VendorsGoogleandroidany version
Vulnerabilities

Google Android any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3688CVEs
CVE-2021-0654
In isRealSnapshot of TaskThumbnailView.java, there is possible data exposure due to a missing permission check. This could lead to local information disclosure from locked profiles with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-168802517References: N/A
Published 2021-07-14 · Modified
5.5EPSS 0.003
CVE-2016-8462
An information disclosure vulnerability in the bootloader could enable a local attacker to access data outside of its permission level. This issue is rated as High because it could be used to access sensitive data. Product: Android. Versions: N/A. Android ID: A-32510383.
Published 2017-01-12 · Modified
5.5EPSS 0.003
CVE-2017-7366
In all Android releases from CAF using the Linux kernel, a KGSL ioctl was not validating all of its parameters.
Published 2017-06-13 · Modified
5.5EPSS 0.003
CVE-2017-8235
In all Android releases from CAF using the Linux kernel, a memory structure in a camera driver is not properly protected.
Published 2017-06-13 · Modified
5.5EPSS 0.003
CVE-2026-34657
CAI Content Credentials | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)
Published 2026-06-09 · Analyzed
5.5EPSS 0.003
CVE-2025-9677
Modo Legend of the Phoenix com.duige.hzw.multilingual AndroidManifest.xml improper export of android application components
Published 2025-08-29 · Analyzed
5.5EPSS 0.003
CVE-2025-9674
Transbyte Scooper News App com.hatsune.eagleee AndroidManifest.xml improper export of android application components
Published 2025-08-29 · Analyzed
5.5EPSS 0.003
CVE-2022-20604
In SAECOMM_SetDcnIdForPlmn of SAECOMM_DbManagement.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure from a single device with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-230463606References: N/A
Published 2022-12-16 · Modified
5.5EPSS 0.003
CVE-2025-9675
Voice Changer App com.tuyangkeji.changevoice AndroidManifest.xml improper export of android application components
Published 2025-08-29 · Analyzed
5.5EPSS 0.003
CVE-2018-3574
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, userspace can request ION cache maintenance on a secure ION buffer for which the ION_FLAG_SECURE ion flag is not set and cause the kernel to attempt to perform cache maintenance on memory which does not belong to HLOS.
Published 2018-09-19 · Modified
5.5EPSS 0.003
CVE-2015-1525
audio/AudioPolicyManagerBase.cpp in Android before 5.1 allows attackers to cause a denial of service (audio_policy application outage) via a crafted application that provides a NULL device address.
Published 2020-01-24 · Modified
5.5EPSS 0.003
CVE-2019-9465
In the Titan M handling of cryptographic operations, there is a possible information disclosure due to an unusual root cause. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-10 Android ID: A-133258003
Published 2020-01-07 · Modified
5.5EPSS 0.003
CVE-2026-48353
CAI Content Credentials | Improper Input Validation (CWE-20)
Published 2026-07-14 · Analyzed
5.5EPSS 0.003
CVE-2020-0404
In uvc_scan_chain_forward of uvc_driver.c, there is a possible linked list corruption due to an unusual root cause. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-111893654References: Upstream kernel
Published 2020-09-17 · Modified
5.5EPSS 0.002
CVE-2021-34405
NVIDIA Linux distributions contain a vulnerability in TrustZone’s TEE_Malloc function, where an unchecked return value causing a null pointer dereference may lead to denial of service.
Published 2022-01-18 · Modified
5.5EPSS 0.002
CVE-2025-9695
GalleryVault Gallery Vault App com.thinkyeah.galleryvault AndroidManifest.xml improper export of android application components
Published 2025-08-30 · Analyzed
5.5EPSS 0.002
CVE-2022-43477
Incomplete cleanup for some Intel Unison software may allow an authenticated user to potentially enable information disclosure via local access.
Published 2023-11-14 · Modified
5.5EPSS 0.002
CVE-2022-43666
Exposure of sensitive system information due to uncleared debug information for some Intel Unison software may allow an authenticated user to potentially enable information disclosure via local access.
Published 2023-11-14 · Modified
5.5EPSS 0.002
CVE-2022-45109
Improper initialization for some Intel Unison software may allow an authenticated user to potentially enable information disclosure via local access.
Published 2023-11-14 · Modified
5.5EPSS 0.002
CVE-2022-46299
Insufficient control flow management for some Intel Unison software may allow an authenticated user to potentially enable information disclosure via local access.
Published 2023-11-14 · Modified
5.5EPSS 0.002
CVE-2015-3840
The MessageStatusReceiver service in the AndroidManifest.XML in Android 5.1.1 and earlier allows local users to alter sent/received statuses of SMS and MMS messages without the associated "WRITE_SMS" permission.
Published 2017-06-27 · Modified
5.5EPSS 0.002
CVE-2018-11280
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing user-space there is no size validation of the NAT entry input. If the user input size of the NAT entry is greater than the max allowed size, memory exhaustion will occur.
Published 2018-09-18 · Modified
5.5EPSS 0.002
CVE-2018-11275
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, when flashing image using FastbootLib if size is not divisible by block size, information leak occurs.
Published 2018-09-18 · Modified
5.5EPSS 0.002
CVE-2022-20591
In ppmpu_set of ppmpu.c, there is a possible information disclosure due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-238939706References: N/A
Published 2022-12-16 · Modified
5.5EPSS 0.002
CVE-2022-46646
Exposure of sensitive information to an unauthorized actor for some Intel Unison software may allow an authenticated user to potentially enable information disclosure via local access.
Published 2023-11-14 · Modified
5.5EPSS 0.002
CVE-2022-46647
Insertion of sensitive information into log file for some Intel Unison software may allow an authenticated user to potentially enable information disclosure via local access.
Published 2023-11-14 · Modified
5.5EPSS 0.002
CVE-2017-9693
The length of attribute value for STA_EXT_CAPABILITY in __wlan_hdd_change_station in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-06-06 being less than the actual lenth of StaParams.extn_capability results in a read for extra bytes when a memcpy is done from params->ext_capab to StaParams.extn_capability using the sizeof(StaParams.extn_capability).
Published 2018-03-30 · Modified
5.5EPSS 0.002
CVE-2021-39633
In gre_handle_offloads of ip_gre.c, there is a possible page fault due to an invalid memory access. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-150694665References: Upstream kernel
Published 2022-01-14 · Modified
5.5EPSS 0.002
CVE-2019-2001
The permissions on /proc/iomem were world-readable. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android kernel. Android ID: A-117422211.
Published 2019-02-28 · Modified
5.5EPSS 0.002
CVE-2018-5836
In wma_nan_rsp_event_handler() in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, the data_len value is received from firmware and not properly validated which could potentially lead to an out-of-bounds access.
Published 2018-07-06 · Modified
5.5EPSS 0.002
CVE-2018-5865
While processing a debug log event from firmware in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, an integer underflow and/or buffer over-read can occur.
Published 2018-07-06 · Modified
5.5EPSS 0.002
CVE-2018-5864
While processing a WMI_APFIND event in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, a buffer over-read and information leak can potentially occur.
Published 2018-07-06 · Modified
5.5EPSS 0.002
CVE-2022-20574
In sec_sysmmu_info of drm_fw.c, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-237582191References: N/A
Published 2022-12-16 · Modified
5.5EPSS 0.002
CVE-2022-20575
In read_ppmpu_info of drm_fw.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-237585040References: N/A
Published 2022-12-16 · Modified
5.5EPSS 0.002
CVE-2022-20590
In valid_va_sec_mfc_check of drm_access_control.c, there is a possible information disclosure due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-238932493References: N/A
Published 2022-12-16 · Modified
5.5EPSS 0.002
CVE-2022-20592
In ppmp_validate_secbuf of drm_fw.c, there is a possible information disclosure due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-238976908References: N/A
Published 2022-12-16 · Modified
5.5EPSS 0.002
CVE-2020-0019
In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local information disclosure in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-171413798
Published 2020-12-14 · Modified
5.5EPSS 0.002
CVE-2017-18281
A bool variable in Video function, which gets typecasted to int before being read could result in an out of bound read access in all Android releases from CAF using the linux kernel
Published 2018-10-29 · Modified
5.5EPSS 0.002
CVE-2022-20570
Product: AndroidVersions: Android kernelAndroid ID: A-230660904References: N/A
Published 2022-12-16 · Modified
5.5EPSS 0.002
CVE-2017-15844
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing the function for writing device values into flash, uninitialized memory can be written to flash.
Published 2018-09-18 · Modified
5.5EPSS 0.002
← Prev77 / 93Next →