Google Android vulnerabilities
6,770 known vulnerabilities affecting google/android.
Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 4 of 339
CVE-2022-20130P2CRITICALCVSS 9.8v10.0v11.0+3 more2022-06-15
CVE-2022-20130 [CRITICAL] CWE-754 CVE-2022-20130: In transportDec_OutOfBandConfig of tpdec_lib.cpp, there is a possible out of bounds write due to a h
In transportDec_OutOfBandConfig of tpdec_lib.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-2243149
nvd
CVE-2024-0039P2CRITICALCVSS 9.8v12.0v12.1+6 more2024-03-11
CVE-2024-0039 [CRITICAL] CWE-787 CVE-2024-0039: In attp_build_value_cmd of att_protocol.cc, there is a possible out of bounds write due to a missing
In attp_build_value_cmd of att_protocol.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2017-13209P3HIGHCVSS 7.8PoCv8.0v8.12018-01-12
CVE-2017-13209 [HIGH] CWE-862 CVE-2017-13209: In the ServiceManager::add function in the hardware service manager, there is an insecure permission
In the ServiceManager::add function in the hardware service manager, there is an insecure permissions check based on the PID of the caller which could allow an application or service to replace a HAL service with its own service. This could lead to a local elevation of privilege enabling code execution as a privileged process with no additional execut
nvd
CVE-2026-0006P2CRITICALCVSS 9.8v16.0v162026-03-02
CVE-2026-0006 [CRITICAL] CWE-122 CVE-2026-0006: In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflo
In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2017-13236P3HIGHCVSS 7.8PoCv8.0v8.12018-02-12
CVE-2017-13236 [HIGH] CWE-732 CVE-2017-13236: In the KeyStore service, there is a permissions bypass that allows access to protected resources. Th
In the KeyStore service, there is a permissions bypass that allows access to protected resources. This could lead to local escalation of privilege with system execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 8.0, 8.1. Android ID: A-68217699.
nvd
CVE-2026-0114P2CRITICALCVSS 9.8vAndroid kernel2026-03-10
CVE-2026-0114 [CRITICAL] CWE-787 CVE-2026-0114: In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead
In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-0116P2CRITICALCVSS 9.8vAndroid kernel2026-03-10
CVE-2026-0116 [CRITICAL] CWE-787 CVE-2026-0116: In __mfc_handle_released_buf of mfc_core_isr.c, there is a possible out of bounds write due to a mis
In __mfc_handle_released_buf of mfc_core_isr.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-0120P2CRITICALCVSS 9.8vAndroid kernel2026-03-10
CVE-2026-0120 [CRITICAL] CWE-787 CVE-2026-0120: In modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead
In modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-0126P2CRITICALCVSS 9.8vAndroid kernel2026-06-16
CVE-2026-0126 [CRITICAL] CWE-787 CVE-2026-0126: In WC-Radio, there is a possible out of bounds write due to a missing bounds check. This could lead
In WC-Radio, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2021-0430P2CRITICALCVSS 9.8v10.0v11.0+1 more2021-04-13
CVE-2021-0430 [CRITICAL] CWE-787 CVE-2021-0430: In rw_mfc_handle_read_op of rw_mfc.cc, there is a possible out of bounds write due to a missing boun
In rw_mfc_handle_read_op of rw_mfc.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution via a malicious NFC packet with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11Android ID: A-178725766
nvd
CVE-2022-20140P2CRITICALCVSS 9.8v12.0v12.1+1 more2022-06-15
CVE-2022-20140 [CRITICAL] CWE-787 CVE-2022-20140: In read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to an incorrect bounds
In read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12 Android-12LAndroid ID: A-227618988
nvd
CVE-2022-20127P2CRITICALCVSS 9.8v10.0v11.0+3 more2022-06-15
CVE-2022-20127 [CRITICAL] CWE-415 CVE-2022-20127: In ce_t4t_data_cback of ce_t4t.cc, there is a possible out of bounds write due to a double free. Thi
In ce_t4t_data_cback of ce_t4t.cc, there is a possible out of bounds write due to a double free. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-221862119
nvd
CVE-2018-9488P3HIGHCVSS 7.8PoCv8.0v8.1+1 more2018-11-06
CVE-2018-9488 [HIGH] CWE-863 CVE-2018-9488: In the SELinux permissions of crash_dump.te, there is a permissions bypass due to a missing restrict
In the SELinux permissions of crash_dump.te, there is a permissions bypass due to a missing restriction. This could lead to a local escalation of privilege, with System privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-8.0 Android-8.1 Android-9.0 Android ID: A-110107376.
nvd
CVE-2025-36897P2CRITICALCVSS 9.8vAndroid kernel2025-09-04
CVE-2025-36897 [CRITICAL] CWE-787 CVE-2025-36897: In unknown of cd_CnMsgCodecUserApi.cpp, there is a possible out of bounds write due to a missing bou
In unknown of cd_CnMsgCodecUserApi.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-36937P2CRITICALCVSS 9.8vAndroid kernel2025-12-11
CVE-2025-36937 [CRITICAL] CWE-787 CVE-2025-36937: In AudioDecoder::HandleProduceRequest of audio_decoder.cc, there is a possible out of bounds write d
In AudioDecoder::HandleProduceRequest of audio_decoder.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2020-8899P2CRITICALCVSS 9.8v8.0v8.1+2 more2020-05-06
CVE-2020-8899 [CRITICAL] CWE-122 CVE-2020-8899: There is a buffer overwrite vulnerability in the Quram qmg library of Samsung's Android OS versions
There is a buffer overwrite vulnerability in the Quram qmg library of Samsung's Android OS versions O(8.x), P(9.0) and Q(10.0). An unauthenticated, unauthorized attacker sending a specially crafted MMS to a vulnerable phone can trigger a heap-based buffer overflow in the Quram image codec leading to an arbitrary remote code execution (RCE) without an
nvd
CVE-2017-13262P3MEDIUMCVSS 6.5PoCv5.1.1v6.0+6 more2018-04-04
CVE-2017-13262 [MEDIUM] CWE-125 CVE-2017-13262: In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing length dec
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing length decrement operation. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID:
nvd
CVE-2021-0316P2CRITICALCVSS 9.8v8.0v8.1+8 more2021-01-11
CVE-2021-0316 [CRITICAL] CWE-787 CVE-2021-0316: In avrc_pars_vendor_cmd of avrc_pars_tg.cc, there is a possible out of bounds write due to a missing
In avrc_pars_vendor_cmd of avrc_pars_tg.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11, Android-8.0, Android-8.1, Android-9, Androi
nvd
CVE-2022-20473P2CRITICALCVSS 9.8v10.0v11.0+4 more2022-12-13
CVE-2022-20473 [CRITICAL] CWE-125 CVE-2022-20473: In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect
In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12L Android-13Android ID: A-2392
nvd
CVE-2022-20229P2CRITICALCVSS 9.8v10.0v11.0+3 more2022-07-13
CVE-2022-20229 [CRITICAL] CWE-787 CVE-2022-20229: In bta_hf_client_handle_cind_list_item of bta_hf_client_at.cc, there is a possible out of bounds wri
In bta_hf_client_handle_cind_list_item of bta_hf_client_at.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid
nvd