Google Android vulnerabilities
6,770 known vulnerabilities affecting google/android.
Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 33 of 339
CVE-2016-2439P3HIGHCVSS 8.8v4.0v4.0.1+20 more2016-05-09
CVE-2016-2439 [HIGH] CWE-119 CVE-2016-2439: Buffer overflow in btif/src/btif_dm.c in Bluetooth in Android 4.x before 4.4.4, 5.0.x before 5.0.2,
Buffer overflow in btif/src/btif_dm.c in Bluetooth in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 allows remote attackers to execute arbitrary code via a long PIN value, aka internal bug 27411268.
nvd
CVE-2014-0900P3HIGHCVSS 8.8≤ 4.4.12018-04-20
CVE-2014-0900 [HIGH] CWE-20 CVE-2014-0900: The Device Administrator code in Android before 4.4.1_r1 might allow attackers to spoof device admin
The Device Administrator code in Android before 4.4.1_r1 might allow attackers to spoof device administrators and consequently bypass MDM restrictions by leveraging failure to update the mAdminMap data structure.
nvd
CVE-2019-2225P3HIGHCVSS 8.8v8.0v8.1+3 more2019-12-06
CVE-2019-2225 [HIGH] CWE-269 CVE-2019-2225: When pairing with a Bluetooth device, it may be possible to pair a malicious device without any conf
When pairing with a Bluetooth device, it may be possible to pair a malicious device without any confirmation from the user, and that device may be able to interact with the phone. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: And
nvd
CVE-2021-39772P3HIGHCVSS 8.8v12.0vAndroid-12L2022-03-30
CVE-2021-39772 [HIGH] CWE-269 CVE-2021-39772: In Bluetooth, there is a possible way to access the a2dp audio control switch due to a missing permi
In Bluetooth, there is a possible way to access the a2dp audio control switch due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12LAndroid ID: A-181962322
nvd
CVE-2022-20254P3HIGHCVSS 8.8v13.0vAndroid-132022-08-12
CVE-2022-20254 [HIGH] CVE-2022-20254: In Wi-Fi, there is a permissions bypass. This could lead to local escalation of privilege from the g
In Wi-Fi, there is a permissions bypass. This could lead to local escalation of privilege from the guest user with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-223377547
nvd
CVE-2015-6575P3CRITICALCVSS 10.0≤ 5.12015-10-01
CVE-2015-6575 [CRITICAL] CVE-2015-6575: SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I does not properly consider integer
SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I does not properly consider integer promotion, which allows remote attackers to execute arbitrary code or cause a denial of service (integer overflow and memory corruption) via crafted atoms in MP4 data, aka internal bug 20139950, a different vulnerability than CVE-2015-1538. NOTE: this vulnerab
nvd
CVE-2015-8072P3CRITICALCVSS 10.0v4.4v5.12015-11-03
CVE-2015-8072 [CRITICAL] CVE-2015-8072: mediaserver in Android 4.4 through 5.x before 5.1.1 LMY48X and 6.0 before 2015-11-01 allows remote a
mediaserver in Android 4.4 through 5.x before 5.1.1 LMY48X and 6.0 before 2015-11-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23881715, a different vulnerability than CVE-2015-6608 and CVE-2015-8073.
nvd
CVE-2024-25993P3HIGHCVSS 8.4v13.0v132024-03-11
CVE-2024-25993 [HIGH] CWE-787 CVE-2024-25993: In tmu_reset_tmu_trip_counter of , there is a possible out of bounds write due to a missing bounds c
In tmu_reset_tmu_trip_counter of , there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-27219P3HIGHCVSS 8.4v13.0v132024-03-11
CVE-2024-27219 [HIGH] CWE-787 CVE-2024-27219: In tmu_set_pi of tmu.c, there is a possible out of bounds write due to a missing bounds check. This
In tmu_set_pi of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-27208P3HIGHCVSS 8.4v13.0v132024-03-11
CVE-2024-27208 [HIGH] CWE-787 CVE-2024-27208: there is a possible out of bounds write due to a missing bounds check. This could lead to local esca
there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-27204P3HIGHCVSS 8.4v13.0v132024-03-11
CVE-2024-27204 [HIGH] CWE-787 CVE-2024-27204: In tmu_set_gov_active of tmu.c, there is a possible out of bounds write due to a missing bounds chec
In tmu_set_gov_active of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-29746P3HIGHCVSS 8.4vAndroid kernel2024-04-05
CVE-2024-29746 [HIGH] CWE-787 CVE-2024-29746: In lpm_req_handler of lpm.c, there is a possible out of bounds write due to improper input validatio
In lpm_req_handler of lpm.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-56191P3HIGHCVSS 8.4vunknown2025-03-10
CVE-2024-56191 [HIGH] CWE-281 CVE-2024-56191: In dhd_process_full_gscan_result of dhd_pno.c, there is a possible EoP due to an integer overflow. T
In dhd_process_full_gscan_result of dhd_pno.c, there is a possible EoP due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-20146P3HIGHCVSS 8.1v13.0v14.0+1 more2025-01-06
CVE-2024-20146 [HIGH] CWE-787 CVE-2024-20146: In wlan STA driver, there is a possible out of bounds write due to improper input validation. This c
In wlan STA driver, there is a possible out of bounds write due to improper input validation. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00389496 / ALPS09137491; Issue ID: MSV-1835.
nvd
CVE-2017-0807P3CRITICALCVSS 9.8v4.4.4v5.0.2+6 more2017-10-04
CVE-2017-0807 [CRITICAL] CVE-2017-0807: An elevation of privilege vulnerability in the Android framework (ui framework). Product: Android. V
An elevation of privilege vulnerability in the Android framework (ui framework). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-35056974.
nvd
CVE-2021-0466P3HIGHCVSS 7.5v10.0vAndroid-102021-06-11
CVE-2021-0466 [HIGH] CWE-330 CVE-2021-0466: In startIpClient of ClientModeImpl.java, there is a possible identifier which could be used to track
In startIpClient of ClientModeImpl.java, there is a possible identifier which could be used to track a device. This could lead to remote information disclosure to a proximal attacker, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-154114734
nvd
CVE-2022-20224P3HIGHCVSS 7.5v10.0v11.0+3 more2022-07-13
CVE-2022-20224 [HIGH] CWE-125 CVE-2022-20224: In AT_SKIP_REST of bta_hf_client_at.cc, there is a possible out of bounds read due to an incorrect b
In AT_SKIP_REST of bta_hf_client_at.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure in the Bluetooth stack with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAn
nvd
CVE-2024-0015P3HIGHCVSS 7.8v11.0v12.0+6 more2024-02-16
CVE-2024-0015 [HIGH] CWE-280 CVE-2024-0015: In convertToComponentName of DreamService.java, there is a possible way to launch arbitrary protecte
In convertToComponentName of DreamService.java, there is a possible way to launch arbitrary protected activities due to intent redirection. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-43097P3HIGHCVSS 7.8v12.0v12.1+8 more2025-01-03
CVE-2024-43097 [HIGH] CWE-787 CVE-2024-43097: In resizeToAtLeast of SkRegion.cpp, there is a possible out of bounds write due to an integer overfl
In resizeToAtLeast of SkRegion.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-0049P3HIGHCVSS 7.8v12.0v12.1+6 more2024-03-11
CVE-2024-0049 [HIGH] CWE-787 CVE-2024-0049: In multiple locations, there is a possible out of bounds write due to a heap buffer overflow. This c
In multiple locations, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd