Google Android vulnerabilities

9,646 known vulnerabilities affecting google/android.

Total CVEs
9,646
CISA KEV
48
actively exploited
Public exploits
89
Exploited in wild
44
Severity breakdown
CRITICAL883HIGH5184MEDIUM3317LOW260UNKNOWN2

Vulnerabilities

Page 192 of 483
CVE-2022-20082HIGHCVSS 7.0v10.0v11.0+1 more2022-07-06
CVE-2022-20082 [HIGH] CWE-362 CVE-2022-20082: In GPU, there is a possible use after free due to a race condition. This could lead to local escalat In GPU, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07044730; Issue ID: ALPS07044730.
nvdandroid
CVE-2022-21777HIGHCVSS 7.8v11.0v12.02022-07-06
CVE-2022-21777 [HIGH] CWE-862 CVE-2022-21777: In Autoboot, there is a possible permission bypass due to a missing permission check. This could lea In Autoboot, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06713894; Issue ID: ALPS06713894.
nvd
CVE-2022-21767HIGHCVSS 8.8v8.1v9.0+3 more2022-07-06
CVE-2022-21767 [HIGH] CWE-787 CVE-2022-21767: In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06784430; Issue ID: ALPS06784430.
nvdandroid
CVE-2022-21768HIGHCVSS 8.8v8.1v9.0+3 more2022-07-06
CVE-2022-21768 [HIGH] CWE-787 CVE-2022-21768: In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06784351; Issue ID: ALPS06784351.
nvdandroid
CVE-2022-21776MEDIUMCVSS 6.4v11.0v12.02022-07-06
CVE-2022-21776 [MEDIUM] CWE-362 CVE-2022-21776: In MDP, there is a possible use after free due to a race condition. This could lead to local escalat In MDP, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06545450; Issue ID: ALPS06545450.
nvd
CVE-2022-21785MEDIUMCVSS 6.7v11.0v12.02022-07-06
CVE-2022-21785 [MEDIUM] CWE-787 CVE-2022-21785: In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could le In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06807363; Issue ID: ALPS06807363.
nvd
CVE-2022-21784MEDIUMCVSS 6.7v11.0v12.02022-07-06
CVE-2022-21784 [MEDIUM] CWE-787 CVE-2022-21784: In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could le In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06704526; Issue ID: ALPS06704462.
nvd
CVE-2022-21769MEDIUMCVSS 4.4v10.0v11.0+1 more2022-07-06
CVE-2022-21769 [MEDIUM] CWE-125 CVE-2022-21769: In CCCI, there is a possible out of bounds read due to a missing bounds check. This could lead to lo In CCCI, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06641673; Issue ID: ALPS06641687.
nvd
CVE-2022-21764MEDIUMCVSS 5.5v10.0v11.0+1 more2022-07-06
CVE-2022-21764 [MEDIUM] CWE-862 CVE-2022-21764: In telecom service, there is a possible information disclosure due to a missing permission check. Th In telecom service, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07044717; Issue ID: ALPS07044717.
nvdandroid
CVE-2022-21763MEDIUMCVSS 5.5v10.0v11.0+1 more2022-07-06
CVE-2022-21763 [MEDIUM] CWE-862 CVE-2022-21763: In telecom service, there is a possible information disclosure due to a missing permission check. Th In telecom service, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07044717; Issue ID: ALPS07044708.
nvdandroid
CVE-2022-21770MEDIUMCVSS 6.7v11.0v12.02022-07-06
CVE-2022-21770 [MEDIUM] CWE-59 CVE-2022-21770: In sound driver, there is a possible information disclosure due to symlink following. This could lea In sound driver, there is a possible information disclosure due to symlink following. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06558663; Issue ID: ALPS06558663.
nvd
CVE-2022-21783MEDIUMCVSS 6.7v11.0v12.02022-07-06
CVE-2022-21783 [MEDIUM] CWE-787 CVE-2022-21783: In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could le In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06704526; Issue ID: ALPS06704482.
nvd
CVE-2022-21766MEDIUMCVSS 6.7v10.0v11.0+1 more2022-07-06
CVE-2022-21766 [MEDIUM] CWE-787 CVE-2022-21766: In CCCI, there is a possible out of bounds write due to a missing bounds check. This could lead to l In CCCI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06641673; Issue ID: ALPS06641653.
nvd
CVE-2022-21786MEDIUMCVSS 6.7v11.0v12.02022-07-06
CVE-2022-21786 [MEDIUM] CWE-704 CVE-2022-21786: In audio DSP, there is a possible memory corruption due to improper casting. This could lead to loca In audio DSP, there is a possible memory corruption due to improper casting. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06558822; Issue ID: ALPS06558822.
nvd
CVE-2022-21772MEDIUMCVSS 6.7v11.0v12.02022-07-06
CVE-2022-21772 [MEDIUM] CWE-362 CVE-2022-21772: In TEEI driver, there is a possible type confusion due to a race condition. This could lead to local In TEEI driver, there is a possible type confusion due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06493842; Issue ID: ALPS06493842.
nvd
CVE-2022-21787MEDIUMCVSS 6.7v11.0v12.02022-07-06
CVE-2022-21787 [MEDIUM] CWE-787 CVE-2022-21787: In audio DSP, there is a possible out of bounds write due to a missing bounds check. This could lead In audio DSP, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06558844; Issue ID: ALPS06558844.
nvd
CVE-2022-21773MEDIUMCVSS 6.7v11.0v12.02022-07-06
CVE-2022-21773 [MEDIUM] CWE-362 CVE-2022-21773: In TEEI driver, there is a possible use after free due to a race condition. This could lead to local In TEEI driver, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06641388; Issue ID: ALPS06641388.
nvd
CVE-2022-21774MEDIUMCVSS 6.7v11.0v12.02022-07-06
CVE-2022-21774 [MEDIUM] CWE-362 CVE-2022-21774: In TEEI driver, there is a possible use after free due to a race condition. This could lead to local In TEEI driver, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06641447; Issue ID: ALPS06641447.
nvd
CVE-2022-21781MEDIUMCVSS 6.7v11.0v12.02022-07-06
CVE-2022-21781 [MEDIUM] CWE-787 CVE-2022-21781: In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could le In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06704526; Issue ID: ALPS06704433.
nvd
CVE-2022-21775MEDIUMCVSS 6.7v11.0v12.02022-07-06
CVE-2022-21775 [MEDIUM] CWE-667 CVE-2022-21775: In sched driver, there is a possible use after free due to improper locking. This could lead to loca In sched driver, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06479032; Issue ID: ALPS06479032.
nvd