cbcvebase.

Google Android vulnerabilities

6,771 known vulnerabilities affecting google/android.

Total CVEs
6,771
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL472HIGH2821MEDIUM3190LOW252UNKNOWN36

Vulnerabilities

Page 301 of 339
CVE-2020-15584P4MEDIUMCVSS 5.5v10.02020-07-07
CVE-2020-15584 [MEDIUM] CWE-20 CVE-2020-15584: An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can trigger an ou An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can trigger an out-of-bounds access and device reset via a 4K wallpaper image because ImageProcessHelper mishandles boundary checks. The Samsung ID is SVE-2020-18056 (July 2020).
nvd
CVE-2020-15582P4MEDIUMCVSS 5.5v9.0v10.02020-07-07
CVE-2020-15582 [MEDIUM] CWE-119 CVE-2020-15582: An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 7885 chipsets) sof An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 7885 chipsets) software. The Bluetooth Low Energy (BLE) component has a buffer overflow with a resultant deadlock or crash. The Samsung ID is SVE-2020-16870 (July 2020).
nvd
CVE-2019-20779P4MEDIUMCVSS 5.5v7.0v7.1+4 more2020-04-17
CVE-2019-20779 [MEDIUM] CVE-2019-20779: An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 softwa An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 software. A TrustZone trusted application can crash via crafted input. The LG ID is LVE-SMP-190003 (May 2019).
nvd
CVE-2019-20776P4MEDIUMCVSS 5.5v7.0v7.1+3 more2020-04-17
CVE-2019-20776 [MEDIUM] CVE-2019-20776: An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 software. A An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 software. A TZ trusted application can crash via crafted input. The LG ID is LVE-SMP-190005 (July 2019).
nvd
CVE-2017-18672P4MEDIUMCVSS 5.5v5.0v5.1+5 more2020-04-07
CVE-2017-18672 [MEDIUM] CWE-755 CVE-2017-18672: An issue was discovered on Samsung mobile devices with L(5.0/5.1), M(6.0), and N(7.x) software. Beca An issue was discovered on Samsung mobile devices with L(5.0/5.1), M(6.0), and N(7.x) software. Because of incorrect exception handling for Intents, a local attacker can force a reboot within framework.jar. The Samsung ID is SVE-2017-8390 (May 2017).
nvd
CVE-2022-28787P4MEDIUMCVSS 5.5v10.0v11.0+1 more2022-05-03
CVE-2022-28787 [MEDIUM] CWE-125 CVE-2022-28787: Improper buffer size check logic in wmfextractor library prior to SMR May-2022 Release 1 allows out Improper buffer size check logic in wmfextractor library prior to SMR May-2022 Release 1 allows out of bounds read leading to possible temporary denial of service. The patch adds buffer size check logic.
nvd
CVE-2022-28785P4MEDIUMCVSS 5.5v10.0v11.0+1 more2022-05-03
CVE-2022-28785 [MEDIUM] CWE-125 CVE-2022-28785: Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leading to possible temporary denial of service. The patch adds buffer size check logic.
nvd
CVE-2022-28788P4MEDIUMCVSS 5.5v10.0v11.0+1 more2022-05-03
CVE-2022-28788 [MEDIUM] CWE-125 CVE-2022-28788: Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leading to possible temporary denial of service. The patch adds buffer size check logic.
nvd
CVE-2022-28786P4MEDIUMCVSS 5.5v10.0v11.0+1 more2022-05-03
CVE-2022-28786 [MEDIUM] CWE-125 CVE-2022-28786: Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leading to possible temporary denial of service. The patch adds buffer size check logic.
nvd
CVE-2022-48234P4MEDIUMCVSS 5.5v10.0v11.0+2 more2023-05-09
CVE-2022-48234 [MEDIUM] CWE-787 CVE-2022-48234: In FM service , there is a possible missing params check. This could lead to local denial of service In FM service , there is a possible missing params check. This could lead to local denial of service in FM service .
nvd
CVE-2022-48233P4MEDIUMCVSS 5.5v10.0v11.0+2 more2023-05-09
CVE-2022-48233 [MEDIUM] CWE-787 CVE-2022-48233: In FM service , there is a possible missing params check. This could lead to local denial of service In FM service , there is a possible missing params check. This could lead to local denial of service in FM service .
nvd
CVE-2022-48232P4MEDIUMCVSS 5.5v10.0v11.0+2 more2023-05-09
CVE-2022-48232 [MEDIUM] CWE-787 CVE-2022-48232: In FM service , there is a possible missing params check. This could lead to local denial of service In FM service , there is a possible missing params check. This could lead to local denial of service in FM service .
nvd
CVE-2022-47453P4MEDIUMCVSS 5.5v10.0v11.0+1 more2023-03-10
CVE-2022-47453 [MEDIUM] CWE-119 CVE-2022-47453: In wcn service, there is a possible missing params check. This could lead to local denial of service In wcn service, there is a possible missing params check. This could lead to local denial of service in wcn service.
nvd
CVE-2022-47360P4MEDIUMCVSS 5.5v10.0v11.0+1 more2023-02-12
CVE-2022-47360 [MEDIUM] CWE-476 CVE-2022-47360: In log service, there is a missing permission check. This could lead to local denial of service in l In log service, there is a missing permission check. This could lead to local denial of service in log service.
nvd
CVE-2022-47358P4MEDIUMCVSS 5.5v10.0v11.0+1 more2023-02-12
CVE-2022-47358 [MEDIUM] CWE-862 CVE-2022-47358: In log service, there is a missing permission check. This could lead to local denial of service in l In log service, there is a missing permission check. This could lead to local denial of service in log service.
nvd
CVE-2022-47357P4MEDIUMCVSS 5.5v10.0v11.0+1 more2023-02-12
CVE-2022-47357 [MEDIUM] CWE-862 CVE-2022-47357: In log service, there is a missing permission check. This could lead to local denial of service in l In log service, there is a missing permission check. This could lead to local denial of service in log service.
nvd
CVE-2022-47359P4MEDIUMCVSS 5.5v10.0v11.0+1 more2023-02-12
CVE-2022-47359 [MEDIUM] CWE-476 CVE-2022-47359: In log service, there is a missing permission check. This could lead to local denial of service in l In log service, there is a missing permission check. This could lead to local denial of service in log service.
nvd
CVE-2022-47468P4MEDIUMCVSS 5.5v10.0v11.02023-04-11
CVE-2022-47468 [MEDIUM] CWE-476 CVE-2022-47468: In telecom service, there is a missing permission check. This could lead to local denial of service In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
nvd
CVE-2022-47362P4MEDIUMCVSS 5.5v10.0v11.0+2 more2023-04-11
CVE-2022-47362 [MEDIUM] CWE-120 CVE-2022-47362: In telecom service, there is a missing permission check. This could lead to local denial of service In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
nvd
CVE-2022-47335P4MEDIUMCVSS 5.5v10.0v11.0+2 more2023-04-11
CVE-2022-47335 [MEDIUM] CWE-120 CVE-2022-47335: In telecom service, there is a missing permission check. This could lead to local denial of service In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
nvd
Google Android vulnerabilities | cvebase