Google Android vulnerabilities

9,646 known vulnerabilities affecting google/android.

Total CVEs
9,646
CISA KEV
48
actively exploited
Public exploits
89
Exploited in wild
44
Severity breakdown
CRITICAL883HIGH5184MEDIUM3317LOW260UNKNOWN2

Vulnerabilities

Page 92 of 483
CVE-2023-28545HIGHCVSS 8.22023-11-01
CVE-2023-28545 [HIGH] CVE-2023-28545: Closed-source component Android Security Bulletin 2023-11-01 CVE: CVE-2023-28545 Severity: HIGH Component: Closed-source component References: A-280341536 *
android
CVE-2023-33047HIGHCVSS 7.52023-11-01
CVE-2023-33047 [HIGH] CVE-2023-33047: Closed-source component Android Security Bulletin 2023-11-01 CVE: CVE-2023-33047 Severity: HIGH Component: Closed-source component References: A-295039557 *
android
CVE-2023-33048HIGHCVSS 7.52023-11-01
CVE-2023-33048 [HIGH] CVE-2023-33048: Closed-source component Android Security Bulletin 2023-11-01 CVE: CVE-2023-33048 Severity: HIGH Component: Closed-source component References: A-295038661 *
android
CVE-2023-20702HIGHCVSS 7.52023-11-01
CVE-2023-20702 [HIGH] CVE-2023-20702: 5G NRLC Android Security Bulletin 2023-11-01 CVE: CVE-2023-20702 Severity: HIGH Component: 5G NRLC References: A-298879043 M-MOLY00921261 *
android
CVE-2023-33031HIGHCVSS 7.82023-11-01
CVE-2023-33031 [HIGH] CVE-2023-33031: Audio Android Security Bulletin 2023-11-01 CVE: CVE-2023-33031 Severity: HIGH Component: Audio References: A-290061915 QC-CR#3442627
android
CVE-2023-33059HIGHCVSS 7.82023-11-01
CVE-2023-33059 [HIGH] CVE-2023-33059: Audio Android Security Bulletin 2023-11-01 CVE: CVE-2023-33059 Severity: HIGH Component: Audio References: A-295019252 QC-CR#3453288 [2] [3]
android
CVE-2023-33055HIGHCVSS 7.82023-11-01
CVE-2023-33055 [HIGH] CVE-2023-33055: Audio Android Security Bulletin 2023-11-01 CVE: CVE-2023-33055 Severity: HIGH Component: Audio References: A-295039120 QC-CR#3454515 [2]
android
CVE-2023-42648MEDIUMCVSS 5.5v11.0v12.0+1 more2023-11-01
CVE-2023-42648 [MEDIUM] CWE-862 CVE-2023-42648: In engineermode, there is a possible missing permission check. This could lead to local information In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
nvd
CVE-2023-42637MEDIUMCVSS 5.5v11.0v12.0+1 more2023-11-01
CVE-2023-42637 [MEDIUM] CWE-862 CVE-2023-42637: In validationtools, there is a possible missing permission check. This could lead to local informati In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
nvd
CVE-2022-48459MEDIUMCVSS 5.5v11.0v12.02023-11-01
CVE-2022-48459 [MEDIUM] CWE-20 CVE-2022-48459: In TeleService, there is a possible system crash due to improper input validation. This could lead t In TeleService, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional execution privileges needed
nvdandroid
CVE-2022-48456MEDIUMCVSS 4.4v11.0v12.0+1 more2023-11-01
CVE-2022-48456 [MEDIUM] CWE-787 CVE-2022-48456: In camera driver, there is a possible out of bounds write due to a incorrect bounds check. This coul In camera driver, there is a possible out of bounds write due to a incorrect bounds check. This could lead to local denial of service with System execution privileges needed
nvdandroid
CVE-2022-48458MEDIUMCVSS 5.5v11.0v12.02023-11-01
CVE-2022-48458 [MEDIUM] CWE-20 CVE-2022-48458: In TeleService, there is a possible system crash due to improper input validation. This could lead t In TeleService, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional execution privileges needed
nvdandroid
CVE-2023-42631MEDIUMCVSS 5.5v11.0v12.0+1 more2023-11-01
CVE-2023-42631 [MEDIUM] CWE-862 CVE-2023-42631: In validationtools, there is a possible missing permission check. This could lead to local informati In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
nvd
CVE-2022-48460MEDIUMCVSS 5.5v10.0v11.0+1 more2023-11-01
CVE-2022-48460 [MEDIUM] CVE-2022-48460: In setting service, there is a possible undefined behavior due to incorrect error handling. This cou In setting service, there is a possible undefined behavior due to incorrect error handling. This could lead to local denial of service with no additional execution privileges needed
nvd
CVE-2022-48457MEDIUMCVSS 5.5v11.0v12.02023-11-01
CVE-2022-48457 [MEDIUM] CWE-20 CVE-2022-48457: In TeleService, there is a possible system crash due to improper input validation. This could lead t In TeleService, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional execution privileges needed
nvdandroid
CVE-2023-42647MEDIUMCVSS 5.5v10.0v11.0+2 more2023-11-01
CVE-2023-42647 [MEDIUM] CVE-2023-42647: In Ifaa service, there is a possible way to write permission usage records of an app due to a missin In Ifaa service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed
nvd
CVE-2022-48454MEDIUMCVSS 5.5v11.0v12.0+1 more2023-11-01
CVE-2022-48454 [MEDIUM] CWE-787 CVE-2022-48454: In wifi service, there is a possible out of bounds write due to a missing bounds check. This could l In wifi service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed
nvdandroid
CVE-2023-42750MEDIUMCVSS 4.4v11.0v12.0+1 more2023-11-01
CVE-2023-42750 [MEDIUM] CWE-787 CVE-2023-42750: In gnss service, there is a possible out of bounds write due to a missing bounds check. This could l In gnss service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed
nvd
CVE-2023-42634MEDIUMCVSS 5.5v11.0v12.0+1 more2023-11-01
CVE-2023-42634 [MEDIUM] CWE-862 CVE-2023-42634: In validationtools, there is a possible missing permission check. This could lead to local informati In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
nvd
CVE-2022-48455MEDIUMCVSS 5.5v11.0v12.0+1 more2023-11-01
CVE-2022-48455 [MEDIUM] CWE-787 CVE-2022-48455: In wifi service, there is a possible out of bounds write due to a missing bounds check. This could l In wifi service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed
nvdandroid