Google Android vulnerabilities

9,646 known vulnerabilities affecting google/android.

Total CVEs
9,646
CISA KEV
48
actively exploited
Public exploits
89
Exploited in wild
44
Severity breakdown
CRITICAL883HIGH5184MEDIUM3317LOW260UNKNOWN2

Vulnerabilities

Page 67 of 483
CVE-2023-33086HIGHCVSS 7.52024-04-01
CVE-2023-33086 [HIGH] CVE-2023-33086: Closed-source component Android Security Bulletin 2024-04-01 CVE: CVE-2023-33086 Severity: HIGH Component: Closed-source component References: A-299146962 *
android
CVE-2023-33099HIGHCVSS 7.52024-04-01
CVE-2023-33099 [HIGH] CVE-2023-33099: Closed-source component Android Security Bulletin 2024-04-01 CVE: CVE-2023-33099 Severity: HIGH Component: Closed-source component References: A-303101372 *
android
CVE-2023-33100HIGHCVSS 7.52024-04-01
CVE-2023-33100 [HIGH] CVE-2023-33100: Closed-source component Android Security Bulletin 2024-04-01 CVE: CVE-2023-33100 Severity: HIGH Component: Closed-source component References: A-303101224 *
android
CVE-2023-32890HIGHCVSS 7.52024-04-01
CVE-2023-32890 [HIGH] CVE-2023-32890: Modem EMM Android Security Bulletin 2024-04-01 CVE: CVE-2023-32890 Severity: HIGH Component: Modem EMM References: A-323469023 M-MOLY01183647 *
android
CVE-2024-21472HIGHCVSS 8.42024-04-01
CVE-2024-21472 [HIGH] CVE-2024-21472: Kernel Android Security Bulletin 2024-04-01 CVE: CVE-2024-21472 Severity: HIGH Component: Kernel References: A-318393741 QC-CR#3626401
android
CVE-2023-33096HIGHCVSS 7.52024-04-01
CVE-2023-33096 [HIGH] CVE-2023-33096: Closed-source component Android Security Bulletin 2024-04-01 CVE: CVE-2023-33096 Severity: HIGH Component: Closed-source component References: A-299146025 *
android
CVE-2023-33104HIGHCVSS 7.52024-04-01
CVE-2023-33104 [HIGH] CVE-2023-33104: Closed-source component Android Security Bulletin 2024-04-01 CVE: CVE-2023-33104 Severity: HIGH Component: Closed-source component References: A-299146882 *
android
CVE-2024-20039HIGHCVSS 8.82024-04-01
CVE-2024-20039 [HIGH] CVE-2024-20039: Modem Protocol Android Security Bulletin 2024-04-01 CVE: CVE-2024-20039 Severity: HIGH Component: Modem Protocol References: A-323462011 M-MOLY01240012 *
android
CVE-2023-28547HIGHCVSS 8.42024-04-01
CVE-2023-28547 [HIGH] CVE-2023-28547: Closed-source component Android Security Bulletin 2024-04-01 CVE: CVE-2023-28547 Severity: HIGH Component: Closed-source component References: A-303101227 *
android
CVE-2024-20053HIGHCVSS 8.4v12.0v13.0+1 more2024-04-01
CVE-2024-20053 [HIGH] CWE-787 CVE-2024-20053: In flashc, there is a possible out of bounds write due to an uncaught exception. This could lead to In flashc, there is a possible out of bounds write due to an uncaught exception. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541757; Issue ID: ALPS08541764.
nvd
CVE-2024-20040HIGHCVSS 8.8v12.0v13.0+1 more2024-04-01
CVE-2024-20040 [HIGH] CWE-787 CVE-2024-20040: In wlan firmware, there is a possible out of bounds write due to improper input validation. This cou In wlan firmware, there is a possible out of bounds write due to improper input validation. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08360153 (for MT6XXX chipsets) / WCNCR00363530 (for MT79XX chipsets); Issue ID: MSV-979.
nvdandroid
CVE-2023-33103HIGHCVSS 7.52024-04-01
CVE-2023-33103 [HIGH] CVE-2023-33103: Closed-source component Android Security Bulletin 2024-04-01 CVE: CVE-2023-33103 Severity: HIGH Component: Closed-source component References: A-299146257 *
android
CVE-2023-33095HIGHCVSS 7.52024-04-01
CVE-2023-33095 [HIGH] CVE-2023-33095: Closed-source component Android Security Bulletin 2024-04-01 CVE: CVE-2023-33095 Severity: HIGH Component: Closed-source component References: A-299146595 *
android
CVE-2024-21463HIGHCVSS 7.32024-04-01
CVE-2024-21463 [HIGH] CVE-2024-21463: Closed-source component Android Security Bulletin 2024-04-01 CVE: CVE-2024-21463 Severity: HIGH Component: Closed-source component References: A-318393254 *
android
CVE-2023-33115HIGHCVSS 7.82024-04-01
CVE-2023-33115 [HIGH] CVE-2023-33115: Closed-source component Android Security Bulletin 2024-04-01 CVE: CVE-2023-33115 Severity: HIGH Component: Closed-source component References: A-303101567 *
android
CVE-2024-21468HIGHCVSS 8.42024-04-01
CVE-2024-21468 [HIGH] CVE-2024-21468: Kernel Android Security Bulletin 2024-04-01 CVE: CVE-2024-21468 Severity: HIGH Component: Kernel References: A-318393412 QC-CR#3614610 [2]
android
CVE-2023-33084HIGHCVSS 7.52024-04-01
CVE-2023-33084 [HIGH] CVE-2023-33084: Closed-source component Android Security Bulletin 2024-04-01 CVE: CVE-2023-33084 Severity: HIGH Component: Closed-source component References: A-299146258 *
android
CVE-2024-20055MEDIUMCVSS 6.3v12.0v13.02024-04-01
CVE-2024-20055 [MEDIUM] CWE-125 CVE-2024-20055: In imgsys, there is a possible information disclosure due to a missing bounds check. This could lead In imgsys, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation Patch ID: ALPS08518692; Issue ID: MSV-1012.
nvd
CVE-2024-20054MEDIUMCVSS 6.6v13.0v14.02024-04-01
CVE-2024-20054 [MEDIUM] CWE-787 CVE-2024-20054: In gnss, there is a possible escalation of privilege due to a missing bounds check. This could lead In gnss, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08580200; Issue ID: ALPS08580200.
nvd
CVE-2024-20050MEDIUMCVSS 4.4v12.0v13.0+1 more2024-04-01
CVE-2024-20050 [MEDIUM] CWE-922 CVE-2024-20050: In flashc, there is a possible information disclosure due to an uncaught exception. This could lead In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541757; Issue ID: ALPS08541757.
nvd