Google Android vulnerabilities
6,770 known vulnerabilities affecting google/android.
Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 53 of 339
CVE-2018-9360P3HIGHCVSS 7.5v6.0v6.0.1+5 more2018-11-06
CVE-2018-9360 [HIGH] CWE-125 CVE-2018-9360: In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds
In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-6.0 Android-6.0.1 Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.
nvd
CVE-2017-0855P3HIGHCVSS 7.5v5.1.1v6.0+5 more2018-01-12
CVE-2017-0855 [HIGH] CWE-772 CVE-2017-0855: In MPEG4Extractor.cpp, there are several places where functions return early without cleaning up int
In MPEG4Extractor.cpp, there are several places where functions return early without cleaning up internal buffers which could lead to memory leaks. This could lead to remote denial of service of a critical system process with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 5.1.1, 6.
nvd
CVE-2017-13192P3HIGHCVSS 7.5v5.1.1v6.0+6 more2018-01-12
CVE-2017-13192 [HIGH] CWE-835 CVE-2017-13192: In the ihevcd_parse_slice_header function of ihevcd_parse_slice_header.c a slice address of zero aft
In the ihevcd_parse_slice_header function of ihevcd_parse_slice_header.c a slice address of zero after the first slice could result in an infinite loop. This could lead to a remote denial of service of a critical system process with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions:
nvd
CVE-2017-13195P3HIGHCVSS 7.5v5.1.1v6.0+6 more2018-01-12
CVE-2017-13195 [HIGH] CWE-835 CVE-2017-13195: In the ihevcd_parse_sps function of ihevcd_parse_headers.c, several parameter values could be negati
In the ihevcd_parse_sps function of ihevcd_parse_headers.c, several parameter values could be negative which could lead to negative indexes which could lead to an infinite loop. This could lead to a remote denial of service of a critical system process with no additional execution privileges needed. User interaction is not needed for exploitation. Pro
nvd
CVE-2018-9359P3HIGHCVSS 7.5v6.0v6.0.1+5 more2018-11-06
CVE-2018-9359 [HIGH] CWE-125 CVE-2018-9359: In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds
In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-6.0 Android-6.0.1 Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.
nvd
CVE-2018-9361P3HIGHCVSS 7.5v6.0v6.0.1+5 more2018-11-06
CVE-2018-9361 [HIGH] CWE-125 CVE-2018-9361: In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds
In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-6.0 Android-6.0.1 Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.
nvd
CVE-2018-9436P3HIGHCVSS 7.5v6.0v6.0.1+5 more2018-11-06
CVE-2018-9436 [HIGH] CWE-125 CVE-2018-9436: In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds che
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-6.0 Android-6.0.1 Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0
nvd
CVE-2018-9358P3HIGHCVSS 7.5v6.0v6.0.1+5 more2018-11-06
CVE-2018-9358 [HIGH] CWE-125 CVE-2018-9358: In gatts_process_attribute_req of gatt_sc.cc, there is a possible read of uninitialized data due to
In gatts_process_attribute_req of gatt_sc.cc, there is a possible read of uninitialized data due to a missing bounds check. This could lead to remote information disclosure in the Bluetooth process with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-6.0 Android-6.0.1 Android-
nvd
CVE-2018-9448P3HIGHCVSS 7.5v8.0v8.12018-11-06
CVE-2018-9448 [HIGH] CWE-125 CVE-2018-9448: In avct_bcb_msg_ind of avct_bcb_act.cc, there is a possible out of bounds read due to a missing boun
In avct_bcb_msg_ind of avct_bcb_act.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-8.0 Android-8.1 Android ID: A-79944113.
nvd
CVE-2015-3834P3CRITICALCVSS 10.0≤ 5.12015-10-01
CVE-2015-3834 [CRITICAL] CWE-189 CVE-2015-3834: Multiple integer overflows in the BnHDCP::onTransact function in media/libmedia/IHDCP.cpp in libstag
Multiple integer overflows in the BnHDCP::onTransact function in media/libmedia/IHDCP.cpp in libstagefright in Android before 5.1.1 LMY48I allow attackers to execute arbitrary code via a crafted application that uses HDCP encryption, leading to a heap-based buffer overflow, aka internal bug 20222489.
nvd
CVE-2017-13259P3HIGHCVSS 7.5v5.1.1v6.0+6 more2018-04-04
CVE-2017-13259 [HIGH] CWE-125 CVE-2017-13259: In functionality implemented in sdp_discovery.cc, there are possible out of bounds reads due to miss
In functionality implemented in sdp_discovery.cc, there are possible out of bounds reads due to missing bounds checks. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID:
nvd
CVE-2021-0596P3HIGHCVSS 7.5v8.1v9.0+3 more2021-07-14
CVE-2021-0596 [HIGH] CWE-125 CVE-2021-0596: In phNciNfc_RecvMfResp of phNxpExtns_MifareStd.cpp, there is a possible out of bounds read due to a
In phNciNfc_RecvMfResp of phNxpExtns_MifareStd.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure over NFC with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID:
nvd
CVE-2023-45779P3HIGHCVSS 7.8vAndroid SoC2023-12-04
CVE-2023-45779 [HIGH] CVE-2023-45779: In the APEX module framework of AOSP, there is a possible malicious update to platform components du
In the APEX module framework of AOSP, there is a possible malicious update to platform components due to improperly used crypto. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. More details on this can be found in the referenced links.
nvd
CVE-2014-1939P3HIGHCVSS 7.5≤ 4.3.1v4.0+10 more2014-03-03
CVE-2014-1939 [HIGH] CWE-94 CVE-2014-1939: java/android/webkit/BrowserFrame.java in Android before 4.4 uses the addJavascriptInterface API in c
java/android/webkit/BrowserFrame.java in Android before 4.4 uses the addJavascriptInterface API in conjunction with creating an object of the SearchBoxImpl class, which allows attackers to execute arbitrary Java code by leveraging access to the searchBoxJavaBridge_ interface at certain Android API levels.
nvd
CVE-2021-0334P3HIGHCVSS 7.8v8.1v9.0+3 more2021-02-10
CVE-2021-0334 [HIGH] CWE-732 CVE-2021-0334: In onTargetSelected of ResolverActivity.java, there is a possible settings bypass allowing an app to
In onTargetSelected of ResolverActivity.java, there is a possible settings bypass allowing an app to become the default handler for arbitrary domains. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-1
nvd
CVE-2021-0329P3HIGHCVSS 7.8v8.1v9.0+3 more2021-02-10
CVE-2021-0329 [HIGH] CWE-787 CVE-2021-0329: In several native functions called by AdvertiseManager.java, there is a possible out of bounds write
In several native functions called by AdvertiseManager.java, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the Bluetooth server with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Andro
nvd
CVE-2022-20474P3HIGHCVSS 7.8v10.0v11.0+4 more2022-12-13
CVE-2022-20474 [HIGH] CWE-276 CVE-2022-20474: In readLazyValue of Parcel.java, there is a possible loading of arbitrary code into the System Setti
In readLazyValue of Parcel.java, there is a possible loading of arbitrary code into the System Settings app due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12L And
nvd
CVE-2023-40115P3HIGHCVSS 7.8v11.0v12.0+8 more2024-02-15
CVE-2023-40115 [HIGH] CWE-416 CVE-2023-40115: In readLogs of StatsService.cpp, there is a possible memory corruption due to a use after free. This
In readLogs of StatsService.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2022-20054P3HIGHCVSS 7.8v9.0v10.0+2 more2022-03-10
CVE-2022-20054 [HIGH] CWE-862 CVE-2022-20054: In ims service, there is a possible AT command injection due to a missing permission check. This cou
In ims service, there is a possible AT command injection due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06219083; Issue ID: ALPS06219083.
nvd
CVE-2023-21255P3HIGHCVSS 7.8vAndroid kernel2023-07-13
CVE-2023-21255 [HIGH] CWE-416 CVE-2023-21255: In multiple functions of binder.c, there is a possible memory corruption due to a use after free. Th
In multiple functions of binder.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd