Google Inc Android vulnerabilities
959 known vulnerabilities affecting google_inc/android.
Total CVEs
959
CISA KEV
0
Public exploits
21
Exploited in wild
0
Severity breakdown
CRITICAL70HIGH618MEDIUM267LOW4
Vulnerabilities
Page 35 of 48
CVE-2017-0463HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-03-08
CVE-2017-0463 [HIGH] CWE-20 CVE-2017-0463: An elevation of privilege vulnerability in the Qualcomm networking driver could enable a local malic
An elevation of privilege vulnerability in the Qualcomm networking driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-33277611. References:
nvd
CVE-2017-0519HIGHCVSS 7.0vKernel-3.182017-03-08
CVE-2017-0519 [HIGH] CVE-2017-0519: An elevation of privilege vulnerability in the Qualcomm fingerprint sensor driver could enable a loc
An elevation of privilege vulnerability in the Qualcomm fingerprint sensor driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.18. Android ID: A-32372915. References: QC-CR#108653
nvd
CVE-2017-0521HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-03-08
CVE-2017-0521 [HIGH] CWE-190 CVE-2017-0521: An elevation of privilege vulnerability in the Qualcomm camera driver could enable a local malicious
An elevation of privilege vulnerability in the Qualcomm camera driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32919951. References: QC-
nvd
CVE-2017-0520HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-03-08
CVE-2017-0520 [HIGH] CWE-120 CVE-2017-0520: An elevation of privilege vulnerability in the Qualcomm crypto engine driver could enable a local ma
An elevation of privilege vulnerability in the Qualcomm crypto engine driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-31750232. Referenc
nvd
CVE-2017-0502HIGHCVSS 7.8vn/a2017-03-08
CVE-2017-0502 [HIGH] CVE-2017-0502: An elevation of privilege vulnerability in MediaTek components, including the M4U driver, sound driv
An elevation of privilege vulnerability in MediaTek components, including the M4U driver, sound driver, touchscreen driver, GPU driver, and Command Queue driver, could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, whi
nvd
CVE-2017-0527HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-03-08
CVE-2017-0527 [HIGH] CVE-2017-0527: An elevation of privilege vulnerability in the HTC Sensor Hub Driver could enable a local malicious
An elevation of privilege vulnerability in the HTC Sensor Hub Driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-33899318.
nvd
CVE-2017-0526HIGHCVSS 7.0vKernel-3.102017-03-08
CVE-2017-0526 [HIGH] CVE-2017-0526: An elevation of privilege vulnerability in the HTC Sensor Hub Driver could enable a local malicious
An elevation of privilege vulnerability in the HTC Sensor Hub Driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-33897738.
nvd
CVE-2017-0522HIGHCVSS 7.8vn/a2017-03-08
CVE-2017-0522 [HIGH] CVE-2017-0522: An elevation of privilege vulnerability in a MediaTek APK could enable a local malicious application
An elevation of privilege vulnerability in a MediaTek APK could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High due to the possibility of local arbitrary code execution in a privileged process. Product: Android. Versions: N/A. Android ID: A-32916158. References: M-ALPS0303251
nvd
CVE-2017-0501HIGHCVSS 7.8vn/a2017-03-08
CVE-2017-0501 [HIGH] CVE-2017-0501: An elevation of privilege vulnerability in MediaTek components, including the M4U driver, sound driv
An elevation of privilege vulnerability in MediaTek components, including the M4U driver, sound driver, touchscreen driver, GPU driver, and Command Queue driver, could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, whi
nvd
CVE-2017-0474HIGHCVSS 7.8vAndroid-7.0vAndroid-7.1.12017-03-08
CVE-2017-0474 [HIGH] CWE-119 CVE-2017-0474: A remote code execution vulnerability in Mediaserver could enable an attacker using a specially craf
A remote code execution vulnerability in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as Critical due to the possibility of remote code execution within the context of the Mediaserver process. Product: Android. Versions: 7.0, 7.1.1. Android ID: A
nvd
CVE-2017-0500HIGHCVSS 7.8vn/a2017-03-08
CVE-2017-0500 [HIGH] CVE-2017-0500: An elevation of privilege vulnerability in MediaTek components, including the M4U driver, sound driv
An elevation of privilege vulnerability in MediaTek components, including the M4U driver, sound driver, touchscreen driver, GPU driver, and Command Queue driver, could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, whi
nvd
CVE-2017-0506HIGHCVSS 7.8vn/a2017-03-08
CVE-2017-0506 [HIGH] CVE-2017-0506: An elevation of privilege vulnerability in MediaTek components, including the M4U driver, sound driv
An elevation of privilege vulnerability in MediaTek components, including the M4U driver, sound driver, touchscreen driver, GPU driver, and Command Queue driver, could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, whi
nvd
CVE-2017-0532MEDIUMCVSS 4.7vn/a2017-03-08
CVE-2017-0532 [MEDIUM] CWE-200 CVE-2017-0532: An information disclosure vulnerability in the MediaTek video codec driver could enable a local mali
An information disclosure vulnerability in the MediaTek video codec driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: N/A. Android ID: A-32370398. References: M-ALPS03069985.
nvd
CVE-2017-0537MEDIUMCVSS 4.7vKernel-3.182017-03-08
CVE-2017-0537 [MEDIUM] CWE-200 CVE-2017-0537: An information disclosure vulnerability in the kernel USB gadget driver could enable a local malicio
An information disclosure vulnerability in the kernel USB gadget driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.18. Android ID: A-31614969.
nvd
CVE-2017-0497MEDIUMCVSS 4.7vAndroid-7.0vAndroid-7.1.12017-03-08
CVE-2017-0497 [MEDIUM] CVE-2017-0497: A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted
A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as Moderate because it requires an uncommon device configuration. Product: Android. Versions: 7.0, 7.1.1. Android ID: A-33300701.
nvd
CVE-2017-0534MEDIUMCVSS 4.7vKernel-3.182017-03-08
CVE-2017-0534 [MEDIUM] CWE-200 CVE-2017-0534: An information disclosure vulnerability in the Qualcomm video driver could enable a local malicious
An information disclosure vulnerability in the Qualcomm video driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.18. Android ID: A-32508732. References: QC-CR#1088206.
nvd
CVE-2017-0533MEDIUMCVSS 4.7vKernel-3.182017-03-08
CVE-2017-0533 [MEDIUM] CWE-200 CVE-2017-0533: An information disclosure vulnerability in the Qualcomm video driver could enable a local malicious
An information disclosure vulnerability in the Qualcomm video driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.18. Android ID: A-32509422. References: QC-CR#1088206.
nvd
CVE-2017-0494MEDIUMCVSS 5.5vAndroid-6.0vAndroid-6.0.1+2 more2017-03-08
CVE-2017-0494 [MEDIUM] CWE-200 CVE-2017-0494: An information disclosure vulnerability in AOSP Messaging could enable a remote attacker using a spe
An information disclosure vulnerability in AOSP Messaging could enable a remote attacker using a special crafted file to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-32764144.
nvd
CVE-2017-0488MEDIUMCVSS 5.5vAndroid-6.0vAndroid-6.0.1+2 more2017-03-08
CVE-2017-0488 [MEDIUM] CWE-20 CVE-2017-0488: A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted
A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High severity due to the possibility of remote denial of service. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-34097213.
nvd
CVE-2017-0531MEDIUMCVSS 4.7vKernel-3.10vKernel-3.182017-03-08
CVE-2017-0531 [MEDIUM] CWE-200 CVE-2017-0531: An information disclosure vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious
An information disclosure vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32877245. References: QC-CR#1087
nvd