cbcvebase.

Google Android vulnerabilities

6,771 known vulnerabilities affecting google/android.

Total CVEs
6,771
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL472HIGH2821MEDIUM3190LOW252UNKNOWN36

Vulnerabilities

Page 312 of 339
CVE-2023-20970P4MEDIUMCVSS 4.4v13.0vAndroid-132023-03-24
CVE-2023-20970 [MEDIUM] CWE-125 CVE-2023-20970: In multiple locations of p2p_iface.cpp, there is a possible out of bounds read due to a missing boun In multiple locations of p2p_iface.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262236005
nvd
CVE-2023-21009P4MEDIUMCVSS 4.4v13.0vAndroid-132023-03-24
CVE-2023-21009 [MEDIUM] CWE-125 CVE-2023-21009: In multiple locations of p2p_iface.cpp, there is a possible out of bounds read due to a missing boun In multiple locations of p2p_iface.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-257029925
nvd
CVE-2023-20986P4MEDIUMCVSS 4.4v13.0vAndroid-132023-03-24
CVE-2023-20986 [MEDIUM] CWE-125 CVE-2023-20986: In btm_ble_clear_resolving_list_completecomplete of btm_ble_privacy.cc, there is a possible out of b In btm_ble_clear_resolving_list_completecomplete of btm_ble_privacy.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-255304475
nvd
CVE-2023-20981P4MEDIUMCVSS 4.4v13.0vAndroid-132023-03-24
CVE-2023-20981 [MEDIUM] CWE-125 CVE-2023-20981: In btu_ble_rc_param_req_evt of btu_hcif.cc, there is a possible out of bounds read due to a missing In btu_ble_rc_param_req_evt of btu_hcif.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-256165737
nvd
CVE-2023-20969P4MEDIUMCVSS 4.4v13.0vAndroid-132023-03-24
CVE-2023-20969 [MEDIUM] CWE-125 CVE-2023-20969: In multiple locations of p2p_iface.cpp, there is a possible out of bounds read due to a missing boun In multiple locations of p2p_iface.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262236313
nvd
CVE-2022-33717P4MEDIUMCVSS 4.4v11.0v12.02022-08-05
CVE-2022-33717 [MEDIUM] CWE-125 CVE-2022-33717: A missing input validation before memory read in SEM TA prior to SMR Aug-2022 Release 1 allows local A missing input validation before memory read in SEM TA prior to SMR Aug-2022 Release 1 allows local attackers to read out of bound memory.
nvd
CVE-2022-33716P4MEDIUMCVSS 4.4v11.0v12.02022-08-05
CVE-2022-33716 [MEDIUM] CWE-457 CVE-2022-33716: An absence of variable initialization in ICCC TA prior to SMR Aug-2022 Release 1 allows local attack An absence of variable initialization in ICCC TA prior to SMR Aug-2022 Release 1 allows local attacker to read uninitialized memory.
nvd
CVE-2019-2231P4MEDIUMCVSS 4.4v9.0v10.0+1 more2019-12-06
CVE-2019-2231 [MEDIUM] CWE-311 CVE-2019-2231: In Blob::Blob of blob.cpp, there is a possible unencrypted master key due to improper input validati In Blob::Blob of blob.cpp, there is a possible unencrypted master key due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10Android ID: A-141955555
nvd
CVE-2023-21170P4MEDIUMCVSS 4.4v13.0vAndroid-132023-06-28
CVE-2023-21170 [MEDIUM] CWE-125 CVE-2023-21170: In executeSetClientTarget of ComposerCommandEngine.h, there is a possible out of bounds read due to In executeSetClientTarget of ComposerCommandEngine.h, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-252764410
nvd
CVE-2023-21169P4MEDIUMCVSS 4.4v13.0vAndroid-132023-06-28
CVE-2023-21169 [MEDIUM] CWE-125 CVE-2023-21169: In inviteInternal of p2p_iface.cpp, there is a possible out of bounds read due to a missing bounds c In inviteInternal of p2p_iface.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-274443441
nvd
CVE-2023-20977P4MEDIUMCVSS 4.4v13.0vAndroid-132023-03-24
CVE-2023-20977 [MEDIUM] CWE-125 CVE-2023-20977: In btm_ble_read_remote_features_complete of btm_ble_gap.cc, there is a possible out of bounds read d In btm_ble_read_remote_features_complete of btm_ble_gap.cc, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure if the firmware were compromised with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID:
nvd
CVE-2023-20748P4MEDIUMCVSS 4.4v12.0v13.02023-07-04
CVE-2023-20748 [MEDIUM] CWE-125 CVE-2023-20748: In display, there is a possible out of bounds read due to a missing bounds check. This could lead to In display, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07536951; Issue ID: ALPS07536951.
nvd
CVE-2023-20731P4MEDIUMCVSS 4.4v12.0v13.02023-06-06
CVE-2023-20731 [MEDIUM] CWE-125 CVE-2023-20731: In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to lo In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07573495; Issue ID: ALPS07573495.
nvd
CVE-2023-20742P4MEDIUMCVSS 4.4v12.0v13.02023-06-06
CVE-2023-20742 [MEDIUM] CWE-125 CVE-2023-20742: In ril, there is a possible out of bounds read due to a missing bounds check. This could lead to loc In ril, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628591; Issue ID: ALPS07628540.
nvd
CVE-2023-20728P4MEDIUMCVSS 4.4v12.0v13.02023-06-06
CVE-2023-20728 [MEDIUM] CWE-125 CVE-2023-20728: In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to lo In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07573603; Issue ID: ALPS07573603.
nvd
CVE-2023-20727P4MEDIUMCVSS 4.4v12.0v13.02023-06-06
CVE-2023-20727 [MEDIUM] CWE-125 CVE-2023-20727: In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to lo In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588531; Issue ID: ALPS07588531.
nvd
CVE-2023-20741P4MEDIUMCVSS 4.4v12.0v13.02023-06-06
CVE-2023-20741 [MEDIUM] CWE-125 CVE-2023-20741: In ril, there is a possible out of bounds read due to a missing bounds check. This could lead to loc In ril, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628591; Issue ID: ALPS07628606.
nvd
CVE-2023-20730P4MEDIUMCVSS 4.4v13.02023-06-06
CVE-2023-20730 [MEDIUM] CWE-125 CVE-2023-20730: In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to lo In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07573552; Issue ID: ALPS07573552.
nvd
CVE-2023-20729P4MEDIUMCVSS 4.4v13.02023-06-06
CVE-2023-20729 [MEDIUM] CWE-125 CVE-2023-20729: In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to lo In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07573552; Issue ID: ALPS07573575.
nvd
CVE-2023-20710P4MEDIUMCVSS 4.4v11.0v12.0+1 more2023-05-15
CVE-2023-20710 [MEDIUM] CWE-20 CVE-2023-20710: In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07576935; Issue ID: ALPS07576935.
nvd
Google Android vulnerabilities | cvebase