VendorsGoogleandroidall versions
Vulnerabilities

Google Android

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9581CVEs
CVE-2022-20191
Product: AndroidVersions: Android kernelAndroid ID: A-209324757References: N/A
Published 2022-06-15 · Modified
10.0EPSS 0.005
CVE-2015-0575
In all Qualcomm products with Android releases from CAF using the Linux kernel, insecure ciphersuites were included in the default configuration.
Published 2017-08-18 · Modified
10.0EPSS 0.005
CVE-2021-39720
Product: AndroidVersions: Android kernelAndroid ID: A-207433926References: N/A
Published 2022-03-16 · Modified
10.0EPSS 0.005
CVE-2021-39723
Product: AndroidVersions: Android kernelAndroid ID: A-209014813References: N/A
Published 2022-03-16 · Modified
10.0EPSS 0.005
CVE-2021-39710
Product: AndroidVersions: Android kernelAndroid ID: A-202160245References: N/A
Published 2022-03-16 · Modified
10.0EPSS 0.005
CVE-2021-39737
Product: AndroidVersions: Android kernelAndroid ID: A-208229524References: N/A
Published 2022-03-16 · Modified
10.0EPSS 0.005
CVE-2022-20170
Product: AndroidVersions: Android kernelAndroid ID: A-209421931References: N/A
Published 2022-06-15 · Modified
10.0EPSS 0.005
CVE-2022-20164
Product: AndroidVersions: Android kernelAndroid ID: A-204891956References: N/A
Published 2022-06-15 · Modified
10.0EPSS 0.005
CVE-2022-20167
Product: AndroidVersions: Android kernelAndroid ID: A-204956204References: N/A
Published 2022-06-15 · Modified
10.0EPSS 0.005
CVE-2022-20160
Product: AndroidVersions: Android kernelAndroid ID: A-210083655References: N/A
Published 2022-06-15 · Modified
10.0EPSS 0.005
CVE-2017-14907
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, cryptographic strength is reduced while deriving disk encryption key.
Published 2017-12-05 · Modified
10.0EPSS 0.005
CVE-2014-9975
In all Qualcomm products with Android releases from CAF using the Linux kernel, a rollback vulnerability potentially exists in Full Disk Encryption.
Published 2017-08-18 · Modified
10.0EPSS 0.004
CVE-2016-3747
Use-after-free vulnerability in the mm-video-v4l2 venc component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-07-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27903498.
Published 2016-07-11 · Modified
10.0EPSS 0.004
CVE-2013-7457
Unspecified vulnerability in the Qualcomm components in Android before 2016-07-05 allows attackers to gain privileges via a crafted application.
Published 2016-07-11 · Modified
10.0EPSS 0.004
CVE-2014-9969
In all Qualcomm products with Android releases from CAF using the Linux kernel, the GPS client may use an insecure cryptographic algorithm.
Published 2017-08-18 · Modified
10.0EPSS 0.004
CVE-2026-0092
In Package Manager, there is a possible device lock controller bypass due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-06-17 · Analyzed
10.0EPSS 0.002
CVE-2024-47038
In dhd_prot_flowrings_pool_release of dhd_msgbuf.c, there is a possible outcof bounds write due to a missing bounds check. This could lead to localcescalation of privilege with no additional execution privileges needed. Usercinteraction is not needed for exploitation.
Published 2024-12-18 · Analyzed
10.0EPSS 0.002
CVE-2024-47039
OOB Read in the android.hardware.boot.IBootControl/default service
Published 2024-12-18 · Analyzed
10.0EPSS 0.002
CVE-2025-48611
In DeviceId of DeviceId.java, there is a possible desync in persistence due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-03-10 · Analyzed
10.0EPSS 0.002
CVE-2026-28615
In Telecomm, there is a possible way to initiate an unauthorized phone call due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-06-17 · Analyzed
10.0EPSS 0.002
CVE-2026-28575
In PackageInstaller.Session#transfer of frameworks/base/services/core/java/com/android/server/pm/PackageInstallerSession.java, there is a possible memory exhaustion attack due to a logic error in the code. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-06-17 · Analyzed
10.0EPSS 0.002
CVE-2026-28576
In Contacts Provider, there is a possible way to access the contacts database due to SQL injection. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-06-17 · Analyzed
10.0EPSS 0.002
CVE-2024-47040
Use After Free in the android.hardware.radio.sap.ISap/slot2 service
Published 2024-12-18 · Analyzed
10.0EPSS 0.002
CVE-2026-28573
In AndroidManifest.xml, there is a possible persistent denial of service due to a missing permission check. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-06-18 · Modified
10.0EPSS 0.002
CVE-2026-49883
In checkReadPermission of PermissionsManager.java, there is a possible way to monitor sensitive device state data due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-09-08 · Analyzed
10.0EPSS 0.002
CVE-2026-28587
In MmsSmsProvider of MmsSmsProvider.java, there is a possible way to retrieve sensitive information due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-06-17 · Analyzed
10.0EPSS 0.002
CVE-2026-0082
In tryStartActivity of NfcDispatcher.java, there is a possible automatic special app access permission assignment due to an insecure default value. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-06-17 · Analyzed
10.0EPSS 0.002
CVE-2018-9416
In sg_remove_scat of scsi/sg.c, there is a possible memory corruption due to an unusual root cause. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
Published 2024-12-04 · Analyzed
10.0EPSS 0.002
CVE-2017-13322
In endCallForSubscriber of PhoneInterfaceManager.java, there is a possible way to prevent access to emergency services due to a logic error in the code. This could lead to a local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2025-01-17 · Modified
10.0EPSS 0.002
CVE-2026-0071
In SettingsLib, there is a possible missing permission check due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-06-17 · Analyzed
10.0EPSS 0.002
CVE-2026-0063
In setAllowedCarriers of PhoneInterfaceManager.java, there is a possible way to disable carrier restrictions due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-06-17 · Analyzed
10.0EPSS 0.002
CVE-2026-0081
In NFC, there is a possible way to spoof an NFC event due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-06-17 · Analyzed
10.0EPSS 0.001
CVE-2026-0124
There is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-03-10 · Analyzed
10.0EPSS 0.001
CVE-2026-0068
In createSessionInternal of PackageInstallerService.java, there is a possible method to remove a DPC app from a managed device without DO consent due to desync from persistence. This could lead to local escalation of privilege if a user can install a malicious app with no additional execution privileges needed. User interaction is needed for exploitation.
Published 2026-06-17 · Analyzed
10.0EPSS 0.001
CVE-2026-0064
In multiple places, there is a possible persistent denial of service due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-06-17 · Analyzed
10.0EPSS 0.001
CVE-2026-0083
In Nfc::eventCallback() of Nfc.h, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2026-06-17 · Analyzed
10.0EPSS 0.001
CVE-2016-0801
The Broadcom Wi-Fi driver in the kernel in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49G, and 6.x before 2016-02-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted wireless control message packets, aka internal bug 25662029.
Published 2016-02-07 · Modified
9.81 PoCEPSS 0.331
CVE-2016-4121
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.352 and 19.x through 21.x before 21.0.0.242 on Windows and OS X and before 11.2.202.621 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-1097, CVE-2016-1106, CVE-2016-1107, CVE-2016-1108, CVE-2016-1109, CVE-2016-1110, CVE-2016-4108, and CVE-2016-4110.
Published 2016-06-16 · Modified
9.8EPSS 0.100
CVE-2022-20473
In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12L Android-13Android ID: A-239267173
Published 2022-12-13 · Modified
9.8EPSS 0.089
CVE-2023-40077
In multiple functions of MetaDataBase.cpp, there is a possible UAF write due to a race condition. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Published 2023-12-04 · Modified
9.8EPSS 0.084
← Prev16 / 240Next →