Google Android vulnerabilities
6,770 known vulnerabilities affecting google/android.
Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 192 of 339
CVE-2022-32641P4MEDIUMCVSS 6.7v11.0v12.0+1 more2023-01-03
CVE-2022-32641 [MEDIUM] CWE-125 CVE-2022-32641: In meta wifi, there is a possible out of bounds read due to a missing bounds check. This could lead
In meta wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07453594; Issue ID: ALPS07453594.
nvd
CVE-2022-32598P4MEDIUMCVSS 6.7v10.0v11.0+1 more2022-12-05
CVE-2022-32598 [MEDIUM] CWE-787 CVE-2022-32598: In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could le
In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07446228; Issue ID: ALPS07446228.
nvd
CVE-2022-32596P4MEDIUMCVSS 6.7v10.0v11.0+1 more2022-12-05
CVE-2022-32596 [MEDIUM] CWE-787 CVE-2022-32596: In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could le
In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07446213; Issue ID: ALPS07446213.
nvd
CVE-2022-32597P4MEDIUMCVSS 6.7v10.0v11.0+1 more2022-12-05
CVE-2022-32597 [MEDIUM] CWE-787 CVE-2022-32597: In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could le
In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07446228; Issue ID: ALPS07446228.
nvd
CVE-2022-32592P4MEDIUMCVSS 6.7v11.0v12.02022-10-07
CVE-2022-32592 [MEDIUM] CWE-787 CVE-2022-32592: In cpu dvfs, there is a possible out of bounds write due to a missing bounds check. This could lead
In cpu dvfs, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07139405; Issue ID: ALPS07139405.
nvd
CVE-2022-32637P4MEDIUMCVSS 6.7v10.0v11.02023-01-03
CVE-2022-32637 [MEDIUM] CWE-787 CVE-2022-32637: In hevc decoder, there is a possible out of bounds write due to a missing bounds check. This could l
In hevc decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07491374; Issue ID: ALPS07491374.
nvd
CVE-2022-32619P4MEDIUMCVSS 6.7v10.0v11.0+2 more2022-12-05
CVE-2022-32619 [MEDIUM] CWE-787 CVE-2022-32619: In keyinstall, there is a possible out of bounds write due to an incorrect bounds check. This could
In keyinstall, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07439659; Issue ID: ALPS07439659.
nvd
CVE-2022-21759P4MEDIUMCVSS 6.7v11.0v12.02022-06-06
CVE-2022-21759 [MEDIUM] CWE-787 CVE-2022-21759: In power service, there is a possible out of bounds write due to a missing bounds check. This could
In power service, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06419106; Issue ID: ALPS06419077.
nvd
CVE-2022-32631P4MEDIUMCVSS 6.7v11.0v12.0+1 more2022-12-05
CVE-2022-32631 [MEDIUM] CWE-787 CVE-2022-32631: In Wi-Fi, there is a possible out of bounds write due to improper input validation. This could lead
In Wi-Fi, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07453613; Issue ID: ALPS07453613.
nvd
CVE-2022-32594P4MEDIUMCVSS 6.7v10.0v11.0+1 more2022-12-05
CVE-2022-32594 [MEDIUM] CWE-787 CVE-2022-32594: In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could le
In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07446207; Issue ID: ALPS07446207.
nvd
CVE-2022-32632P4MEDIUMCVSS 6.7v11.0v12.0+1 more2022-12-05
CVE-2022-32632 [MEDIUM] CWE-787 CVE-2022-32632: In Wi-Fi, there is a possible out of bounds write due to improper input validation. This could lead
In Wi-Fi, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07441630; Issue ID: ALPS07441630.
nvd
CVE-2022-20549P4MEDIUMCVSS 6.7v13.0vAndroid-132022-12-16
CVE-2022-20549 [MEDIUM] CWE-787 CVE-2022-20549: In authToken2AidlVec of KeyMintUtils.cpp, there is a possible out of bounds write due to an incorrec
In authToken2AidlVec of KeyMintUtils.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-242702451
nvd
CVE-2021-0371P4MEDIUMCVSS 6.7v11.0vAndroid-112021-03-10
CVE-2021-0371 [MEDIUM] CWE-125 CVE-2021-0371: In nci_proc_rf_management_ntf of nci_hrcv.cc, there is a possible out of bounds read due to a missin
In nci_proc_rf_management_ntf of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-164440989
nvd
CVE-2022-20201P4MEDIUMCVSS 6.7v12.1vAndroid-12L2022-06-15
CVE-2022-20201 [MEDIUM] CWE-125 CVE-2022-20201: In getAppSize of InstalldNativeService.cpp, there is a possible out of bounds read due to a missing
In getAppSize of InstalldNativeService.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12LAndroid ID: A-220733817
nvd
CVE-2021-0633P4MEDIUMCVSS 6.7v11.02021-10-25
CVE-2021-0633 [MEDIUM] CWE-787 CVE-2021-0633: In display driver, there is a possible out of bounds write due to an incorrect bounds check. This co
In display driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05585423; Issue ID: ALPS05585423.
nvd
CVE-2022-20085P4MEDIUMCVSS 6.7v11.0v12.02022-05-03
CVE-2022-20085 [MEDIUM] CWE-59 CVE-2022-20085: In netdiag, there is a possible symbolic link following due to an improper link resolution. This cou
In netdiag, there is a possible symbolic link following due to an improper link resolution. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06308877; Issue ID: ALPS06308877.
nvd
CVE-2022-20068P4MEDIUMCVSS 6.7v10.0v11.0+1 more2022-04-11
CVE-2022-20068 [MEDIUM] CWE-59 CVE-2022-20068: In mobile_log_d, there is a possible symbolic link following due to an improper link resolution. Thi
In mobile_log_d, there is a possible symbolic link following due to an improper link resolution. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06308907; Issue ID: ALPS06308907.
nvd
CVE-2022-20075P4MEDIUMCVSS 6.7v10.0v11.0+1 more2022-04-11
CVE-2022-20075 [MEDIUM] CWE-190 CVE-2022-20075: In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local
In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05838808; Issue ID: ALPS05838808.
nvd
CVE-2021-0629P4MEDIUMCVSS 6.7v10.0v11.02021-11-18
CVE-2021-0629 [MEDIUM] CWE-416 CVE-2021-0629: In mdlactl driver, there is a possible memory corruption due to a use after free. This could lead to
In mdlactl driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05776625; Issue ID: ALPS05776625.
nvd
CVE-2021-0670P4MEDIUMCVSS 6.7v10.0v11.02021-11-18
CVE-2021-0670 [MEDIUM] CWE-416 CVE-2021-0670: In apusys, there is a possible memory corruption due to a use after free. This could lead to local e
In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05654663; Issue ID: ALPS05654663.
nvd