cbcvebase.

Google Android vulnerabilities

6,770 known vulnerabilities affecting google/android.

Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36

Vulnerabilities

Page 21 of 339
CVE-2022-21745P3HIGHCVSS 8.8v10.0v11.0+1 more2022-06-06
CVE-2022-21745 [HIGH] CWE-416 CVE-2022-21745: In WIFI Firmware, there is a possible memory corruption due to a use after free. This could lead to In WIFI Firmware, there is a possible memory corruption due to a use after free. This could lead to remote escalation of privilege, when devices are connecting to the attacker-controllable Wi-Fi hotspot, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06468872; Issue ID: ALPS06468872.
nvd
CVE-2022-20362P3HIGHCVSS 8.8v13.0vAndroid-132022-08-12
CVE-2022-20362 [HIGH] CWE-190 CVE-2022-20362: In Bluetooth, there is a possible out of bounds write due to an integer overflow. This could lead to In Bluetooth, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-230756082
nvd
CVE-2022-20283P3HIGHCVSS 8.8v13.0vAndroid-132022-08-12
CVE-2022-20283 [HIGH] CWE-190 CVE-2022-20283: In Bluetooth, there is a possible out of bounds write due to an integer overflow. This could lead to In Bluetooth, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-233069336
nvd
CVE-2023-40087P3HIGHCVSS 8.8v11.0v12.0+8 more2023-12-04
CVE-2023-40087 [HIGH] CWE-787 CVE-2023-40087: In transcodeQ*ToFloat of btif_avrcp_audio_track.cc, there is a possible out of bounds write due to a In transcodeQ*ToFloat of btif_avrcp_audio_track.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to paired device escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2023-21085P3HIGHCVSS 8.8v11.0v12.0+3 more2023-04-19
CVE-2023-21085 [HIGH] CWE-787 CVE-2023-21085: In nci_snd_set_routing_cmd of nci_hmsgs.cc, there is a possible out of bounds write due to a missing In nci_snd_set_routing_cmd of nci_hmsgs.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12 Android-12L Android-13Android ID:
nvd
CVE-2023-21361P3HIGHCVSS 8.8v14.0v142023-10-30
CVE-2023-21361 [HIGH] CWE-416 CVE-2023-21361: In Bluetooth, there is a possibility of code-execution due to a use after free. This could lead to p In Bluetooth, there is a possibility of code-execution due to a use after free. This could lead to paired device escalation of privilege in the privileged Bluetooth process with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2016-0835P3CRITICALCVSS 9.8v6.0v6.0.12016-04-18
CVE-2016-0835 [CRITICAL] CWE-119 CVE-2016-0835: decoder/impeg2d_dec_hdr.c in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to decoder/impeg2d_dec_hdr.c in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file that triggers a certain negative value, aka internal bug 26070014.
nvd
CVE-2026-0030P3HIGHCVSS 8.4vAndroid kernel2026-03-02
CVE-2026-0030 [HIGH] CWE-787 CVE-2026-0030: In __host_check_page_state_range of mem_protect.c, there is a possible out of bounds write due to an In __host_check_page_state_range of mem_protect.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-0028P3HIGHCVSS 8.4vAndroid kernel2026-03-02
CVE-2026-0028 [HIGH] CWE-190 CVE-2026-0028: In __pkvm_host_share_guest of mem_protect.c, there is a possible out of bounds write due to an integ In __pkvm_host_share_guest of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-0031P3HIGHCVSS 8.4vAndroid kernel2026-03-02
CVE-2026-0031 [HIGH] CWE-190 CVE-2026-0031: In multiple functions of mem_protect.c, there is a possible out of bounds write due to an integer ov In multiple functions of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-48605P3HIGHCVSS 8.4v14.0v15.0+4 more2026-03-02
CVE-2025-48605 [HIGH] CWE-693 CVE-2025-48605: In multiple functions of KeyguardViewMediator.java, there is a possible lockscreen bypass due to a l In multiple functions of KeyguardViewMediator.java, there is a possible lockscreen bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-48602P3HIGHCVSS 8.4v14.0v15.0+4 more2026-03-02
CVE-2025-48602 [HIGH] CWE-693 CVE-2025-48602: In exitKeyguardAndFinishSurfaceBehindRemoteAnimation of KeyguardViewMediator.java, there is a possib In exitKeyguardAndFinishSurfaceBehindRemoteAnimation of KeyguardViewMediator.java, there is a possible lockscreen bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-22404P3HIGHCVSS 8.4v15.0v152025-08-26
CVE-2025-22404 [HIGH] CWE-416 CVE-2025-22404: In avct_lcb_msg_ind of avct_lcb_act.cc, there is a possible way to execute arbitrary code due to a u In avct_lcb_msg_ind of avct_lcb_act.cc, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-22410P3HIGHCVSS 8.4v15.0v152025-08-26
CVE-2025-22410 [HIGH] CWE-416 CVE-2025-22410: In multiple locations, there is a possible way to execute arbitrary code due to a use after free. Th In multiple locations, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-22405P3HIGHCVSS 8.4v15.0v152025-08-26
CVE-2025-22405 [HIGH] CWE-416 CVE-2025-22405: In multiple locations, there is a possible way to execute arbitrary code due to a use after free. Th In multiple locations, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-0021P3HIGHCVSS 8.4v14.0v15.0+5 more2026-03-02
CVE-2026-0021 [HIGH] CWE-441 CVE-2026-0021: In hasInteractAcrossUsersFullPermission of AppInfoBase.java, there is a possible cross-user permissi In hasInteractAcrossUsersFullPermission of AppInfoBase.java, there is a possible cross-user permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-22409P3HIGHCVSS 8.4v15.0v152025-08-26
CVE-2025-22409 [HIGH] CWE-416 CVE-2025-22409: In rfc_send_buf_uih of rfc_ts_frames.cc, there is a possible way to execute arbitrary code due to a In rfc_send_buf_uih of rfc_ts_frames.cc, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-36920P3HIGHCVSS 8.4vAndroid kernel2026-03-10
CVE-2025-36920 [HIGH] CWE-20 CVE-2025-36920: In hyp_alloc of arch/arm64/kvm/hyp/nvhe/alloc.c, there is a possible out of bounds write due to impr In hyp_alloc of arch/arm64/kvm/hyp/nvhe/alloc.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-32313P3HIGHCVSS 8.4v14.0v15.0+4 more2026-03-02
CVE-2025-32313 [HIGH] CWE-787 CVE-2025-32313: In UsageEvents of UsageEvents.java, there is a possible out of bounds write due to an incorrect boun In UsageEvents of UsageEvents.java, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-47023P3HIGHCVSS 8.1vAndroid kernel2024-10-25
CVE-2024-47023 [HIGH] CVE-2024-47023: there is a possible man-in-the-middle attack due to a logic error in the code. This could lead to re there is a possible man-in-the-middle attack due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
Google Android vulnerabilities | cvebase