cbcvebase.

Google Android vulnerabilities

6,770 known vulnerabilities affecting google/android.

Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36

Vulnerabilities

Page 192 of 339
CVE-2022-32641P4MEDIUMCVSS 6.7v11.0v12.0+1 more2023-01-03
CVE-2022-32641 [MEDIUM] CWE-125 CVE-2022-32641: In meta wifi, there is a possible out of bounds read due to a missing bounds check. This could lead In meta wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07453594; Issue ID: ALPS07453594.
nvd
CVE-2022-32598P4MEDIUMCVSS 6.7v10.0v11.0+1 more2022-12-05
CVE-2022-32598 [MEDIUM] CWE-787 CVE-2022-32598: In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could le In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07446228; Issue ID: ALPS07446228.
nvd
CVE-2022-32596P4MEDIUMCVSS 6.7v10.0v11.0+1 more2022-12-05
CVE-2022-32596 [MEDIUM] CWE-787 CVE-2022-32596: In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could le In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07446213; Issue ID: ALPS07446213.
nvd
CVE-2022-32597P4MEDIUMCVSS 6.7v10.0v11.0+1 more2022-12-05
CVE-2022-32597 [MEDIUM] CWE-787 CVE-2022-32597: In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could le In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07446228; Issue ID: ALPS07446228.
nvd
CVE-2022-32592P4MEDIUMCVSS 6.7v11.0v12.02022-10-07
CVE-2022-32592 [MEDIUM] CWE-787 CVE-2022-32592: In cpu dvfs, there is a possible out of bounds write due to a missing bounds check. This could lead In cpu dvfs, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07139405; Issue ID: ALPS07139405.
nvd
CVE-2022-32637P4MEDIUMCVSS 6.7v10.0v11.02023-01-03
CVE-2022-32637 [MEDIUM] CWE-787 CVE-2022-32637: In hevc decoder, there is a possible out of bounds write due to a missing bounds check. This could l In hevc decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07491374; Issue ID: ALPS07491374.
nvd
CVE-2022-32619P4MEDIUMCVSS 6.7v10.0v11.0+2 more2022-12-05
CVE-2022-32619 [MEDIUM] CWE-787 CVE-2022-32619: In keyinstall, there is a possible out of bounds write due to an incorrect bounds check. This could In keyinstall, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07439659; Issue ID: ALPS07439659.
nvd
CVE-2022-21759P4MEDIUMCVSS 6.7v11.0v12.02022-06-06
CVE-2022-21759 [MEDIUM] CWE-787 CVE-2022-21759: In power service, there is a possible out of bounds write due to a missing bounds check. This could In power service, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06419106; Issue ID: ALPS06419077.
nvd
CVE-2022-32631P4MEDIUMCVSS 6.7v11.0v12.0+1 more2022-12-05
CVE-2022-32631 [MEDIUM] CWE-787 CVE-2022-32631: In Wi-Fi, there is a possible out of bounds write due to improper input validation. This could lead In Wi-Fi, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07453613; Issue ID: ALPS07453613.
nvd
CVE-2022-32594P4MEDIUMCVSS 6.7v10.0v11.0+1 more2022-12-05
CVE-2022-32594 [MEDIUM] CWE-787 CVE-2022-32594: In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could le In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07446207; Issue ID: ALPS07446207.
nvd
CVE-2022-32632P4MEDIUMCVSS 6.7v11.0v12.0+1 more2022-12-05
CVE-2022-32632 [MEDIUM] CWE-787 CVE-2022-32632: In Wi-Fi, there is a possible out of bounds write due to improper input validation. This could lead In Wi-Fi, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07441630; Issue ID: ALPS07441630.
nvd
CVE-2022-20549P4MEDIUMCVSS 6.7v13.0vAndroid-132022-12-16
CVE-2022-20549 [MEDIUM] CWE-787 CVE-2022-20549: In authToken2AidlVec of KeyMintUtils.cpp, there is a possible out of bounds write due to an incorrec In authToken2AidlVec of KeyMintUtils.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-242702451
nvd
CVE-2021-0371P4MEDIUMCVSS 6.7v11.0vAndroid-112021-03-10
CVE-2021-0371 [MEDIUM] CWE-125 CVE-2021-0371: In nci_proc_rf_management_ntf of nci_hrcv.cc, there is a possible out of bounds read due to a missin In nci_proc_rf_management_ntf of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-164440989
nvd
CVE-2022-20201P4MEDIUMCVSS 6.7v12.1vAndroid-12L2022-06-15
CVE-2022-20201 [MEDIUM] CWE-125 CVE-2022-20201: In getAppSize of InstalldNativeService.cpp, there is a possible out of bounds read due to a missing In getAppSize of InstalldNativeService.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12LAndroid ID: A-220733817
nvd
CVE-2021-0633P4MEDIUMCVSS 6.7v11.02021-10-25
CVE-2021-0633 [MEDIUM] CWE-787 CVE-2021-0633: In display driver, there is a possible out of bounds write due to an incorrect bounds check. This co In display driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05585423; Issue ID: ALPS05585423.
nvd
CVE-2022-20085P4MEDIUMCVSS 6.7v11.0v12.02022-05-03
CVE-2022-20085 [MEDIUM] CWE-59 CVE-2022-20085: In netdiag, there is a possible symbolic link following due to an improper link resolution. This cou In netdiag, there is a possible symbolic link following due to an improper link resolution. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06308877; Issue ID: ALPS06308877.
nvd
CVE-2022-20068P4MEDIUMCVSS 6.7v10.0v11.0+1 more2022-04-11
CVE-2022-20068 [MEDIUM] CWE-59 CVE-2022-20068: In mobile_log_d, there is a possible symbolic link following due to an improper link resolution. Thi In mobile_log_d, there is a possible symbolic link following due to an improper link resolution. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06308907; Issue ID: ALPS06308907.
nvd
CVE-2022-20075P4MEDIUMCVSS 6.7v10.0v11.0+1 more2022-04-11
CVE-2022-20075 [MEDIUM] CWE-190 CVE-2022-20075: In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05838808; Issue ID: ALPS05838808.
nvd
CVE-2021-0629P4MEDIUMCVSS 6.7v10.0v11.02021-11-18
CVE-2021-0629 [MEDIUM] CWE-416 CVE-2021-0629: In mdlactl driver, there is a possible memory corruption due to a use after free. This could lead to In mdlactl driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05776625; Issue ID: ALPS05776625.
nvd
CVE-2021-0670P4MEDIUMCVSS 6.7v10.0v11.02021-11-18
CVE-2021-0670 [MEDIUM] CWE-416 CVE-2021-0670: In apusys, there is a possible memory corruption due to a use after free. This could lead to local e In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05654663; Issue ID: ALPS05654663.
nvd
Google Android vulnerabilities | cvebase