cbcvebase.

Google Android vulnerabilities

6,770 known vulnerabilities affecting google/android.

Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36

Vulnerabilities

Page 188 of 339
CVE-2022-32617P4MEDIUMCVSS 6.8v11.0v12.0+1 more2022-11-08
CVE-2022-32617 [MEDIUM] CWE-131 CVE-2022-32617: In typec, there is a possible out of bounds write due to an incorrect calculation of buffer size. Th In typec, there is a possible out of bounds write due to an incorrect calculation of buffer size. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07262364; Issue ID: ALPS07262364.
nvd
CVE-2022-32618P4MEDIUMCVSS 6.8v11.0v12.0+1 more2022-11-08
CVE-2022-32618 [MEDIUM] CWE-131 CVE-2022-32618: In typec, there is a possible out of bounds write due to an incorrect calculation of buffer size. Th In typec, there is a possible out of bounds write due to an incorrect calculation of buffer size. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07262454; Issue ID: ALPS07262454.
nvd
CVE-2022-20269P4MEDIUMCVSS 6.8v13.0vAndroid-132022-08-12
CVE-2022-20269 [MEDIUM] CWE-787 CVE-2022-20269: In Bluetooth, there is a possible out of bounds write due to an incorrect bounds check. This could l In Bluetooth, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-209062898
nvd
CVE-2025-20656P4MEDIUMCVSS 6.8v12.0v13.0+2 more2025-04-07
CVE-2025-20656 [MEDIUM] CWE-787 CVE-2025-20656: In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to loc In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09625423; Issue ID: MSV-3033.
nvd
CVE-2025-20696P4MEDIUMCVSS 6.8v13.0v14.0+1 more2025-08-04
CVE-2025-20696 [MEDIUM] CWE-787 CVE-2025-20696: In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to loc In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09915215; Issue ID: MSV-3801.
nvd
CVE-2025-20650P4MEDIUMCVSS 6.8v13.0v14.0+1 more2025-03-03
CVE-2025-20650 [MEDIUM] CWE-787 CVE-2025-20650: In da, there is a possible out of bounds write due to a missing bounds check. This could lead to loc In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291294; Issue ID: MSV-2061.
nvd
CVE-2019-9336P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9336 [MEDIUM] CWE-908 CVE-2019-9336: In libavc there is a possible information disclosure due to uninitialized data. This could lead to r In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112326322
nvd
CVE-2019-9337P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9337 [MEDIUM] CWE-908 CVE-2019-9337: In libavc there is a possible information disclosure due to uninitialized data. This could lead to r In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112204376
nvd
CVE-2019-9335P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9335 [MEDIUM] CWE-908 CVE-2019-9335: In libavc there is a possible information disclosure due to uninitialized data. This could lead to r In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112328051
nvd
CVE-2019-9338P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9338 [MEDIUM] CWE-908 CVE-2019-9338: In libavc there is a possible information disclosure due to uninitialized data. This could lead to r In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111762686
nvd
CVE-2020-0049P4MEDIUMCVSS 6.5v10.0vAndroid-102020-03-10
CVE-2020-0049 [MEDIUM] CWE-908 CVE-2020-0049: In onReadBuffer() of StreamingSource.cpp, there is a possible information disclosure due to uninitia In onReadBuffer() of StreamingSource.cpp, there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-140177694
nvd
CVE-2019-9409P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9409 [MEDIUM] CWE-908 CVE-2019-9409: In libhevc there is a possible information disclosure due to uninitialized data. This could lead to In libhevc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112272091
nvd
CVE-2019-9334P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9334 [MEDIUM] CWE-908 CVE-2019-9334: In libhevc there is a possible information disclosure due to uninitialized data. This could lead to In libhevc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112859934
nvd
CVE-2019-9322P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9322 [MEDIUM] CWE-908 CVE-2019-9322: In libavc there is a possible information disclosure due to uninitialized data. This could lead to r In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111128067
nvd
CVE-2019-9410P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9410 [MEDIUM] CWE-908 CVE-2019-9410: In libavc there is a possible information disclosure due to uninitialized data. This could lead to r In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112204443
nvd
CVE-2019-9406P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9406 [MEDIUM] CWE-908 CVE-2019-9406: In libhevc there is a possible information disclosure due to uninitialized data. This could lead to In libhevc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112552517
nvd
CVE-2019-9411P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9411 [MEDIUM] CWE-908 CVE-2019-9411: In libavc there is a possible information disclosure due to uninitialized data. This could lead to r In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112204845
nvd
CVE-2019-9361P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9361 [MEDIUM] CWE-908 CVE-2019-9361: In libavc there is a possible information disclosure due to uninitialized data. This could lead to r In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111762807
nvd
CVE-2019-9359P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9359 [MEDIUM] CWE-908 CVE-2019-9359: In libavc there is a possible information disclosure due to uninitialized data. This could lead to r In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111407302
nvd
CVE-2019-9408P4MEDIUMCVSS 6.5v10.0vAndroid-102019-09-27
CVE-2019-9408 [MEDIUM] CWE-908 CVE-2019-9408: In libavc there is a possible information disclosure due to uninitialized data. This could lead to r In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112380157
nvd
Google Android vulnerabilities | cvebase