Every CVE whose affected-product data names Google Android, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (200)
CVE-2015-6610 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48X and 6.0 before 2015-11-01 allows attackers to gain privileges or cause a denial of service…
CVE-2015-6676 — CVSS 10.0 (critical): Buffer overflow in Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux…
CVE-2015-6682 — CVSS 10.0 (critical): Use-after-free vulnerability in Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521…
CVE-2015-5584 — CVSS 10.0 (critical): Use-after-free vulnerability in Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521…
CVE-2015-7716 — CVSS 10.0 (critical): libstagefright in Android 5.x before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-6609 — CVSS 10.0 (critical): libutils in Android before 5.1.1 LMY48X and 6.0 before 2015-11-01 allows remote attackers to execute arbitrary code or cause a denial of…
CVE-2015-5582 — CVSS 10.0 (critical): Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before…
CVE-2015-5581 — CVSS 10.0 (critical): Use-after-free vulnerability in Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521…
CVE-2015-6678 — CVSS 10.0 (critical): Buffer overflow in Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux…
CVE-2015-5580 — CVSS 10.0 (critical): Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before…
CVE-2015-8072 — CVSS 10.0 (critical): mediaserver in Android 4.4 through 5.x before 5.1.1 LMY48X and 6.0 before 2015-11-01 allows remote attackers to execute arbitrary code or…
CVE-2015-3873 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-3872 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-5578 — CVSS 10.0 (critical): Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before…
CVE-2015-6608 — CVSS 10.0 (critical): mediaserver in Android 5.x before 5.1.1 LMY48X and 6.0 before 2015-11-01 allows remote attackers to execute arbitrary code or cause a…
CVE-2015-3871 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-6604 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-3870 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-5577 — CVSS 10.0 (critical): Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before…
CVE-2026-0092: In Package Manager, there is a possible device lock controller bypass due to a missing permission check. This could lead to local…
CVE-2015-6677 — CVSS 10.0 (critical): Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before…
CVE-2025-48611 — CVSS 10.0 (critical): In DeviceId of DeviceId.java, there is a possible desync in persistence due to a missing bounds check. This could lead to local escalation…
CVE-2015-5575 — CVSS 10.0 (critical): Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before…
CVE-2015-3869 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-5573 — CVSS 10.0 (critical): Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before…
CVE-2015-6603 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-6601 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-6600 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-6599 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-5570 — CVSS 10.0 (critical): Use-after-free vulnerability in Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521…
CVE-2015-5568 — CVSS 10.0 (critical): Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before…
CVE-2015-6598 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-3868 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-5567 — CVSS 10.0 (critical): Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before…
CVE-2015-3877 — CVSS 10.0 (critical): Skia, as used in Android before 5.1.1 LMY48T, allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-3867 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-3864 — CVSS 10.0 (critical): Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android before 5.1.1…
CVE-2015-3836 — CVSS 10.0 (critical): The Parse_wave function in arm-wt-22k/lib_src/eas_mdls.c in the Sonivox DLS-to-EAS converter in Android before 5.1.1 LMY48I does not reject…
CVE-2015-3834 — CVSS 10.0 (critical): Multiple integer overflows in the BnHDCP::onTransact function in media/libmedia/IHDCP.cpp in libstagefright in Android before 5.1.1 LMY48I…
CVE-2015-3832 — CVSS 10.0 (critical): Multiple buffer overflows in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I allow remote attackers to execute…
CVE-2015-3829 — CVSS 10.0 (critical): Off-by-one error in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I allows…
CVE-2011-2344 — CVSS 10.0 (critical): Android Picasa in Android 3.0 and 2.x through 2.3.4 uses a cleartext HTTP session when transmitting the authToken obtained from…
CVE-2015-3875 — CVSS 10.0 (critical): libutils in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption)…
CVE-2015-3874 — CVSS 10.0 (critical): The Sonivox components in Android before 5.1.1 LMY48T allow remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-3828 — CVSS 10.0 (critical): The MPEG4Extractor::parse3GPPMetaData function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I does not enforce a…
CVE-2015-3824 — CVSS 10.0 (critical): The MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I does not properly restrict…
CVE-2015-1474 — CVSS 10.0 (critical): Multiple integer overflows in the GraphicBuffer::unflatten function in platform/frameworks/native/libs/ui/GraphicBuffer.cpp in Android…
CVE-2015-8073 — CVSS 10.0 (critical): mediaserver in Android 4.4 and 5.1 before 5.1.1 LMY48X allows remote attackers to execute arbitrary code or cause a denial of service…
CVE-2015-6575 — CVSS 10.0 (critical): SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I does not properly consider integer promotion, which allows remote…
CVE-2015-3823 — CVSS 10.0 (critical): libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory…
CVE-2015-3107 — CVSS 10.0 (critical): Use-after-free vulnerability in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before…
CVE-2015-3106 — CVSS 10.0 (critical): Use-after-free vulnerability in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before…
CVE-2015-3105 — CVSS 10.0 (critical): Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe…
CVE-2014-7915 — CVSS 10.0 (critical): Integer overflow in SampleTable.cpp in libstagefright in Android before 5.0.0 has unspecified impact and attack vectors, aka internal bug…
CVE-2015-3104 — CVSS 10.0 (critical): Integer overflow in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before…
CVE-2015-3103 — CVSS 10.0 (critical): Use-after-free vulnerability in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before…
CVE-2015-3100 — CVSS 10.0 (critical): Stack-based buffer overflow in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before…
CVE-2014-7916 — CVSS 10.0 (critical): Integer overflow in SampleTable.cpp in libstagefright in Android before 5.0.0 has unspecified impact and attack vectors, aka internal bug…
CVE-2015-1539 — CVSS 10.0 (critical): Multiple integer underflows in the ESDS::parseESDescriptor function in ESDS.cpp in libstagefright in Android before 5.1.1 LMY48I allow…
CVE-2015-1538 — CVSS 10.0 (critical): Integer overflow in the SampleTable::setSampleToChunkParams function in SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I…
CVE-2014-7917 — CVSS 10.0 (critical): Integer overflow in SampleTable.cpp in libstagefright in Android before 5.0.0 has unspecified impact and attack vectors, aka internal bug…
CVE-2015-5588 — CVSS 10.0 (critical): Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before…
CVE-2014-9968 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in the UIMDIAG…
CVE-2022-20122 — CVSS 9.8 (critical): The PowerVR GPU driver allows unprivileged apps to allocated pinned memory, unpin it (which makes it available to be freed), and continue…
CVE-2014-9969 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, the GPS client may use an insecure cryptographic algorithm.
CVE-2014-9971 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, disabling asserts causes an instruction inside of an assert…
CVE-2014-9972 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, disabling asserts can potentially cause a NULL pointer…
CVE-2016-1155 — CVSS 9.8 (critical): HTTP header injection vulnerability in the URLConnection class in Android OS 2.2 through 6.0 allows remote attackers to execute arbitrary…
CVE-2020-10836 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos chipsets) software. The Widevine Trustlet allows…
CVE-2024-32905 — CVSS 9.8 (critical): In circ_read of link_device_memory_legacy.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to…
CVE-2016-1503 — CVSS 9.8 (critical): dhcpcd before 6.10.0, as used in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 and other…
CVE-2026-0006 — CVSS 9.8 (critical): In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow. This could lead to remote code…
CVE-2020-0471 — CVSS 9.8 (critical): In reassemble_and_dispatch of packet_fragmenter.cc, there is a possible way to inject packets into an encrypted Bluetooth connection due to…
CVE-2024-32911 — CVSS 9.8 (critical): There is a possible escalation of privilege due to improperly used crypto. This could lead to remote escalation of privilege with no…
CVE-2024-32913 — CVSS 9.8 (critical): In wl_notify_rx_mgmt_frame of wl_cfg80211.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote…
CVE-2020-0457 — CVSS 9.8 (critical): There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-170367562
CVE-2020-0456 — CVSS 9.8 (critical): There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-170378843
CVE-2016-1621 — CVSS 9.8 (critical): libvpx in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.0 before 2016-03-01 allows remote attackers to execute…
CVE-2014-9973 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, validation of a buffer length was missing in a PlayReady…
CVE-2014-9974 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, validation of buffer lengths was missing in Keymaster.
CVE-2014-9975 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, a rollback vulnerability potentially exists in Full Disk…
CVE-2020-0455 — CVSS 9.8 (critical): There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-170372514
CVE-2020-0452 — CVSS 9.8 (critical): In exif_entry_get_value of exif-entry.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code…
CVE-2014-9976 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in 1x call…
CVE-2014-9977 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in PlayReady DRM.
CVE-2014-9978 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a QTEE service.
CVE-2016-2108 — CVSS 9.8 (critical): The ASN.1 implementation in OpenSSL before 1.0.1o and 1.0.2 before 1.0.2c allows remote attackers to execute arbitrary code or cause a…
CVE-2023-35646 — CVSS 9.8 (critical): In TBD of TBD, there is a possible stack buffer overflow due to a missing bounds check. This could lead to remote code execution with no…
CVE-2023-35647 — CVSS 9.8 (critical): In ProtocolEmbmsGlobalCellIdAdapter::Init() of protocolembmsadapter.cpp, there is a possible out of bounds read due to a missing bounds…
CVE-2014-9979 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, a variable is uninitialized in a TrustZone system call…
CVE-2014-9980 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, a Sample App failed to check a length potentially leading…
CVE-2023-35648 — CVSS 9.8 (critical): In ProtocolMiscLceIndAdapter::GetConfLevel() of protocolmiscadapter.cpp, there is a possible out of bounds read due to a missing bounds…
CVE-2016-2416 — CVSS 9.8 (critical): libs/gui/BufferQueueConsumer.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before…
CVE-2016-2417 — CVSS 9.8 (critical): media/libmedia/IOMX.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does…
CVE-2020-0447 — CVSS 9.8 (critical): There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-168251617
CVE-2020-0446 — CVSS 9.8 (critical): There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-168264528
CVE-2020-0445 — CVSS 9.8 (critical): There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-168264527
CVE-2016-2418 — CVSS 9.8 (critical): media/libmedia/IOMX.cpp in mediaserver in Android 6.x before 2016-04-01 does not initialize certain metadata buffer pointers, which allows…
CVE-2016-2419 — CVSS 9.8 (critical): media/libmedia/IDrm.cpp in mediaserver in Android 6.x before 2016-04-01 does not initialize a certain key-request data structure, which…
CVE-2014-9981 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, an overflow check in the USB interface was insufficient…
CVE-2023-35662 — CVSS 9.8 (critical): there is a possible out of bounds write due to buffer overflow. This could lead to remote code execution with no additional execution…
CVE-2015-0574 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, the validation of filesystem access was insufficient.
CVE-2020-0380 — CVSS 9.8 (critical): In allocExcessBits of bitalloc.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code…
CVE-2021-39815 — CVSS 9.8 (critical): The PowerVR GPU driver allows unprivileged apps to allocated pinned memory, unpin it (which makes it available to be freed), and continue…
CVE-2015-0575 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, insecure ciphersuites were included in the default…
CVE-2016-2428 — CVSS 9.8 (critical): libAACdec/src/aacdec_drc.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01…
CVE-2016-2429 — CVSS 9.8 (critical): libFLAC/stream_decoder.c in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does…
CVE-2023-35681 — CVSS 9.8 (critical): In eatt_l2cap_reconfig_completed of eatt_impl.h, there is a possible out of bounds write due to an integer overflow. This could lead to…
CVE-2016-10299 — CVSS 9.8 (critical): An elevation of privilege vulnerability in Qualcomm closed source components. Product: Android. Versions: Android kernel. Android ID…
CVE-2022-20216 — CVSS 9.8 (critical): android exported is used to set third-party app access permissions, and the default value of intent-filter is true. com.sprd.firewall has…
CVE-2022-20210 — CVSS 9.8 (critical): The UE and the EMM communicate with each other using NAS messages. When a new NAS message arrives from the EMM, the modem parses it and…
CVE-2020-25062 — CVSS 9.8 (critical): An issue was discovered on LG mobile devices with Android OS 9 and 10 software. LGTelephonyProvider allows a bypass of intended privilege…
CVE-2020-25061 — CVSS 9.8 (critical): An issue was discovered on LG mobile devices with Android OS 9 and 10 software on the VZW network. lge_property allows property overwrites…
CVE-2014-4959 — CVSS 9.8 (critical): **DISPUTED** SQL injection vulnerability in SQLiteDatabase.java in the SQLi Api in Android allows remote attackers to execute arbitrary SQL…
CVE-2016-10343 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, sSL handshake failure with ClientHello rejection results in…
CVE-2016-10344 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, the use of an out-of-range pointer offset is potentially…
CVE-2016-10346 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow vulnerability exists in the hypervisor.
CVE-2016-10347 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, an argument to a hypervisor function is not properly…
CVE-2016-10380 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, the UE can send unprotected MeasurementReports revealing UE…
CVE-2016-10381 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, the UE can send unprotected MeasurementReports revealing UE…
CVE-2020-25058 — CVSS 9.8 (critical): An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9, and 10 software. The network_management service does not properly…
CVE-2020-25057 — CVSS 9.8 (critical): An issue was discovered on LG mobile devices with Android OS 10 software. MDMService does not properly restrict APK installations. The LG…
CVE-2020-25055 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The persona service allows attackers (who…
CVE-2020-25053 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. RKP allows arbitrary code execution. The…
CVE-2020-25052 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. H-Arx allows attackers to execute arbitrary…
CVE-2016-10382 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, access control to the I2C bus is not sufficient.
CVE-2020-25049 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. StatusBarService has insufficient DEX access control…
CVE-2020-13841 — CVSS 9.8 (critical): An issue was discovered on LG mobile devices with Android OS 9 and 10 (MTK chipsets). An AT command handler allows attackers to bypass…
CVE-2020-13840 — CVSS 9.8 (critical): An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can occur via an MTK…
CVE-2020-13839 — CVSS 9.8 (critical): An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can occur via a custom…
CVE-2016-10384 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, an assertion was potentially reachable in a WLAN driver…
CVE-2020-13835 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with O(8.x) (with TEEGRIS) software. The Gatekeeper Trustlet allows a brute-force attack…
CVE-2016-10385 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, a use-after-free vulnerability exists in IMS RCS.
CVE-2016-10386 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, an array index out of bounds vulnerability exists in LPP.
CVE-2016-10387 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, an assertion was potentially reachable in a handover…
CVE-2016-10388 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, a configuration vulnerability exists when loading a…
CVE-2016-10390 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, when downloading a file, an excessive amount of memory may…
CVE-2016-10391 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, the length in an HCI command is not properly checked for…
CVE-2016-10392 — CVSS 9.8 (critical): In all Qualcomm products with Android releases from CAF using the Linux kernel, a driver can potentially leak kernel memory.
CVE-2016-10393 — CVSS 9.8 (critical): In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when processing a clip with…
CVE-2016-11025 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with software through 2016-09-13 (Exynos AP chipsets). There is a memcpy heap-based…
CVE-2020-13832 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with Q(10.0) (with TEEGRIS on Exynos chipsets) software. The Widevine Trustlet allows…
CVE-2020-13831 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with O(8.x) and P(9.0) (Exynos 7570 chipsets) software. The Trustonic Kinibi component…
CVE-2020-12753 — CVSS 9.8 (critical): An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. Arbitrary code execution can occur via the…
CVE-2020-12747 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos980 9630 and Exynos990 9830 chipsets) software. The Bootloader has a…
CVE-2020-12746 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with O(8.X), P(9.0), and Q(10.0) (Exynos chipsets) software. Attackers can bypass the…
CVE-2020-11873 — CVSS 9.8 (critical): An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. A stack-based buffer overflow in the…
CVE-2020-11603 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (incorporating TEEGRIS) software. Type confusion in the MLDAP…
CVE-2020-11600 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with Q(10.0) software. There is arbitrary code execution in the Fingerprint Trustlet via…
CVE-2020-10850 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos chipsets) software. The secure bootloade has a…
CVE-2016-11028 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with software through 2016-09-13 (Exynos AP chipsets). There is a stack-based buffer…
CVE-2020-10849 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos7885, Exynos8895, and Exynos9810 chipsets)…
CVE-2020-10848 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos 9810 chipsets) software. Arbitrary memory…
CVE-2016-11033 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with M(6.0) software. There is a heap-based buffer overflow in tlc_server. The Samsung…
CVE-2022-20145 — CVSS 9.8 (critical): In startLegacyVpnPrivileged of Vpn.java, there is a possible way to retrieve VPN credentials due to a protocol downgrade attack. This could…
CVE-2016-11036 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with M(6.0) software. There is a Factory Reset Protection (FRP) bypass. The Samsung ID is…
CVE-2016-11038 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with software through 2016-04-05 (incorporating the Samsung Professional Audio SDK). The…
CVE-2022-20140 — CVSS 9.8 (critical): In read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote…
CVE-2020-10837 — CVSS 9.8 (critical): An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (with TEEGRIS) software. The Esecomm Trustlet allows a stack…
CVE-2022-20130 — CVSS 9.8 (critical): In transportDec_OutOfBandConfig of tpdec_lib.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to…
CVE-2022-20127 — CVSS 9.8 (critical): In ce_t4t_data_cback of ce_t4t.cc, there is a possible out of bounds write due to a double free. This could lead to remote code execution…
CVE-2023-35690 — CVSS 9.8 (critical): In RGXDestroyHWRTData of rgxta3d.c, there is a possible arbitrary code execution due to an uncaught exception. This could lead to local…
CVE-2023-40078 — CVSS 9.8 (critical): In a2dp_vendor_opus_decoder_decode_packet of a2dp_vendor_opus_decoder.cc, there is a possible out of bounds write due to a heap buffer…
CVE-2026-49921 — CVSS 9.8 (critical): In multiple locations, there is a possible memory safety issue due to a heap buffer overflow. This could lead to remote code execution with…
CVE-2020-0354 — CVSS 9.8 (critical): In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no…
CVE-2020-0342 — CVSS 9.8 (critical): There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-160812576
CVE-2014-7920 — CVSS 9.8 (critical): mediaserver in Android 2.2 through 5.x before 5.1 allows attackers to gain privileges. NOTE: This is a different vulnerability than…
CVE-2016-2473 — CVSS 9.8 (critical): The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted…
CVE-2017-0807 — CVSS 9.8 (critical): An elevation of privilege vulnerability in the Android framework (ui framework). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0…
CVE-2020-0333 — CVSS 9.8 (critical): In UrlQuerySanitizer, there is a possible improper input validation. This could lead to remote code execution with no additional execution…
CVE-2017-0822 — CVSS 9.8 (critical): An elevation of privilege vulnerability in the Android system (camera). Product: Android. Versions: 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android…
CVE-2017-0824 — CVSS 9.8 (critical): An elevation of privilege vulnerability in the Broadcom wifi driver. Product: Android. Versions: Android kernel. Android ID: A-37622847…
CVE-2017-0828 — CVSS 9.8 (critical): An elevation of privilege vulnerability in the Huawei bootloader. Product: Android. Versions: Android kernel. Android ID: A-34622855.
CVE-2017-0829 — CVSS 9.8 (critical): An elevation of privilege vulnerability in the Motorola bootloader. Product: Android. Versions: Android kernel. Android ID: A-62345044.
CVE-2023-21130 — CVSS 9.8 (critical): In btm_ble_periodic_adv_sync_lost of btm_ble_gap.cc, there is a possible remote code execution due to a buffer overflow. This could lead to…
CVE-2014-7921 — CVSS 9.8 (critical): mediaserver in Android 4.0.3 through 5.x before 5.1 allows attackers to gain privileges. NOTE: This is a different vulnerability than…
CVE-2024-43091 — CVSS 9.8 (critical): In filterMask of SkEmbossMaskFilter.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote code…
CVE-2023-21162 — CVSS 9.8 (critical): In RGXUnbackingZSBuffer of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could lead to local…
CVE-2023-21163 — CVSS 9.8 (critical): In PMR_ReadBytes of pmr.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of…
CVE-2022-20532 — CVSS 9.8 (critical): In parseTrackFragmentRun() of MPEG4Extractor.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to…
CVE-2020-0278 — CVSS 9.8 (critical): There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-160812574
CVE-2017-0847 — CVSS 9.8 (critical): An elevation of privilege vulnerability in the Android media framework (mediaanalytics). Product: Android. Versions: 8.0. Android ID…
CVE-2023-21164 — CVSS 9.8 (critical): In DevmemIntMapPMR of devicemem_server.c, there is a possible arbitrary code execution due to a use after free. This could lead to local…
CVE-2020-0253 — CVSS 9.8 (critical): There is a possible memory corruption due to a use after free.Product: AndroidVersions: Android SoCAndroid ID: A-152647365
CVE-2020-0252 — CVSS 9.8 (critical): There is a possible memory corruption due to a use after free.Product: AndroidVersions: Android SoCAndroid ID: A-152236803
CVE-2016-2496 — CVSS 9.8 (critical): The Framework UI permission-dialog implementation in Android 6.x before 2016-06-01 allows attackers to conduct tapjacking attacks and…
CVE-2023-40082 — CVSS 9.8 (critical): In modify_for_next_stage of fdt.rs, there is a possible way to render KASLR ineffective due to improperly used crypto. This could lead to…