a missing bounds check. This could lead to lo In m4u, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08960505; Issue ID: MSV-1590.
nvd
Google Android vulnerabilities | cvebase