cbcvebase.

Google Inc Android vulnerabilities

959 known vulnerabilities affecting google_inc/android.

Total CVEs
959
CISA KEV
0
Public exploits
21
Exploited in wild
1
Severity breakdown
CRITICAL70HIGH617MEDIUM268LOW4

Vulnerabilities

Page 32 of 48
CVE-2016-8434P4HIGHCVSS 7.0vKernel-3.102017-01-12
CVE-2016-8434 [HIGH] CWE-284 CVE-2016-8434: An elevation of privilege vulnerability in the Qualcomm GPU driver could enable a local malicious ap An elevation of privilege vulnerability in the Qualcomm GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android.
nvd
CVE-2016-6755P4HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-01-12
CVE-2016-6755 [HIGH] CWE-284 CVE-2016-6755: An elevation of privilege vulnerability in the Qualcomm camera driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm camera driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-30740545. References: QC-
nvd
CVE-2016-8392P4HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-01-12
CVE-2016-8392 [HIGH] CWE-284 CVE-2016-8392: An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-31385862. References: QC-CR
nvd
CVE-2016-8391P4HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-01-12
CVE-2016-8391 [HIGH] CWE-284 CVE-2016-8391: An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-31253255. References: QC-CR
nvd
CVE-2016-6791P4HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-01-12
CVE-2016-6791 [HIGH] CWE-284 CVE-2016-6791: An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-31252384. References: QC-CR
nvd
CVE-2016-10289P4HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-05-12
CVE-2016-10289 [HIGH] CWE-264 CVE-2016-10289: An elevation of privilege vulnerability in the Qualcomm crypto driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm crypto driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-33899710. References: Q
nvd
CVE-2017-0462P4HIGHCVSS 7.0vKernel-3.182017-04-07
CVE-2017-0462 [HIGH] CWE-362 CVE-2017-0462: An elevation of privilege vulnerability in the Qualcomm Seemp driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm Seemp driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.18. Android ID: A-33353601. References: QC-CR#1102288.
nvd
CVE-2017-0445P4HIGHCVSS 7.0vKernel-3.182017-02-08
CVE-2017-0445 [HIGH] CVE-2017-0445: An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.18. Android ID: A-32769717.
nvd
CVE-2017-0434P4HIGHCVSS 7.0vKernel-3.182017-02-08
CVE-2017-0434 [HIGH] CVE-2017-0434: An elevation of privilege vulnerability in the Synaptics touchscreen driver could enable a local mal An elevation of privilege vulnerability in the Synaptics touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the touchscreen chipset. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.18. Android ID: A-33001936.
nvd
CVE-2017-0446P4HIGHCVSS 7.0vKernel-3.182017-02-08
CVE-2017-0446 [HIGH] CVE-2017-0446: An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.18. Android ID: A-32917445.
nvd
CVE-2017-0447P4HIGHCVSS 7.0vKernel-3.182017-02-08
CVE-2017-0447 [HIGH] CVE-2017-0447: An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.18. Android ID: A-32919560.
nvd
CVE-2017-0523P4HIGHCVSS 7.0vn/a2017-03-08
CVE-2017-0523 [HIGH] CVE-2017-0523: An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: N/A. Android ID: A-32835279. References: QC-CR#1096945.
nvd
CVE-2017-0620P4HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-05-12
CVE-2017-0620 [HIGH] CWE-20 CVE-2017-0620: An elevation of privilege vulnerability in the Qualcomm Secure Channel Manager driver could enable a An elevation of privilege vulnerability in the Qualcomm Secure Channel Manager driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-35401052.
nvd
CVE-2017-0616P4HIGHCVSS 7.0vn/a2017-05-12
CVE-2017-0616 [HIGH] CVE-2017-0616: An elevation of privilege vulnerability in the MediaTek system management interrupt driver could ena An elevation of privilege vulnerability in the MediaTek system management interrupt driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: N/A. Android ID: A-34470286. References: M-ALPS03149
nvd
CVE-2018-9539P4HIGHCVSS 7.0vAndroid-8.0 Android-8.1 Android-92018-11-14
CVE-2018-9539 [HIGH] CWE-362 CVE-2018-9539: In the ClearKey CAS descrambler, there is a possible use after free due to a race condition. This co In the ClearKey CAS descrambler, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-8.0 Android-8.1 Android-9. Android ID: A-113027383
nvd
CVE-2015-9016P4HIGHCVSS 7.0vAndroid kernel2018-04-05
CVE-2015-9016 [HIGH] CWE-264 CVE-2015-9016: In blk_mq_tag_to_rq in blk-mq.c in the upstream kernel, there is a possible use after free due to a In blk_mq_tag_to_rq in blk-mq.c in the upstream kernel, there is a possible use after free due to a race condition when a request has been previously freed by blk_mq_complete_request. This could lead to local escalation of privilege. Product: Android. Versions: Android kernel. Android ID: A-63083046.
nvd
CVE-2017-13219P4HIGHCVSS 7.5vAndroid kernel2018-01-12
CVE-2017-13219 [HIGH] CVE-2017-13219: A denial of service vulnerability in the Upstream kernel synaptics touchscreen controller. Product: A denial of service vulnerability in the Upstream kernel synaptics touchscreen controller. Product: Android. Versions: Android kernel. Android ID: A-62800865.
nvd
CVE-2017-13301P4HIGHCVSS 7.5v8.02018-04-04
CVE-2017-13301 [HIGH] CWE-20 CVE-2017-13301: A denial of service vulnerability in the Android system (system ui). Product: Android. Versions: 8.0 A denial of service vulnerability in the Android system (system ui). Product: Android. Versions: 8.0. Android ID: A-66498711.
nvd
CVE-2017-13302P4HIGHCVSS 7.5v8.02018-04-04
CVE-2017-13302 [HIGH] CWE-20 CVE-2017-13302: A denial of service vulnerability in the Android system (system ui). Product: Android. Versions: 8.0 A denial of service vulnerability in the Android system (system ui). Product: Android. Versions: 8.0. Android ID: A-69969749.
nvd
CVE-2017-0845P4HIGHCVSS 7.5v5.0.2v5.1.1+5 more2017-11-16
CVE-2017-0845 [HIGH] CWE-732 CVE-2017-0845: A denial of service vulnerability in the Android framework (syncstorageengine). Product: Android. Ve A denial of service vulnerability in the Android framework (syncstorageengine). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-35028827.
nvd
Google Inc Android vulnerabilities | cvebase