Google Android vulnerabilities

9,646 known vulnerabilities affecting google/android.

Total CVEs
9,646
CISA KEV
48
actively exploited
Public exploits
89
Exploited in wild
44
Severity breakdown
CRITICAL883HIGH5184MEDIUM3317LOW260UNKNOWN2

Vulnerabilities

Page 33 of 483
CVE-2024-53025HIGHCVSS 5.52025-03-01
CVE-2024-53025 [MEDIUM] CVE-2024-53025: Closed-source component Android Security Bulletin 2025-03-01 CVE: CVE-2024-53025 Severity: HIGH Component: Closed-source component References: A-381901187 *
android
CVE-2024-53027HIGHCVSS 7.52025-03-01
CVE-2024-53027 [HIGH] CVE-2024-53027: WLAN Android Security Bulletin 2025-03-01 CVE: CVE-2024-53027 Severity: HIGH Component: WLAN References: A-381901669 QC-CR#3910626
android
CVE-2024-43051HIGHCVSS 5.52025-03-01
CVE-2024-43051 [MEDIUM] CVE-2024-43051: Closed-source component Android Security Bulletin 2025-03-01 CVE: CVE-2024-43051 Severity: HIGH Component: Closed-source component References: A-364018031 *
android
CVE-2024-53011HIGHCVSS 7.92025-03-01
CVE-2024-53011 [HIGH] CVE-2024-53011: Closed-source component Android Security Bulletin 2025-03-01 CVE: CVE-2024-53011 Severity: HIGH Component: Closed-source component References: A-381898780 *
android
CVE-2024-50302HIGHCVSS 5.5KEV2025-03-01
CVE-2024-50302 [MEDIUM] CVE-2024-50302: HID Android Security Bulletin 2025-03-01 CVE: CVE-2024-50302 Severity: HIGH Type: ID Component: HID References: A-380395346 Upstream kernel [2]
android
CVE-2024-53014HIGHCVSS 7.82025-03-01
CVE-2024-53014 [HIGH] CVE-2024-53014: Audio Android Security Bulletin 2025-03-01 CVE: CVE-2024-53014 Severity: HIGH Component: Audio References: A-381898850 QC-CR#3879278
android
CVE-2024-46852HIGHCVSS 7.82025-03-01
CVE-2024-46852 [HIGH] CVE-2024-46852: dma-buf Android Security Bulletin 2025-03-01 CVE: CVE-2024-46852 Severity: HIGH Type: EoP Component: dma-buf References: A-363259128 Upstream kernel [2]
android
CVE-2024-53024HIGHCVSS 7.82025-03-01
CVE-2024-53024 [HIGH] CVE-2024-53024: Display Android Security Bulletin 2025-03-01 CVE: CVE-2024-53024 Severity: HIGH Component: Display References: A-381899455 QC-CR#3902182
android
CVE-2024-49836HIGHCVSS 7.82025-03-01
CVE-2024-49836 [HIGH] CVE-2024-49836: Camera Android Security Bulletin 2025-03-01 CVE: CVE-2024-49836 Severity: HIGH Component: Camera References: A-377312708 QC-CR#3875452
android
CVE-2024-49838HIGHCVSS 8.22025-03-01
CVE-2024-49838 [HIGH] CVE-2024-49838: WLAN Android Security Bulletin 2025-03-01 CVE: CVE-2024-49838 Severity: HIGH Component: WLAN References: A-377312892 QC-CR#3897418
android
CVE-2024-39441HIGHCVSS 8.4v13.0v14.0+1 more2025-02-26
CVE-2024-39441 [HIGH] CWE-200 CVE-2024-39441: In wifi display, there is a possible missing permission check. This could lead to local escalation o In wifi display, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed.
nvdandroid
CVE-2025-20640MEDIUMCVSS 4.3v12.0v13.0+2 more2025-02-03
CVE-2025-20640 [MEDIUM] CWE-125 CVE-2025-20640: In DA, there is a possible out of bounds read due to a missing bounds check. This could lead to loca In DA, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291146; Issue ID: MSV-2059.
nvd
CVE-2025-20642MEDIUMCVSS 6.6v12.0v13.0+2 more2025-02-03
CVE-2025-20642 [MEDIUM] CWE-787 CVE-2025-20642: In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to loc In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291146; Issue ID: MSV-2057.
nvd
CVE-2024-20141MEDIUMCVSS 6.6v12.0v13.0+2 more2025-02-03
CVE-2024-20141 [MEDIUM] CWE-123 CVE-2024-20141: In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291402; Issue ID: MSV-2073.
nvdandroid
CVE-2024-20142MEDIUMCVSS 6.6v12.0v13.0+2 more2025-02-03
CVE-2024-20142 [MEDIUM] CWE-787 CVE-2024-20142: In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291406; Issue ID: MSV-2070.
nvdandroid
CVE-2025-20635MEDIUMCVSS 6.6v12.0v13.0+2 more2025-02-03
CVE-2025-20635 [MEDIUM] CWE-787 CVE-2025-20635: In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09403752; Issue ID: MSV-2434.
nvdandroid
CVE-2025-20639MEDIUMCVSS 6.6v12.0v13.0+2 more2025-02-03
CVE-2025-20639 [MEDIUM] CWE-787 CVE-2025-20639: In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to loc In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291146; Issue ID: MSV-2060.
nvd
CVE-2025-20636MEDIUMCVSS 6.7v12.0v13.0+2 more2025-02-03
CVE-2025-20636 [MEDIUM] CWE-787 CVE-2025-20636: In secmem, there is a possible out of bounds write due to a missing bounds check. This could lead to In secmem, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS09403554; Issue ID: MSV-2431.
nvdandroid
CVE-2025-20638MEDIUMCVSS 4.3v12.0v13.0+2 more2025-02-03
CVE-2025-20638 [MEDIUM] CWE-457 CVE-2025-20638: In DA, there is a possible read of uninitialized heap data due to uninitialized data. This could lea In DA, there is a possible read of uninitialized heap data due to uninitialized data. This could lead to local information disclosure, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291449; Issue ID: MSV-2066.
nvd
CVE-2025-20641MEDIUMCVSS 6.6v12.0v13.0+2 more2025-02-03
CVE-2025-20641 [MEDIUM] CWE-787 CVE-2025-20641: In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to loc In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291146; Issue ID: MSV-2058.
nvd