Google Android vulnerabilities
6,771 known vulnerabilities affecting google/android.
Total CVEs
6,771
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL472HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 210 of 339
CVE-2024-22007P4MEDIUMCVSS 6.2v13.0v132024-03-11
CVE-2024-22007 [MEDIUM] CWE-125 CVE-2024-22007: In constraint_check of fvp.c, there is a possible out of bounds read due to a missing bounds check.
In constraint_check of fvp.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-32918P4MEDIUMCVSS 6.1vAndroid kernel2024-06-13
CVE-2024-32918 [MEDIUM] CWE-269 CVE-2024-32918: Permission Bypass allowing attackers to disable HDCP 2.2 encryption by not completing the HDCP Key
Permission Bypass allowing attackers to disable HDCP 2.2 encryption by not completing the HDCP Key Exchange initialization steps
nvd
CVE-2019-9399P4MEDIUMCVSS 5.9v10.0vAndroid-102019-09-27
CVE-2019-9399 [MEDIUM] CWE-327 CVE-2019-9399: The Print Service is susceptible to man in the middle attacks due to improperly used crypto. This co
The Print Service is susceptible to man in the middle attacks due to improperly used crypto. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-115635664
nvd
CVE-2026-0061P4MEDIUMCVSS 5.9v14.0v15.0+8 more2026-06-01
CVE-2026-0061 [MEDIUM] CWE-1021 CVE-2026-0061: In multiple functions of WindowState.java, there is a possible way to trick a user into accepting a
In multiple functions of WindowState.java, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-32330P4MEDIUMCVSS 5.7v13.0v14.0+4 more2025-09-04
CVE-2025-32330 [MEDIUM] CWE-1188 CVE-2025-32330: In generateRandomPassword of LocalBluetoothLeBroadcast.java, there is a possible way to intercept th
In generateRandomPassword of LocalBluetoothLeBroadcast.java, there is a possible way to intercept the Auracast audio stream due to an insecure default value. This could lead to remote (proximal/adjacent) information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2023-40121P4MEDIUMCVSS 5.5v11.0v12.0+6 more2023-10-27
CVE-2023-40121 [MEDIUM] CWE-502 CVE-2023-40121: In appendEscapedSQLString of DatabaseUtils.java, there is a possible SQL injection due to unsafe des
In appendEscapedSQLString of DatabaseUtils.java, there is a possible SQL injection due to unsafe deserialization. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2023-35683P4MEDIUMCVSS 5.5v11.0v12.0+6 more2023-09-11
CVE-2023-35683 [MEDIUM] CWE-89 CVE-2023-35683: In bindSelection of DatabaseUtils.java, there is a possible way to access files from other applicati
In bindSelection of DatabaseUtils.java, there is a possible way to access files from other applications due to SQL injection. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-48651P4MEDIUMCVSS 5.5vAndroid SoC2026-04-06
CVE-2025-48651 [MEDIUM] CWE-20 CVE-2025-48651: In importWrappedKey of KMKeymasterApplet.java, there is a possible way access keys that should be re
In importWrappedKey of KMKeymasterApplet.java, there is a possible way access keys that should be restricted due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2018-9377P4MEDIUMCVSS 5.5v6.0v6.0.1+6 more2024-11-28
CVE-2018-9377 [MEDIUM] CWE-908 CVE-2018-9377: In getIntentForIntentSender of ActivityManagerService.java, there is a possible way to access user m
In getIntentForIntentSender of ActivityManagerService.java, there is a possible way to access user metadata due to a pending intent. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-32316P4MEDIUMCVSS 5.5v16.0v162025-09-05
CVE-2025-32316 [MEDIUM] CWE-787 CVE-2025-32316: In gralloc4, there is a possible out of bounds write due to a missing bounds check. This could lead
In gralloc4, there is a possible out of bounds write due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-0028P4MEDIUMCVSS 5.5v16.0v162025-09-05
CVE-2024-0028 [MEDIUM] CWE-862 CVE-2024-0028: In Audio Service, there is a possible way to obtain MAC addresses of nearby Bluetooth devices due to
In Audio Service, there is a possible way to obtain MAC addresses of nearby Bluetooth devices due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2020-26603P4MEDIUMCVSS 5.3v8.0v8.1+2 more2020-10-06
CVE-2020-26603 [MEDIUM] CWE-22 CVE-2020-26603: An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Sticker
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Sticker Center allows directory traversal for an unprivileged process to read arbitrary files. The Samsung ID is SVE-2020-18433 (October 2020).
nvd
CVE-2024-20047P4MEDIUMCVSS 5.4v12.02024-04-01
CVE-2024-20047 [MEDIUM] CWE-190 CVE-2024-20047: In battery, there is a possible out of bounds read due to an integer overflow. This could lead to lo
In battery, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08587865; Issue ID: ALPS08486807.
nvd
CVE-2024-40674P4MEDIUMCVSS 5.3v14.0v142025-01-28
CVE-2024-40674 [MEDIUM] CWE-120 CVE-2024-40674: In validateSsid of WifiConfigurationUtil.java, there is a possible way to overflow a system configur
In validateSsid of WifiConfigurationUtil.java, there is a possible way to overflow a system configuration file due to a logic error in the code. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-0016P4MEDIUMCVSS 5.3v11.0v12.0+8 more2024-02-16
CVE-2024-0016 [MEDIUM] CWE-125 CVE-2024-0016: In multiple locations, there is a possible out of bounds read due to a missing bounds check. This co
In multiple locations, there is a possible out of bounds read due to a missing bounds check. This could lead to paired device information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-0135P4UNKNOWNvAndroid kernel2026-06-16
CVE-2026-0135 CVE-2026-0135: In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to r
In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-0150P4UNKNOWNvAndroid kernel2026-06-16
CVE-2026-0150 CVE-2026-0150: In ExecuteGraph command handler of EdgeTPU firmware, there is a possible out of bounds write due to
In ExecuteGraph command handler of EdgeTPU firmware, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with root privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2015-3845P4MEDIUMCVSS 6.8≤ 5.12015-10-01
CVE-2015-3845 [MEDIUM] CWE-264 CVE-2015-3845: The Parcel::appendFrom function in libs/binder/Parcel.cpp in Binder in Android before 5.1.1 LMY48M d
The Parcel::appendFrom function in libs/binder/Parcel.cpp in Binder in Android before 5.1.1 LMY48M does not consider parcel boundaries during identification of binder objects in an append operation, which allows attackers to obtain a different application's privileges via a crafted application, aka internal bug 17312693.
nvd
CVE-2016-0774P4MEDIUMCVSS 6.8≤ 6.0.12016-04-27
CVE-2016-0774 [MEDIUM] CVE-2016-0774: The (1) pipe_read and (2) pipe_write implementations in fs/pipe.c in a certain Linux kernel backport
The (1) pipe_read and (2) pipe_write implementations in fs/pipe.c in a certain Linux kernel backport in the linux package before 3.2.73-2+deb7u3 on Debian wheezy and the kernel package before 3.10.0-229.26.2 on Red Hat Enterprise Linux (RHEL) 7.1 do not properly consider the side effects of failed __copy_to_user_inatomic and __copy_from_user_inatomic calls, w
nvd
CVE-2022-33730P4MEDIUMCVSS 6.8v12.02022-08-05
CVE-2022-33730 [MEDIUM] CWE-787 CVE-2022-33730: Heap-based buffer overflow vulnerability in Samsung Dex for PC prior to SMR Aug-2022 Release 1 allow
Heap-based buffer overflow vulnerability in Samsung Dex for PC prior to SMR Aug-2022 Release 1 allows arbitrary code execution by physical attackers.
nvd