Google Inc Android vulnerabilities
959 known vulnerabilities affecting google_inc/android.
Total CVEs
959
CISA KEV
0
Public exploits
21
Exploited in wild
1
Severity breakdown
CRITICAL70HIGH617MEDIUM268LOW4
Vulnerabilities
Page 40 of 48
CVE-2016-6708P4MEDIUMCVSS 5.5vAndroid-7.02016-11-25
CVE-2016-6708 [MEDIUM] CWE-254 CVE-2016-6708: An elevation of privilege in the System UI in Android 7.0 before 2016-11-01 could enable a local mal
An elevation of privilege in the System UI in Android 7.0 before 2016-11-01 could enable a local malicious user to bypass the security prompt of your work profile in Multi-Window mode. This issue is rated as High because it is a local bypass of user interaction requirements for any developer or security setting modifications. Android ID: A-30693465.
nvd
CVE-2017-0850P4MEDIUMCVSS 5.3v7.0v7.1.1+1 more2017-11-16
CVE-2017-0850 [MEDIUM] CWE-200 CVE-2017-0850: An information disclosure vulnerability in the Android media framework (libstagefright). Product: An
An information disclosure vulnerability in the Android media framework (libstagefright). Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-64836941.
nvd
CVE-2017-13295P4MEDIUMCVSS 5.3v6.0v6.0.1+5 more2018-04-04
CVE-2017-13295 [MEDIUM] CWE-20 CVE-2017-13295: A denial of service vulnerability in the Android framework (package installer). Product: Android. Ve
A denial of service vulnerability in the Android framework (package installer). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-62537081.
nvd
CVE-2017-0851P4MEDIUMCVSS 5.3v5.0.2v5.1.1+6 more2017-11-16
CVE-2017-0851 [MEDIUM] CWE-200 CVE-2017-0851: An information disclosure vulnerability in the Android media framework (libhevc). Product: Android.
An information disclosure vulnerability in the Android media framework (libhevc). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-35430570.
nvd
CVE-2017-0848P4MEDIUMCVSS 5.3v5.0.2v5.1.1+6 more2017-11-16
CVE-2017-0848 [MEDIUM] CWE-200 CVE-2017-0848: An information disclosure vulnerability in the Android media framework (libeffects). Product: Androi
An information disclosure vulnerability in the Android media framework (libeffects). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-64477217.
nvd
CVE-2017-0849P4MEDIUMCVSS 5.3v6.0v6.0.1+4 more2017-11-16
CVE-2017-0849 [MEDIUM] CWE-200 CVE-2017-0849: An information disclosure vulnerability in the Android media framework (libavc). Product: Android. V
An information disclosure vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-62688399.
nvd
CVE-2017-13297P4MEDIUMCVSS 5.3v6.0v6.0.1+5 more2018-04-04
CVE-2017-13297 [MEDIUM] CWE-200 CVE-2017-13297: A information disclosure vulnerability in the Android media framework (libhevc). Product: Android. V
A information disclosure vulnerability in the Android media framework (libhevc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-71766721.
nvd
CVE-2017-13296P4MEDIUMCVSS 5.3v6.0v6.0.1+5 more2018-04-04
CVE-2017-13296 [MEDIUM] CWE-200 CVE-2017-13296: A information disclosure vulnerability in the Android media framework (libavc). Product: Android. Ve
A information disclosure vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-70897454.
nvd
CVE-2017-13298P4MEDIUMCVSS 5.3v6.0v6.0.1+5 more2018-04-04
CVE-2017-13298 [MEDIUM] CWE-200 CVE-2017-13298: A information disclosure vulnerability in the Android media framework (libhavc). Product: Android. V
A information disclosure vulnerability in the Android media framework (libhavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-72117051.
nvd
CVE-2018-9452P4MEDIUMCVSS 5.5vAndroid-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9.02018-10-02
CVE-2018-9452 [MEDIUM] CWE-20 CVE-2018-9452: In getOffsetForHorizontal of Layout.java, there is a possible application hang due to a slow width c
In getOffsetForHorizontal of Layout.java, there is a possible application hang due to a slow width calculation. This could lead to remote denial of service if a contact with many hidden unicode characters were sent to the device and used by a local app, with no additional execution privileges needed. User interaction is needed for exploitation. Product
nvd
CVE-2017-0426P4MEDIUMCVSS 5.5vAndroid-7.0vAndroid-7.1.12017-02-08
CVE-2017-0426 [MEDIUM] CWE-200 CVE-2017-0426: An information disclosure vulnerability in the Filesystem could enable a local malicious application
An information disclosure vulnerability in the Filesystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Product: Android. Versions: 7.0, 7.1.1. Android ID: A-32799236.
nvd
CVE-2017-0557P4MEDIUMCVSS 5.5vAndroid-6.0vAndroid-6.0.1+2 more2017-04-07
CVE-2017-0557 [MEDIUM] CWE-200 CVE-2017-0557: An information disclosure vulnerability in libmpeg2 in Mediaserver could enable a local malicious ap
An information disclosure vulnerability in libmpeg2 in Mediaserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access data without permission. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-34093073.
nvd
CVE-2017-0558P4MEDIUMCVSS 5.5vAndroid-4.4.4vAndroid-5.0.2+5 more2017-04-07
CVE-2017-0558 [MEDIUM] CWE-200 CVE-2017-0558: An information disclosure vulnerability in Mediaserver could enable a local malicious application to
An information disclosure vulnerability in Mediaserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access data without permission. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-34056274.
nvd
CVE-2017-0559P4MEDIUMCVSS 5.5vAndroid-4.4.4vAndroid-5.0.2+5 more2017-04-07
CVE-2017-0559 [MEDIUM] CWE-200 CVE-2017-0559: An information disclosure vulnerability in libskia could enable a local malicious application to acc
An information disclosure vulnerability in libskia could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access data without permission. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-33897722.
nvd
CVE-2017-0555P4MEDIUMCVSS 5.5vAndroid-6.0vAndroid-6.0.1+2 more2017-04-07
CVE-2017-0555 [MEDIUM] CWE-200 CVE-2017-0555: An information disclosure vulnerability in libavc in Mediaserver could enable a local malicious appl
An information disclosure vulnerability in libavc in Mediaserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access data without permission. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-33551775.
nvd
CVE-2018-9444P4MEDIUMCVSS 5.5vAndroid-6.0 Android-6.0.1 Android-7.0 Android-7.1.1 Android-7.1.22018-11-06
CVE-2018-9444 [MEDIUM] CWE-835 CVE-2018-9444: In ih264d_video_decode of ih264d_api.c there is a possible resource exhaustion due to an infinite lo
In ih264d_video_decode of ih264d_api.c there is a possible resource exhaustion due to an infinite loop. This could lead to remote temporary device denial of service (remote hang or reboot) with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android Versions: Android-6.0 Android-6.0.1 Android-7.0 Androi
nvd
CVE-2017-0556P4MEDIUMCVSS 5.5vAndroid-6.0vAndroid-6.0.1+2 more2017-04-07
CVE-2017-0556 [MEDIUM] CWE-200 CVE-2017-0556: An information disclosure vulnerability in libmpeg2 in Mediaserver could enable a local malicious ap
An information disclosure vulnerability in libmpeg2 in Mediaserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access data without permission. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-34093952.
nvd
CVE-2016-10234P4MEDIUMCVSS 5.5vAndroid kernel2018-04-04
CVE-2016-10234 [MEDIUM] CWE-200 CVE-2016-10234: An information disclosure vulnerability in the Qualcomm IPA driver. Product: Android. Versions: Andr
An information disclosure vulnerability in the Qualcomm IPA driver. Product: Android. Versions: Android kernel. Android ID: A-34390017. References: QC-CR#1069060.
nvd
CVE-2017-0402P4MEDIUMCVSS 5.5vAndroid-4.4.4vAndroid-5.0.2+5 more2017-01-12
CVE-2017-0402 [MEDIUM] CWE-200 CVE-2017-0402: An information disclosure vulnerability in lvm/wrapper/Bundle/EffectBundle.cpp in libeffects in Audi
An information disclosure vulnerability in lvm/wrapper/Bundle/EffectBundle.cpp in libeffects in Audioserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.
nvd
CVE-2017-0400P4MEDIUMCVSS 5.5vAndroid-4.4.4vAndroid-5.0.2+5 more2017-01-12
CVE-2017-0400 [MEDIUM] CWE-200 CVE-2017-0400: An information disclosure vulnerability in lvm/wrapper/Bundle/EffectBundle.cpp in libeffects in Audi
An information disclosure vulnerability in lvm/wrapper/Bundle/EffectBundle.cpp in libeffects in Audioserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.
nvd