VendorsGoogleandroidall versions
Vulnerabilities

Google Android

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9581CVEs
CVE-2017-14909
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a count value that is read from a file is not properly validated.
Published 2017-12-05 · Modified
10.0EPSS 0.007
CVE-2017-14914
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, handles in the global client structure can become stale.
Published 2017-12-05 · Modified
10.0EPSS 0.007
CVE-2017-11006
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a Use After Free condition can occur during positioning.
Published 2017-12-05 · Modified
10.0EPSS 0.007
CVE-2017-11005
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a Use After Free condition can occur during a deinitialization path.
Published 2017-12-05 · Modified
10.0EPSS 0.007
CVE-2019-2006
In serviceDied of HalDeathHandlerHidl.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege in the audio server with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9Android ID: A-116665972
Published 2019-06-19 · Modified
10.0EPSS 0.007
CVE-2020-13841
An issue was discovered on LG mobile devices with Android OS 9 and 10 (MTK chipsets). An AT command handler allows attackers to bypass intended access restrictions. The LG ID is LVE-SMP-200009 (June 2020).
Published 2020-06-04 · Modified
10.0EPSS 0.007
CVE-2016-3877
Unspecified vulnerability in Android before 2016-09-01 has unknown impact and attack vectors.
Published 2016-09-11 · Modified
10.0EPSS 0.007
CVE-2021-1049
Hacker one bug ID: 1343975Product: AndroidVersions: Android SoCAndroid ID: A-204256722
Published 2022-01-14 · Modified
10.0EPSS 0.007
CVE-2020-0253
There is a possible memory corruption due to a use after free.Product: AndroidVersions: Android SoCAndroid ID: A-152647365
Published 2020-08-11 · Modified
10.0EPSS 0.006
CVE-2020-0123
There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-149871374
Published 2020-09-17 · Modified
10.0EPSS 0.006
CVE-2016-3929
Unspecified vulnerability in a Qualcomm component in Android before 2016-10-05 on Nexus 5X and 6P devices has unknown impact and attack vectors, aka internal bug 28823675.
Published 2016-10-10 · Modified
10.0EPSS 0.006
CVE-2016-3927
Unspecified vulnerability in a Qualcomm component in Android before 2016-10-05 on Nexus 5X and 6P devices has unknown impact and attack vectors, aka internal bug 28823244.
Published 2016-10-10 · Modified
10.0EPSS 0.006
CVE-2014-7915
Integer overflow in SampleTable.cpp in libstagefright in Android before 5.0.0 has unspecified impact and attack vectors, aka internal bug 15328708.
Published 2015-10-01 · Modified
10.0EPSS 0.006
CVE-2014-7916
Integer overflow in SampleTable.cpp in libstagefright in Android before 5.0.0 has unspecified impact and attack vectors, aka internal bug 15342751.
Published 2015-10-01 · Modified
10.0EPSS 0.006
CVE-2014-7917
Integer overflow in SampleTable.cpp in libstagefright in Android before 5.0.0 has unspecified impact and attack vectors, aka internal bug 15342615.
Published 2015-10-01 · Modified
10.0EPSS 0.006
CVE-2018-3586
An integer overflow to buffer overflow vulnerability exists in the ADSPRPC heap manager in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.
Published 2018-07-06 · Modified
10.0EPSS 0.006
CVE-2019-20621
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) (Exynos chipsets) software. There is a baseband heap overflow. The Samsung ID is SVE-2018-13187 (February 2019).
Published 2020-03-24 · Modified
10.0EPSS 0.006
CVE-2019-20622
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) (Exynos chipsets) software. There is a baseband stack overflow. The Samsung ID is SVE-2018-13188 (February 2019).
Published 2020-03-24 · Modified
10.0EPSS 0.006
CVE-2014-9795
app/aboot/aboot.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices does not properly check for an integer overflow, which allows attackers to bypass intended access restrictions via crafted start and size values, aka Android internal bug 28820720 and Qualcomm internal bug CR681957, a related issue to CVE-2014-4325.
Published 2016-07-11 · Modified
10.0EPSS 0.006
CVE-2021-39616
Summary:Product: AndroidVersions: Android SoCAndroid ID: A-204686438
Published 2022-02-11 · Modified
10.0EPSS 0.006
CVE-2021-39658
ismsEx service is a vendor service in unisoc equipment。ismsEx service is an extension of sms system service,but it does not check the permissions of the caller,resulting in permission leaks。Third-party apps can use this service to arbitrarily modify and set system properties。Product: AndroidVersions: Android SoCAndroid ID: A-207479207
Published 2022-02-11 · Modified
10.0EPSS 0.006
CVE-2021-25387
An improper input validation vulnerability in sflacfd_get_frm() in libsflacextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.
Published 2021-06-11 · Modified
10.0EPSS 0.006
CVE-2020-0252
There is a possible memory corruption due to a use after free.Product: AndroidVersions: Android SoCAndroid ID: A-152236803
Published 2020-08-11 · Modified
10.0EPSS 0.006
CVE-2018-21063
An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.x) (Exynos chipsets) software. Keymaster has an architectural problem because tlApi in TEE is not properly protected. The Samsung ID is SVE-2018-11792 (August 2018).
Published 2020-04-08 · Modified
10.0EPSS 0.006
CVE-2020-0342
There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-160812576
Published 2020-09-17 · Modified
10.0EPSS 0.006
CVE-2020-0229
There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-156333725
Published 2020-09-17 · Modified
10.0EPSS 0.006
CVE-2020-0278
There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-160812574
Published 2020-09-17 · Modified
10.0EPSS 0.006
CVE-2020-10848
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos 9810 chipsets) software. Arbitrary memory mapping exists in TEE. The Samsung ID is SVE-2019-16665 (February 2020).
Published 2020-03-24 · Modified
10.0EPSS 0.006
CVE-2018-21049
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.X) (Exynos chipsets) software. There is an arbitrary memory write in a Trustlet because a secure driver allows access to sensitive APIs. The Samsung ID is SVE-2018-12881 (November 2018).
Published 2020-04-08 · Modified
10.0EPSS 0.006
CVE-2019-20545
An issue was discovered on Samsung mobile devices with O(8.x) and P(9.0) (Exynos chipsets) software. A buffer overflow in the HDCP Trustlet affects secure TEEGRIS memory. The Samsung ID is SVE-2019-15283 (November 2019).
Published 2020-03-24 · Modified
10.0EPSS 0.006
CVE-2019-20605
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) (Exynos chipsets) software. A heap overflow occurs for baseband in the Shannon modem. The Samsung ID is SVE-2019-14071 (May 2019).
Published 2020-03-24 · Modified
10.0EPSS 0.006
CVE-2018-21057
An issue was discovered on Samsung mobile devices with N(7.x) O(8.x, and P(9.0) (Exynos chipsets) software. There is a stack-based buffer overflow in the Shannon Baseband. The Samsung ID is SVE-2018-12757 (September 2018).
Published 2020-04-08 · Modified
10.0EPSS 0.006
CVE-2018-21066
An issue was discovered on Samsung mobile devices with M(6.0) (Exynos or MediaTek chipsets) software. There is a buffer overflow in a Trustlet that can cause memory corruption. The Samsung ID is SVE-2018-11599 (July 2018).
Published 2020-04-08 · Modified
10.0EPSS 0.006
CVE-2018-21090
An issue was discovered on Samsung mobile devices with software through 2017-11-03 (S.LSI modem chipsets). The Exynos modem chipset has a baseband buffer overflow. The Samsung ID is SVE-2017-10745 (January 2018).
Published 2020-04-08 · Modified
10.0EPSS 0.006
CVE-2022-20216
android exported is used to set third-party app access permissions, and the default value of intent-filter is true. com.sprd.firewall has set exported as true.Product: AndroidVersions: Android SoCAndroid ID: A-231911916
Published 2022-07-13 · Modified
10.0EPSS 0.005
CVE-2022-20238
'remap_pfn_range' here may map out of size kernel memory (for example, may map the kernel area), and because the 'vma->vm_page_prot' can also be controlled by userspace, so userspace may map the kernel area to be writable, which is easy to be exploitedProduct: AndroidVersions: Android SoCAndroid ID: A-233154555
Published 2022-07-13 · Modified
10.0EPSS 0.005
CVE-2021-39645
Product: AndroidVersions: Android kernelAndroid ID: A-199805112References: N/A
Published 2021-12-15 · Modified
10.0EPSS 0.005
CVE-2021-0324
Product: AndroidVersions: Android SoCAndroid ID: A-175402462
Published 2021-06-14 · Modified
10.0EPSS 0.005
CVE-2022-20191
Product: AndroidVersions: Android kernelAndroid ID: A-209324757References: N/A
Published 2022-06-15 · Modified
10.0EPSS 0.005
CVE-2022-20171
Product: AndroidVersions: Android kernelAndroid ID: A-215565667References: N/A
Published 2022-06-15 · Modified
10.0EPSS 0.005
← Prev15 / 240Next →