cbcvebase.

Google Inc Android vulnerabilities

959 known vulnerabilities affecting google_inc/android.

Total CVEs
959
CISA KEV
0
Public exploits
21
Exploited in wild
1
Severity breakdown
CRITICAL70HIGH617MEDIUM268LOW4

Vulnerabilities

Page 40 of 48
CVE-2016-6708P4MEDIUMCVSS 5.5vAndroid-7.02016-11-25
CVE-2016-6708 [MEDIUM] CWE-254 CVE-2016-6708: An elevation of privilege in the System UI in Android 7.0 before 2016-11-01 could enable a local mal An elevation of privilege in the System UI in Android 7.0 before 2016-11-01 could enable a local malicious user to bypass the security prompt of your work profile in Multi-Window mode. This issue is rated as High because it is a local bypass of user interaction requirements for any developer or security setting modifications. Android ID: A-30693465.
nvd
CVE-2017-0850P4MEDIUMCVSS 5.3v7.0v7.1.1+1 more2017-11-16
CVE-2017-0850 [MEDIUM] CWE-200 CVE-2017-0850: An information disclosure vulnerability in the Android media framework (libstagefright). Product: An An information disclosure vulnerability in the Android media framework (libstagefright). Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-64836941.
nvd
CVE-2017-13295P4MEDIUMCVSS 5.3v6.0v6.0.1+5 more2018-04-04
CVE-2017-13295 [MEDIUM] CWE-20 CVE-2017-13295: A denial of service vulnerability in the Android framework (package installer). Product: Android. Ve A denial of service vulnerability in the Android framework (package installer). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-62537081.
nvd
CVE-2017-0851P4MEDIUMCVSS 5.3v5.0.2v5.1.1+6 more2017-11-16
CVE-2017-0851 [MEDIUM] CWE-200 CVE-2017-0851: An information disclosure vulnerability in the Android media framework (libhevc). Product: Android. An information disclosure vulnerability in the Android media framework (libhevc). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-35430570.
nvd
CVE-2017-0848P4MEDIUMCVSS 5.3v5.0.2v5.1.1+6 more2017-11-16
CVE-2017-0848 [MEDIUM] CWE-200 CVE-2017-0848: An information disclosure vulnerability in the Android media framework (libeffects). Product: Androi An information disclosure vulnerability in the Android media framework (libeffects). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-64477217.
nvd
CVE-2017-0849P4MEDIUMCVSS 5.3v6.0v6.0.1+4 more2017-11-16
CVE-2017-0849 [MEDIUM] CWE-200 CVE-2017-0849: An information disclosure vulnerability in the Android media framework (libavc). Product: Android. V An information disclosure vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-62688399.
nvd
CVE-2017-13297P4MEDIUMCVSS 5.3v6.0v6.0.1+5 more2018-04-04
CVE-2017-13297 [MEDIUM] CWE-200 CVE-2017-13297: A information disclosure vulnerability in the Android media framework (libhevc). Product: Android. V A information disclosure vulnerability in the Android media framework (libhevc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-71766721.
nvd
CVE-2017-13296P4MEDIUMCVSS 5.3v6.0v6.0.1+5 more2018-04-04
CVE-2017-13296 [MEDIUM] CWE-200 CVE-2017-13296: A information disclosure vulnerability in the Android media framework (libavc). Product: Android. Ve A information disclosure vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-70897454.
nvd
CVE-2017-13298P4MEDIUMCVSS 5.3v6.0v6.0.1+5 more2018-04-04
CVE-2017-13298 [MEDIUM] CWE-200 CVE-2017-13298: A information disclosure vulnerability in the Android media framework (libhavc). Product: Android. V A information disclosure vulnerability in the Android media framework (libhavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-72117051.
nvd
CVE-2018-9452P4MEDIUMCVSS 5.5vAndroid-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9.02018-10-02
CVE-2018-9452 [MEDIUM] CWE-20 CVE-2018-9452: In getOffsetForHorizontal of Layout.java, there is a possible application hang due to a slow width c In getOffsetForHorizontal of Layout.java, there is a possible application hang due to a slow width calculation. This could lead to remote denial of service if a contact with many hidden unicode characters were sent to the device and used by a local app, with no additional execution privileges needed. User interaction is needed for exploitation. Product
nvd
CVE-2017-0426P4MEDIUMCVSS 5.5vAndroid-7.0vAndroid-7.1.12017-02-08
CVE-2017-0426 [MEDIUM] CWE-200 CVE-2017-0426: An information disclosure vulnerability in the Filesystem could enable a local malicious application An information disclosure vulnerability in the Filesystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Product: Android. Versions: 7.0, 7.1.1. Android ID: A-32799236.
nvd
CVE-2017-0557P4MEDIUMCVSS 5.5vAndroid-6.0vAndroid-6.0.1+2 more2017-04-07
CVE-2017-0557 [MEDIUM] CWE-200 CVE-2017-0557: An information disclosure vulnerability in libmpeg2 in Mediaserver could enable a local malicious ap An information disclosure vulnerability in libmpeg2 in Mediaserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access data without permission. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-34093073.
nvd
CVE-2017-0558P4MEDIUMCVSS 5.5vAndroid-4.4.4vAndroid-5.0.2+5 more2017-04-07
CVE-2017-0558 [MEDIUM] CWE-200 CVE-2017-0558: An information disclosure vulnerability in Mediaserver could enable a local malicious application to An information disclosure vulnerability in Mediaserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access data without permission. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-34056274.
nvd
CVE-2017-0559P4MEDIUMCVSS 5.5vAndroid-4.4.4vAndroid-5.0.2+5 more2017-04-07
CVE-2017-0559 [MEDIUM] CWE-200 CVE-2017-0559: An information disclosure vulnerability in libskia could enable a local malicious application to acc An information disclosure vulnerability in libskia could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access data without permission. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-33897722.
nvd
CVE-2017-0555P4MEDIUMCVSS 5.5vAndroid-6.0vAndroid-6.0.1+2 more2017-04-07
CVE-2017-0555 [MEDIUM] CWE-200 CVE-2017-0555: An information disclosure vulnerability in libavc in Mediaserver could enable a local malicious appl An information disclosure vulnerability in libavc in Mediaserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access data without permission. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-33551775.
nvd
CVE-2018-9444P4MEDIUMCVSS 5.5vAndroid-6.0 Android-6.0.1 Android-7.0 Android-7.1.1 Android-7.1.22018-11-06
CVE-2018-9444 [MEDIUM] CWE-835 CVE-2018-9444: In ih264d_video_decode of ih264d_api.c there is a possible resource exhaustion due to an infinite lo In ih264d_video_decode of ih264d_api.c there is a possible resource exhaustion due to an infinite loop. This could lead to remote temporary device denial of service (remote hang or reboot) with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android Versions: Android-6.0 Android-6.0.1 Android-7.0 Androi
nvd
CVE-2017-0556P4MEDIUMCVSS 5.5vAndroid-6.0vAndroid-6.0.1+2 more2017-04-07
CVE-2017-0556 [MEDIUM] CWE-200 CVE-2017-0556: An information disclosure vulnerability in libmpeg2 in Mediaserver could enable a local malicious ap An information disclosure vulnerability in libmpeg2 in Mediaserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access data without permission. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-34093952.
nvd
CVE-2016-10234P4MEDIUMCVSS 5.5vAndroid kernel2018-04-04
CVE-2016-10234 [MEDIUM] CWE-200 CVE-2016-10234: An information disclosure vulnerability in the Qualcomm IPA driver. Product: Android. Versions: Andr An information disclosure vulnerability in the Qualcomm IPA driver. Product: Android. Versions: Android kernel. Android ID: A-34390017. References: QC-CR#1069060.
nvd
CVE-2017-0402P4MEDIUMCVSS 5.5vAndroid-4.4.4vAndroid-5.0.2+5 more2017-01-12
CVE-2017-0402 [MEDIUM] CWE-200 CVE-2017-0402: An information disclosure vulnerability in lvm/wrapper/Bundle/EffectBundle.cpp in libeffects in Audi An information disclosure vulnerability in lvm/wrapper/Bundle/EffectBundle.cpp in libeffects in Audioserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.
nvd
CVE-2017-0400P4MEDIUMCVSS 5.5vAndroid-4.4.4vAndroid-5.0.2+5 more2017-01-12
CVE-2017-0400 [MEDIUM] CWE-200 CVE-2017-0400: An information disclosure vulnerability in lvm/wrapper/Bundle/EffectBundle.cpp in libeffects in Audi An information disclosure vulnerability in lvm/wrapper/Bundle/EffectBundle.cpp in libeffects in Audioserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.
nvd
Google Inc Android vulnerabilities | cvebase