Google Android vulnerabilities
6,770 known vulnerabilities affecting google/android.
Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 6 of 339
CVE-2023-48423P2CRITICALCVSS 9.8vAndroid kernel2023-12-08
CVE-2023-48423 [CRITICAL] CWE-787 CVE-2023-48423: In dhcp4_SetPDNAddress of dhcp4_Main.c, there is a possible out of bounds write due to a missing bou
In dhcp4_SetPDNAddress of dhcp4_Main.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2023-21287P2CRITICALCVSS 9.8v11.0v12.0+6 more2023-08-14
CVE-2023-21287 [CRITICAL] CWE-843 CVE-2023-21287: In multiple locations, there is a possible code execution due to type confusion. This could lead to
In multiple locations, there is a possible code execution due to type confusion. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2018-9478P2CRITICALCVSS 9.8v7.0v7.1.1+9 more2024-11-20
CVE-2018-9478 [CRITICAL] CWE-787 CVE-2018-9478: In process_service_attr_req and process_service_search_attr_req of sdp_server.cc, there is an out of
In process_service_attr_req and process_service_search_attr_req of sdp_server.cc, there is an out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2018-9479P2CRITICALCVSS 9.8v7.0v7.1.1+9 more2024-11-20
CVE-2018-9479 [CRITICAL] CWE-787 CVE-2018-9479: In process_service_attr_req and process_service_search_attr_req of sdp_server.cc, there is an out of
In process_service_attr_req and process_service_search_attr_req of sdp_server.cc, there is an out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-20103P2CRITICALCVSS 9.8v13.0v14.0+1 more2024-10-07
CVE-2024-20103 [CRITICAL] CWE-787 CVE-2024-20103: In wlan firmware, there is a possible out of bounds write due to improper input validation. This cou
In wlan firmware, there is a possible out of bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09001358; Issue ID: MSV-1599.
nvd
CVE-2024-32913P2CRITICALCVSS 9.8vAndroid kernel2024-06-13
CVE-2024-32913 [CRITICAL] CWE-190 CVE-2024-32913: In wl_notify_rx_mgmt_frame of wl_cfg80211.c, there is a possible out of bounds write due to an integ
In wl_notify_rx_mgmt_frame of wl_cfg80211.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2018-9418P2CRITICALCVSS 9.8v7.0v7.1.1+5 more2024-12-02
CVE-2018-9418 [CRITICAL] CWE-787 CVE-2018-9418: In handle_app_cur_val_response of dtif_rc.cc, there is a possible stack buffer overflow due to a mis
In handle_app_cur_val_response of dtif_rc.cc, there is a possible stack buffer overflow due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-29786P2CRITICALCVSS 9.8vAndroid kernel2024-06-13
CVE-2024-29786 [CRITICAL] CWE-787 CVE-2024-29786: In pktproc_fill_data_addr_without_bm of link_rx_pktproc.c, there is a possible out of bounds write d
In pktproc_fill_data_addr_without_bm of link_rx_pktproc.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-22429P2CRITICALCVSS 9.8v13.0v14.0+4 more2025-09-02
CVE-2025-22429 [CRITICAL] CWE-693 CVE-2025-22429: In multiple locations, there is a possible way to execute arbitrary code due to a logic error in the
In multiple locations, there is a possible way to execute arbitrary code due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2021-0397P2CRITICALCVSS 9.8v8.1v9.0+3 more2021-03-10
CVE-2021-0397 [CRITICAL] CWE-415 CVE-2021-0397: In sdp_copy_raw_data of sdp_discovery.cc, there is a possible system compromise due to a double free
In sdp_copy_raw_data of sdp_discovery.cc, there is a possible system compromise due to a double free. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-174052148
nvd
CVE-2021-0474P3CRITICALCVSS 9.8v8.1v9.0+3 more2021-06-11
CVE-2021-0474 [CRITICAL] CWE-787 CVE-2021-0474: In avrc_msg_cback of avrc_api.cc, there is a possible out of bounds write due to a heap buffer overf
In avrc_msg_cback of avrc_api.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-177611958
nvd
CVE-2020-0225P2CRITICALCVSS 9.8v10.0vAndroid-102020-07-17
CVE-2020-0225 [CRITICAL] CWE-787 CVE-2020-0225: In a2dp_vendor_ldac_decoder_decode_packet of a2dp_vendor_ldac_decoder.cc, there is a possible out of
In a2dp_vendor_ldac_decoder_decode_packet of a2dp_vendor_ldac_decoder.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-142546668
nvd
CVE-2021-0396P2CRITICALCVSS 9.8v8.1v9.0+3 more2021-03-10
CVE-2021-0396 [CRITICAL] CWE-787 CVE-2021-0396: In Builtins::Generate_ArgumentsAdaptorTrampoline of builtins-arm.cc and related files, there is a po
In Builtins::Generate_ArgumentsAdaptorTrampoline of builtins-arm.cc and related files, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:
nvd
CVE-2023-35681P2CRITICALCVSS 9.8v13.0v132023-09-11
CVE-2023-35681 [CRITICAL] CWE-190 CVE-2023-35681: In eatt_l2cap_reconfig_completed of eatt_impl.h, there is a possible out of bounds write due to an i
In eatt_l2cap_reconfig_completed of eatt_impl.h, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-49747P2CRITICALCVSS 9.8v12.0v12.1+8 more2025-01-21
CVE-2024-49747 [CRITICAL] CWE-94 CVE-2024-49747: In gatts_process_read_by_type_req of gatt_sr.cc, there is a possible out of bounds write due to a lo
In gatts_process_read_by_type_req of gatt_sr.cc, there is a possible out of bounds write due to a logic error in the code. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-26416P2CRITICALCVSS 9.8v13.0v14.0+4 more2025-09-02
CVE-2025-26416 [CRITICAL] CWE-122 CVE-2025-26416: In initializeSwizzler of SkBmpStandardCodec.cpp, there is a possible out of bounds write due to a he
In initializeSwizzler of SkBmpStandardCodec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-0111P3CRITICALCVSS 9.8vAndroid kernel2026-03-10
CVE-2026-0111 [CRITICAL] CWE-787 CVE-2026-0111: In ns_GetUserData of ns_SmscbUtilities.c, there is a possible out of bounds write due to an incorrec
In ns_GetUserData of ns_SmscbUtilities.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-0113P3CRITICALCVSS 9.8vAndroid kernel2026-03-10
CVE-2026-0113 [CRITICAL] CWE-787 CVE-2026-0113: In ns_GetUserData of ns_SmscbUtilities.c, there is a possible out of bounds write due to an incorrec
In ns_GetUserData of ns_SmscbUtilities.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-20148P3CRITICALCVSS 9.8v13.0v14.0+1 more2025-01-06
CVE-2024-20148 [CRITICAL] CWE-787 CVE-2024-20148: In wlan STA FW, there is a possible out of bounds write due to improper input validation. This could
In wlan STA FW, there is a possible out of bounds write due to improper input validation. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00389045 / ALPS09136494; Issue ID: MSV-1796.
nvd
CVE-2020-0452P2CRITICALCVSS 9.8v8.0v8.1+4 more2020-11-10
CVE-2020-0452 [CRITICAL] CWE-190 CVE-2020-0452: In exif_entry_get_value of exif-entry.c, there is a possible out of bounds write due to an integer o
In exif_entry_get_value of exif-entry.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution if a third party app used this library to process remote image data with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1
nvd