Google Android vulnerabilities
6,771 known vulnerabilities affecting google/android.
Total CVEs
6,771
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL472HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 317 of 339
CVE-2017-0693P4MEDIUMCVSS 5.5v6.0v6.0.1+3 more2017-07-06
CVE-2017-0693 [MEDIUM] CVE-2017-0693: A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-36993291.
nvd
CVE-2017-0685P4MEDIUMCVSS 5.5v6.0v6.0.1+3 more2017-07-06
CVE-2017-0685 [MEDIUM] CWE-835 CVE-2017-0685: A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-34203195.
nvd
CVE-2017-0697P4MEDIUMCVSS 5.5v4.4.4v5.0.2+6 more2017-07-06
CVE-2017-0697 [MEDIUM] CWE-772 CVE-2017-0697: A denial of service vulnerability in the Android media framework. Product: Android. Versions: 4.4.4,
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37239013.
nvd
CVE-2017-0688P4MEDIUMCVSS 5.5v6.0v6.0.1+3 more2017-07-06
CVE-2017-0688 [MEDIUM] CVE-2017-0688: A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-35584425.
nvd
CVE-2017-0689P4MEDIUMCVSS 5.5v5.0.2v5.1.1+5 more2017-07-06
CVE-2017-0689 [MEDIUM] CWE-20 CVE-2017-0689: A denial of service vulnerability in the Android media framework. Product: Android. Versions: 5.0.2,
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-36215950.
nvd
CVE-2017-0686P4MEDIUMCVSS 5.5v6.0v6.0.1+3 more2017-07-06
CVE-2017-0686 [MEDIUM] CWE-476 CVE-2017-0686: A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-34231231.
nvd
CVE-2017-0696P4MEDIUMCVSS 5.5v6.0v6.0.1+3 more2017-07-06
CVE-2017-0696 [MEDIUM] CWE-20 CVE-2017-0696: A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37207120.
nvd
CVE-2017-0695P4MEDIUMCVSS 5.5v5.0.2v5.1.1+5 more2017-07-06
CVE-2017-0695 [MEDIUM] CWE-787 CVE-2017-0695: A denial of service vulnerability in the Android media framework. Product: Android. Versions: 5.0.2,
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37094889.
nvd
CVE-2017-0690P4MEDIUMCVSS 5.5v4.4.4v5.0.2+6 more2017-07-06
CVE-2017-0690 [MEDIUM] CWE-400 CVE-2017-0690: A denial of service vulnerability in the Android media framework. Product: Android. Versions: 4.4.4,
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-36592202.
nvd
CVE-2017-0672P4MEDIUMCVSS 5.5v7.0v7.1.1+1 more2017-07-06
CVE-2017-0672 [MEDIUM] CWE-20 CVE-2017-0672: A denial of service vulnerability in the Android libraries. Product: Android. Versions: 7.0, 7.1.1,
A denial of service vulnerability in the Android libraries. Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-34778578.
nvd
CVE-2022-27821P4MEDIUMCVSS 5.5v10.0v11.0+1 more2022-04-11
CVE-2022-27821 [MEDIUM] CWE-125 CVE-2022-27821: Improper boundary check in Quram Agif library prior to SMR Apr-2022 Release 1 allows attackers to ca
Improper boundary check in Quram Agif library prior to SMR Apr-2022 Release 1 allows attackers to cause denial of service via crafted image file.
nvd
CVE-2015-6645P4MEDIUMCVSS 5.0v4.4.4v5.0+5 more2016-01-06
CVE-2015-6645 [MEDIUM] CWE-264 CVE-2015-6645: SyncManager in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to cause a den
SyncManager in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to cause a denial of service (continuous rebooting) via a crafted application, aka internal bug 23591205.
nvd
CVE-2022-47331P4MEDIUMCVSS 4.7v10.0v11.02023-02-12
CVE-2022-47331 [MEDIUM] CWE-362 CVE-2022-47331: In wlan driver, there is a race condition. This could lead to local denial of service in wlan servic
In wlan driver, there is a race condition. This could lead to local denial of service in wlan services.
nvd
CVE-2022-42771P4MEDIUMCVSS 4.7v10.0v11.0+1 more2022-12-06
CVE-2022-42771 [MEDIUM] CWE-362 CVE-2022-42771: In wlan driver, there is a race condition, This could lead to local denial of service in wlan servic
In wlan driver, there is a race condition, This could lead to local denial of service in wlan services.
nvd
CVE-2022-42770P4MEDIUMCVSS 4.7v10.0v11.0+1 more2022-12-06
CVE-2022-42770 [MEDIUM] CWE-362 CVE-2022-42770: In wlan driver, there is a race condition, This could lead to local denial of service in wlan servic
In wlan driver, there is a race condition, This could lead to local denial of service in wlan services.
nvd
CVE-2018-21053P4MEDIUMCVSS 4.6v7.0v7.1.0+5 more2020-04-08
CVE-2018-21053 [MEDIUM] CWE-200 CVE-2018-21053: An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. There is
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. There is Clipboard access in the lockscreen state via a physical keyboard. The Samsung ID is SVE-2018-12684 (October 2018).
nvd
CVE-2016-11040P4MEDIUMCVSS 4.6v5.0v5.12020-04-07
CVE-2016-11040 [MEDIUM] CWE-20 CVE-2016-11040: An issue was discovered on Samsung mobile devices with L(5.0/5.1) (with USB OTG MyFile2014_L_ESS sup
An issue was discovered on Samsung mobile devices with L(5.0/5.1) (with USB OTG MyFile2014_L_ESS support) software. There is a Factory Reset Protection (FRP) bypass. The Samsung ID is SVE-2015-5068 (June 2016).
nvd
CVE-2019-20615P4MEDIUMCVSS 4.6v7.0v7.1.0+4 more2020-03-24
CVE-2019-20615 [MEDIUM] CWE-200 CVE-2019-20615: An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. Attackers can byp
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. Attackers can bypass Factory Reset Protection (FRP) via SVoice T&C. The Samsung ID is SVE-2018-13547 (March 2019).
nvd
CVE-2020-10855P4MEDIUMCVSS 4.6v9.02020-03-24
CVE-2020-10855 [MEDIUM] CVE-2020-10855: An issue was discovered on Samsung mobile devices with P(9.0) software. Attackers can bypass Factory
An issue was discovered on Samsung mobile devices with P(9.0) software. Attackers can bypass Factory Reset Protection (FRP) via AppTray. The Samsung ID is SVE-2019-16192 (January 2020).
nvd
CVE-2022-28782P4MEDIUMCVSS 4.6v11.0v12.02022-05-03
CVE-2022-28782 [MEDIUM] CWE-424 CVE-2022-28782: Improper access control vulnerability in Contents To Window prior to SMR May-2022 Release 1 allows p
Improper access control vulnerability in Contents To Window prior to SMR May-2022 Release 1 allows physical attacker to install package before completion of Setup wizard. The patch blocks entry point of the vulnerability.
nvd