Google Android vulnerabilities
6,771 known vulnerabilities affecting google/android.
Total CVEs
6,771
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL472HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 304 of 339
CVE-2024-20084P4MEDIUMCVSS 4.4v13.0v14.02024-09-02
CVE-2024-20084 [MEDIUM] CWE-125 CVE-2024-20084: In power, there is a possible out of bounds read due to a missing bounds check. This could lead to l
In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08944210; Issue ID: MSV-1561.
nvd
CVE-2023-21182P4MEDIUMCVSS 4.4v13.0vAndroid-132023-06-28
CVE-2023-21182 [MEDIUM] CWE-125 CVE-2023-21182: In Exynos_parsing_user_data_registered_itu_t_t35 of VendorVideoAPI.cpp, there is a possible out of b
In Exynos_parsing_user_data_registered_itu_t_t35 of VendorVideoAPI.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-252764175
nvd
CVE-2023-21188P4MEDIUMCVSS 4.4v13.0vAndroid-132023-06-28
CVE-2023-21188 [MEDIUM] CWE-125 CVE-2023-21188: In btm_ble_update_inq_result of btm_ble_gap.cc, there is a possible out of bounds read due to a heap
In btm_ble_update_inq_result of btm_ble_gap.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-264624283
nvd
CVE-2023-21181P4MEDIUMCVSS 4.4v13.0vAndroid-132023-06-28
CVE-2023-21181 [MEDIUM] CWE-125 CVE-2023-21181: In btm_ble_update_inq_result of btm_ble_gap.cc, there is a possible out of bounds read due to a heap
In btm_ble_update_inq_result of btm_ble_gap.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-264880969
nvd
CVE-2023-21213P4MEDIUMCVSS 4.4v13.0vAndroid-132023-06-28
CVE-2023-21213 [MEDIUM] CWE-125 CVE-2023-21213: In initiateTdlsTeardownInternal of sta_iface.cpp, there is a possible out of bounds read due to a mi
In initiateTdlsTeardownInternal of sta_iface.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the wifi server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262235951
nvd
CVE-2023-21204P4MEDIUMCVSS 4.4v13.0vAndroid-132023-06-28
CVE-2023-21204 [MEDIUM] CWE-125 CVE-2023-21204: In multiple files, there is a possible out of bounds read due to a missing bounds check. This could
In multiple files, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the wifi server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262246231
nvd
CVE-2022-26459P4MEDIUMCVSS 4.4v11.0v12.02022-09-06
CVE-2022-26459 [MEDIUM] CWE-190 CVE-2022-26459: In vow, there is a possible out of bounds read due to an integer overflow. This could lead to local
In vow, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07032634; Issue ID: ALPS07032634.
nvd
CVE-2023-20982P4MEDIUMCVSS 4.4v13.0vAndroid-132023-03-24
CVE-2023-20982 [MEDIUM] CWE-125 CVE-2023-20982: In btm_read_tx_power_complete of btm_acl.cc, there is a possible out of bounds read due to a missing
In btm_read_tx_power_complete of btm_acl.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the Bluetooth server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-260568083
nvd
CVE-2023-21032P4MEDIUMCVSS 4.4v13.0vAndroid-132023-03-24
CVE-2023-21032 [MEDIUM] CWE-125 CVE-2023-21032: In _ufdt_output_node_to_fdt of ufdt_convert.c, there is a possible out of bounds read due to a heap
In _ufdt_output_node_to_fdt of ufdt_convert.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-248085351
nvd
CVE-2023-32810P4MEDIUMCVSS 4.4v12.0v13.02023-09-04
CVE-2023-32810 [MEDIUM] CWE-125 CVE-2023-32810: In bluetooth driver, there is a possible out of bounds read due to improper input validation. This c
In bluetooth driver, there is a possible out of bounds read due to improper input validation. This could lead to local information leak with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07867212; Issue ID: ALPS07867212.
nvd
CVE-2023-21194P4MEDIUMCVSS 4.4v13.0vAndroid-132023-06-28
CVE-2023-21194 [MEDIUM] CWE-125 CVE-2023-21194: In gatt_dbg_op_name of gatt_utils.cc, there is a possible out of bounds read due to a missing bounds
In gatt_dbg_op_name of gatt_utils.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the Bluetooth server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-260079141
nvd
CVE-2023-21196P4MEDIUMCVSS 4.4v13.0vAndroid-132023-06-28
CVE-2023-21196 [MEDIUM] CWE-125 CVE-2023-21196: In btm_ble_batchscan_filter_track_adv_vse_cback of btm_ble_batchscan.cc, there is a possible out of
In btm_ble_batchscan_filter_track_adv_vse_cback of btm_ble_batchscan.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the Bluetooth server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID:
nvd
CVE-2023-21208P4MEDIUMCVSS 4.4v13.0vAndroid-132023-06-28
CVE-2023-21208 [MEDIUM] CWE-125 CVE-2023-21208: In setCountryCodeInternal of sta_iface.cpp, there is a possible out of bounds read due to improper i
In setCountryCodeInternal of sta_iface.cpp, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262245254
nvd
CVE-2023-21210P4MEDIUMCVSS 4.4v13.0vAndroid-132023-06-28
CVE-2023-21210 [MEDIUM] CWE-125 CVE-2023-21210: In initiateHs20IconQueryInternal of sta_iface.cpp, there is a possible out of bounds read due to imp
In initiateHs20IconQueryInternal of sta_iface.cpp, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262236331
nvd
CVE-2023-20660P4MEDIUMCVSS 4.4v11.0v12.0+1 more2023-04-06
CVE-2023-20660 [MEDIUM] CWE-190 CVE-2023-20660: In wlan, there is a possible out of bounds read due to an integer overflow. This could lead to local
In wlan, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588383; Issue ID: ALPS07588383.
nvd
CVE-2023-32807P4MEDIUMCVSS 4.4v13.02023-09-04
CVE-2023-32807 [MEDIUM] CWE-125 CVE-2023-32807: In wlan service, there is a possible out of bounds read due to improper input validation. This could
In wlan service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588360; Issue ID: ALPS07588360.
nvd
CVE-2023-32814P4MEDIUMCVSS 4.4v13.02023-09-04
CVE-2023-32814 [MEDIUM] CWE-125 CVE-2023-32814: In gnss service, there is a possible out of bounds read due to improper input validation. This could
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08031947; Issue ID: ALPS08031947.
nvd
CVE-2023-32815P4MEDIUMCVSS 4.4v13.02023-09-04
CVE-2023-32815 [MEDIUM] CWE-125 CVE-2023-32815: In gnss service, there is a possible out of bounds read due to improper input validation. This could
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08037801; Issue ID: ALPS08037801.
nvd
CVE-2023-32816P4MEDIUMCVSS 4.4v13.02023-09-04
CVE-2023-32816 [MEDIUM] CWE-125 CVE-2023-32816: In gnss service, there is a possible out of bounds read due to improper input validation. This could
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08044040; Issue ID: ALPS08044032.
nvd
CVE-2023-32817P4MEDIUMCVSS 4.4v13.02023-09-04
CVE-2023-32817 [MEDIUM] CWE-125 CVE-2023-32817: In gnss service, there is a possible out of bounds read due to improper input validation. This could
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08044040; Issue ID: ALPS08044035.
nvd