Google Android vulnerabilities
6,771 known vulnerabilities affecting google/android.
Total CVEs
6,771
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL472HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 213 of 339
CVE-2022-32612P4MEDIUMCVSS 6.4v11.0v12.0+1 more2022-11-08
CVE-2022-32612 [MEDIUM] CWE-362 CVE-2022-32612: In vcu, there is a possible use after free due to a race condition. This could lead to local escalat
In vcu, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07203500; Issue ID: ALPS07203500.
nvd
CVE-2022-20080P4MEDIUMCVSS 6.4v9.0v10.0+2 more2022-04-11
CVE-2022-20080 [MEDIUM] CWE-362 CVE-2022-20080: In SUB2AF, there is a possible memory corruption due to a race condition. This could lead to local e
In SUB2AF, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is no needed for exploitation. Patch ID: ALPS05881290; Issue ID: ALPS05881290.
nvd
CVE-2022-20077P4MEDIUMCVSS 6.4v10.0v11.02022-04-11
CVE-2022-20077 [MEDIUM] CWE-362 CVE-2022-20077: In vow, there is a possible memory corruption due to a race condition. This could lead to local esca
In vow, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is no needed for exploitation. Patch ID: ALPS05837742; Issue ID: ALPS05852812.
nvd
CVE-2022-20078P4MEDIUMCVSS 6.4v11.0v12.02022-04-11
CVE-2022-20078 [MEDIUM] CWE-362 CVE-2022-20078: In vow, there is a possible memory corruption due to a race condition. This could lead to local esca
In vow, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is no needed for exploitation. Patch ID: ALPS05852819; Issue ID: ALPS05852819.
nvd
CVE-2022-32638P4MEDIUMCVSS 6.4v11.0v12.0+1 more2023-01-03
CVE-2022-32638 [MEDIUM] CWE-367 CVE-2022-32638: In isp, there is a possible out of bounds write due to a race condition. This could lead to local es
In isp, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07494449; Issue ID: ALPS07494449.
nvd
CVE-2022-32621P4MEDIUMCVSS 6.4v12.02022-12-05
CVE-2022-32621 [MEDIUM] CWE-362 CVE-2022-32621: In isp, there is a possible out of bounds write due to a race condition. This could lead to local es
In isp, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07310829; Issue ID: ALPS07310829.
nvd
CVE-2023-20610P4MEDIUMCVSS 6.4v11.0v12.0+1 more2023-02-06
CVE-2023-20610 [MEDIUM] CWE-662 CVE-2023-20610: In display drm, there is a possible memory corruption due to a race condition. This could lead to lo
In display drm, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07363469; Issue ID: ALPS07363469.
nvd
CVE-2023-20607P4MEDIUMCVSS 6.4v11.0v12.02023-02-06
CVE-2023-20607 [MEDIUM] CWE-662 CVE-2023-20607: In ccu, there is a possible memory corruption due to a race condition. This could lead to local esca
In ccu, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07512839; Issue ID: ALPS07512839.
nvd
CVE-2023-20625P4MEDIUMCVSS 6.4v12.0v13.02023-03-07
CVE-2023-20625 [MEDIUM] CWE-662 CVE-2023-20625: In adsp, there is a possible double free due to a race condition. This could lead to local escalatio
In adsp, there is a possible double free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628532; Issue ID: ALPS07628532.
nvd
CVE-2022-20013P4MEDIUMCVSS 6.4v10.0v11.02022-01-04
CVE-2022-20013 [MEDIUM] CWE-367 CVE-2022-20013: In vow driver, there is a possible memory corruption due to a race condition. This could lead to loc
In vow driver, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05837742; Issue ID: ALPS05837742.
nvd
CVE-2022-26428P4MEDIUMCVSS 6.4v11.0v12.02022-08-01
CVE-2022-26428 [MEDIUM] CWE-362 CVE-2022-26428: In video codec, there is a possible memory corruption due to a race condition. This could lead to lo
In video codec, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06521260; Issue ID: ALPS06521260.
nvd
CVE-2023-20687P4MEDIUMCVSS 6.4v12.0v13.02023-04-06
CVE-2023-20687 [MEDIUM] CWE-362 CVE-2023-20687: In display drm, there is a possible double free due to a race condition. This could lead to local es
In display drm, there is a possible double free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07570772; Issue ID: ALPS07570772.
nvd
CVE-2023-20686P4MEDIUMCVSS 6.4v12.0v13.02023-04-06
CVE-2023-20686 [MEDIUM] CWE-362 CVE-2023-20686: In display drm, there is a possible double free due to a race condition. This could lead to local es
In display drm, there is a possible double free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07570826; Issue ID: ALPS07570826.
nvd
CVE-2023-20801P4MEDIUMCVSS 6.4v12.0v13.02023-08-07
CVE-2023-20801 [MEDIUM] CWE-362 CVE-2023-20801: In imgsys, there is a possible use after free due to a race condition. This could lead to local esca
In imgsys, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07420968; Issue ID: ALPS07420968.
nvd
CVE-2023-20788P4MEDIUMCVSS 6.4v12.02023-08-07
CVE-2023-20788 [MEDIUM] CWE-367 CVE-2023-20788: In thermal, there is a possible use after free due to a race condition. This could lead to local esc
In thermal, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07648734; Issue ID: ALPS07648735.
nvd
CVE-2023-20787P4MEDIUMCVSS 6.4v12.02023-08-07
CVE-2023-20787 [MEDIUM] CWE-367 CVE-2023-20787: In thermal, there is a possible use after free due to a race condition. This could lead to local esc
In thermal, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07648734; Issue ID: ALPS07648734.
nvd
CVE-2023-20835P4MEDIUMCVSS 6.4v12.0v13.02023-09-04
CVE-2023-20835 [MEDIUM] CWE-362 CVE-2023-20835: In camsys, there is a possible use after free due to a race condition. This could lead to local esca
In camsys, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07341261; Issue ID: ALPS07326570.
nvd
CVE-2024-20107P4MEDIUMCVSS 6.2v12.0v13.0+2 more2024-11-04
CVE-2024-20107 [MEDIUM] CWE-125 CVE-2024-20107: In da, there is a possible out of bounds read due to a missing bounds check. This could lead to loca
In da, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09124360; Issue ID: MSV-1823.
nvd
CVE-2025-26423P4MEDIUMCVSS 6.2v13.0v14.0+4 more2025-09-04
CVE-2025-26423 [MEDIUM] CWE-400 CVE-2025-26423: In validateIpConfiguration of WifiConfigurationUtil.java, there is a possible way to trigger a perma
In validateIpConfiguration of WifiConfigurationUtil.java, there is a possible way to trigger a permanent DoS due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2022-33723P4MEDIUMCVSS 6.1v10.0v11.0+1 more2022-08-05
CVE-2022-33723 [MEDIUM] CWE-1021 CVE-2022-33723: A vulnerable code in onCreate of BluetoothScanDialog prior to SMR Aug-2022 Release 1, allows attacke
A vulnerable code in onCreate of BluetoothScanDialog prior to SMR Aug-2022 Release 1, allows attackers to trick the user to select an unwanted bluetooth device via tapjacking/overlay attack.
nvd