Google Android vulnerabilities

9,646 known vulnerabilities affecting google/android.

Total CVEs
9,646
CISA KEV
48
actively exploited
Public exploits
89
Exploited in wild
44
Severity breakdown
CRITICAL883HIGH5184MEDIUM3317LOW260UNKNOWN2

Vulnerabilities

Page 225 of 483
CVE-2021-25517HIGHCVSS 7.8v10.0v11.02021-12-08
CVE-2021-25517 [HIGH] CWE-20 CVE-2021-25517: An improper input validation vulnerability in LDFW prior to SMR Dec-2021 Release 1 allows attackers An improper input validation vulnerability in LDFW prior to SMR Dec-2021 Release 1 allows attackers to perform arbitrary code execution.
nvd
CVE-2021-25512HIGHCVSS 7.8v9.0v10.0+1 more2021-12-08
CVE-2021-25512 [HIGH] CWE-20 CVE-2021-25512: An improper validation vulnerability in telephony prior to SMR Dec-2021 Release 1 allows attackers t An improper validation vulnerability in telephony prior to SMR Dec-2021 Release 1 allows attackers to launch certain activities.
nvd
CVE-2021-25516HIGHCVSS 7.5v9.0v10.0+1 more2021-12-08
CVE-2021-25516 [HIGH] CWE-703 CVE-2021-25516: An improper check or handling of exceptional conditions in Exynos baseband prior to SMR Dec-2021 Rel An improper check or handling of exceptional conditions in Exynos baseband prior to SMR Dec-2021 Release 1 allows attackers to track locations.
nvd
CVE-2021-25510HIGHCVSS 7.8v9.0v10.0+1 more2021-12-08
CVE-2021-25510 [HIGH] CWE-20 CVE-2021-25510: An improper validation vulnerability in FilterProvider prior to SMR Dec-2021 Release 1 allows local An improper validation vulnerability in FilterProvider prior to SMR Dec-2021 Release 1 allows local arbitrary code execution.
nvd
CVE-2021-25514MEDIUMCVSS 6.5v10.0v11.02021-12-08
CVE-2021-25514 [MEDIUM] CVE-2021-25514: An improper intent redirection handling in Tags prior to SMR Dec-2021 Release 1 allows attackers to An improper intent redirection handling in Tags prior to SMR Dec-2021 Release 1 allows attackers to access sensitive information.
nvd
CVE-2021-25518MEDIUMCVSS 6.7v9.0v10.0+1 more2021-12-08
CVE-2021-25518 [MEDIUM] CWE-119 CVE-2021-25518: An improper boundary check in secure_log of LDFW and BL31 prior to SMR Dec-2021 Release 1 allows arb An improper boundary check in secure_log of LDFW and BL31 prior to SMR Dec-2021 Release 1 allows arbitrary memory write and code execution.
nvd
CVE-2021-25513LOWCVSS 2.4v11.02021-12-08
CVE-2021-25513 [LOW] CWE-269 CVE-2021-25513: An improper privilege management vulnerability in Apps Edge application prior to SMR Dec-2021 Releas An improper privilege management vulnerability in Apps Edge application prior to SMR Dec-2021 Release 1 allows unauthorized access to some device data on the lockscreen.
nvd
CVE-2021-25515LOWCVSS 3.3v9.0v10.0+1 more2021-12-08
CVE-2021-25515 [LOW] CWE-269 CVE-2021-25515: An improper usage of implicit intent in SemRewardManager prior to SMR Dec-2021 Release 1 allows atta An improper usage of implicit intent in SemRewardManager prior to SMR Dec-2021 Release 1 allows attackers to access BSSID.
nvd
CVE-2021-25519LOWCVSS 3.3v9.0v10.0+1 more2021-12-08
CVE-2021-25519 [LOW] CWE-200 CVE-2021-25519: An improper access control vulnerability in CPLC prior to SMR Dec-2021 Release 1 allows local attack An improper access control vulnerability in CPLC prior to SMR Dec-2021 Release 1 allows local attackers to access CPLC information without permission.
nvd
CVE-2021-30276CRITICALCVSS 9.32021-12-01
CVE-2021-30276 [CRITICAL] CVE-2021-30276: Closed-source component Android Security Bulletin 2021-12-01 CVE: CVE-2021-30276 Severity: CRITICAL Component: Closed-source component References: A-190404445 *
android
CVE-2021-30351CRITICALCVSS 9.82021-12-01
CVE-2021-30351 [CRITICAL] CVE-2021-30351: Closed-source component Android Security Bulletin 2021-12-01 CVE: CVE-2021-30351 Severity: CRITICAL Component: Closed-source component References: A-201430561 *
android
CVE-2021-30275CRITICALCVSS 9.32021-12-01
CVE-2021-30275 [CRITICAL] CVE-2021-30275: Closed-source component Android Security Bulletin 2021-12-01 CVE: CVE-2021-30275 Severity: CRITICAL Component: Closed-source component References: A-190403081 *
android
CVE-2021-33909HIGHCVSS 7.82021-12-01
CVE-2021-33909 [HIGH] CVE-2021-33909: Filesystem Android Security Bulletin 2021-12-01 CVE: CVE-2021-33909 Severity: HIGH Type: EoP Component: Filesystem References: A-195082750 Upstream kernel
android
CVE-2021-30272HIGHCVSS 7.32021-12-01
CVE-2021-30272 [HIGH] CVE-2021-30272: Closed-source component Android Security Bulletin 2021-12-01 CVE: CVE-2021-30272 Severity: HIGH Component: Closed-source component References: A-190404323 *
android
CVE-2021-38204HIGHCVSS 6.82021-12-01
CVE-2021-38204 [MEDIUM] CVE-2021-38204: USB Android Security Bulletin 2021-12-01 CVE: CVE-2021-38204 Severity: HIGH Type: EoP Component: USB References: A-196448784 Upstream kernel
android
CVE-2021-30262HIGHCVSS 8.42021-12-01
CVE-2021-30262 [HIGH] CVE-2021-30262: Modem Android Security Bulletin 2021-12-01 CVE: CVE-2021-30262 Severity: HIGH Component: Modem References: A-190402578 QC-CR#2774954
android
CVE-2020-11263HIGHCVSS 7.32021-12-01
CVE-2020-11263 [HIGH] CVE-2020-11263: Closed-source component Android Security Bulletin 2021-12-01 CVE: CVE-2020-11263 Severity: HIGH Component: Closed-source component References: A-190404447 *
android
CVE-2021-30335HIGHCVSS 8.42021-12-01
CVE-2021-30335 [HIGH] CVE-2021-30335: Kernel Android Security Bulletin 2021-12-01 CVE: CVE-2021-30335 Severity: HIGH Component: Kernel References: A-199191310 QC-CR#2964455
android
CVE-2021-30337HIGHCVSS 8.42021-12-01
CVE-2021-30337 [HIGH] CVE-2021-30337: Kernel Android Security Bulletin 2021-12-01 CVE: CVE-2021-30337 Severity: HIGH Component: Kernel References: A-199190644 QC-CR#2971293
android
CVE-2021-30336HIGHCVSS 8.42021-12-01
CVE-2021-30336 [HIGH] CVE-2021-30336: Closed-source component Android Security Bulletin 2021-12-01 CVE: CVE-2021-30336 Severity: HIGH Component: Closed-source component References: A-199191065 *
android