Google Android vulnerabilities
6,770 known vulnerabilities affecting google/android.
Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36
Vulnerabilities
Page 9 of 339
CVE-2017-13285P3CRITICALCVSS 9.8v6.0v6.0.1+5 more2018-04-04
CVE-2017-13285 [CRITICAL] CWE-787 CVE-2017-13285: In SvoxSsmlParser and startElement of svox_ssml_parser.cpp, there is a possible out of bounds write
In SvoxSsmlParser and startElement of svox_ssml_parser.cpp, there is a possible out of bounds write due to an uninitialized buffer. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7
nvd
CVE-2020-0224P3CRITICALCVSS 9.8v8.0v8.1+6 more2020-07-17
CVE-2020-0224 [CRITICAL] CWE-787 CVE-2020-0224: In FastKeyAccumulator::GetKeysSlow of keys.cc, there is a possible out of bounds write due to type c
In FastKeyAccumulator::GetKeysSlow of keys.cc, there is a possible out of bounds write due to type confusion. This could lead to remote code execution when processing a proxy configuration with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Androi
nvd
CVE-2020-0117P3CRITICALCVSS 9.8v8.0v8.1+3 more2020-06-10
CVE-2020-0117 [CRITICAL] CWE-190 CVE-2020-0117: In aes_cmac of aes_cmac.cc, there is a possible out of bounds write due to an integer overflow. This
In aes_cmac of aes_cmac.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution in the bluetooth server with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-8.0Android ID: A-151155194
nvd
CVE-2021-0515P3CRITICALCVSS 9.8v8.1v9.0+3 more2021-07-14
CVE-2021-0515 [CRITICAL] CWE-787 CVE-2021-0515: In Factory::CreateStrictFunctionMap of factory.cc, there is a possible out of bounds write due to an
In Factory::CreateStrictFunctionMap of factory.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Andr
nvd
CVE-2020-0138P3CRITICALCVSS 9.8v10.0vAndroid-102020-06-11
CVE-2020-0138 [CRITICAL] CWE-787 CVE-2020-0138: In get_element_attr_rsp of btif_rc.cc, there is a possible out of bounds write due to a missing boun
In get_element_attr_rsp of btif_rc.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution if bluetoothtbd were used, which it isn't in typical Android platforms, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Androi
nvd
CVE-2020-0333P3CRITICALCVSS 9.8v11.0vAndroid-112020-09-17
CVE-2020-0333 [CRITICAL] CWE-20 CVE-2020-0333: In UrlQuerySanitizer, there is a possible improper input validation. This could lead to remote code
In UrlQuerySanitizer, there is a possible improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-73822755
nvd
CVE-2023-40082P3CRITICALCVSS 9.8v14.0v142023-12-04
CVE-2023-40082 [CRITICAL] CVE-2023-40082: In modify_for_next_stage of fdt.rs, there is a possible way to render KASLR ineffective due to impro
In modify_for_next_stage of fdt.rs, there is a possible way to render KASLR ineffective due to improperly used crypto. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-20011P3CRITICALCVSS 9.8v11.0v12.0+1 more2024-02-05
CVE-2024-20011 [CRITICAL] CWE-119 CVE-2024-20011: In alac decoder, there is a possible information disclosure due to an incorrect bounds check. This c
In alac decoder, there is a possible information disclosure due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08441146; Issue ID: ALPS08441146.
nvd
CVE-2023-21162P3CRITICALCVSS 9.8vAndroid SoC2023-12-04
CVE-2023-21162 [CRITICAL] CVE-2023-21162: In RGXUnbackingZSBuffer of rgxta3d.c, there is a possible arbitrary code execution due to a use afte
In RGXUnbackingZSBuffer of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2023-21215P3CRITICALCVSS 9.8vAndroid SoC2023-12-04
CVE-2023-21215 [CRITICAL] CVE-2023-21215: In DevmemIntAcquireRemoteCtx of devicemem_server.c, there is a possible arbitrary code execution due
In DevmemIntAcquireRemoteCtx of devicemem_server.c, there is a possible arbitrary code execution due to a race condition. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2023-21163P3CRITICALCVSS 9.8vAndroid SoC2023-12-04
CVE-2023-21163 [CRITICAL] CVE-2023-21163: In PMR_ReadBytes of pmr.c, there is a possible arbitrary code execution due to a use after free. Thi
In PMR_ReadBytes of pmr.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2023-21164P3CRITICALCVSS 9.8vAndroid SoC2023-12-04
CVE-2023-21164 [CRITICAL] CVE-2023-21164: In DevmemIntMapPMR of devicemem_server.c, there is a possible arbitrary code execution due to a use
In DevmemIntMapPMR of devicemem_server.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2023-21166P3CRITICALCVSS 9.8vAndroid SoC2023-12-04
CVE-2023-21166 [CRITICAL] CVE-2023-21166: In RGXBackingZSBuffer of rgxta3d.c, there is a possible arbitrary code execution due to a use after
In RGXBackingZSBuffer of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2023-21216P3CRITICALCVSS 9.8vAndroid SoC2023-12-04
CVE-2023-21216 [CRITICAL] CWE-276 CVE-2023-21216: In PMRChangeSparseMemOSMem of physmem_osmem_linux.c, there is a possible arbitrary code execution du
In PMRChangeSparseMemOSMem of physmem_osmem_linux.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2018-9450P3HIGHCVSS 8.8v6.0v6.0.1+5 more2018-11-06
CVE-2018-9450 [HIGH] CWE-787 CVE-2018-9450: In avrc_proc_vendor_command of avrc_api.cc, there is a possible out of bounds write due to a missing
In avrc_proc_vendor_command of avrc_api.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-6.0 Android-6.0.1 Android-7.0 Android-7.1.1 Android-7.1.2 Android-8
nvd
CVE-2025-0078P3HIGHCVSS 8.8v12.0v12.1+8 more2025-08-26
CVE-2025-0078 [HIGH] CWE-250 CVE-2025-0078: In main of main.cpp, there is a possible way to bypass SELinux due to a logic error in the code. Thi
In main of main.cpp, there is a possible way to bypass SELinux due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-48534P3HIGHCVSS 8.8v13.0v14.0+4 more2025-09-04
CVE-2025-48534 [HIGH] CWE-693 CVE-2025-48534: In getDefaultCBRPackageName of CellBroadcastHandler.java, there is a possible escalation of privileg
In getDefaultCBRPackageName of CellBroadcastHandler.java, there is a possible escalation of privilege due to a logic error in the code. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2021-0870P3HIGHCVSS 8.1v8.1v9.0+3 more2021-10-22
CVE-2021-0870 [HIGH] CWE-362 CVE-2021-0870: In RW_SetActivatedTagType of rw_main.cc, there is possible memory corruption due to a race condition
In RW_SetActivatedTagType of rw_main.cc, there is possible memory corruption due to a race condition. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Android-8.1Android ID: A-192472262
nvd
CVE-2016-6725P3CRITICALCVSS 9.8≤ 7.02016-11-25
CVE-2016-6725 [CRITICAL] CWE-284 CVE-2016-6725: A remote code execution vulnerability in the Qualcomm crypto driver in Android before 2016-11-05 cou
A remote code execution vulnerability in the Qualcomm crypto driver in Android before 2016-11-05 could enable a remote attacker to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of remote code execution in the context of the kernel. Android ID: A-30515053. References: Qualcomm QC-CR#10
nvd
CVE-2017-13272P3CRITICALCVSS 9.8v7.0v7.1.1+3 more2018-04-04
CVE-2017-13272 [CRITICAL] CWE-416 CVE-2017-13272: In alarm_ready_generic of alarm.cc, there is a possible out of bounds write due to a use after free.
In alarm_ready_generic of alarm.cc, there is a possible out of bounds write due to a use after free. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-67110137.
nvd