Google Android
223 known vulnerabilities in Google Android, 6 critical, 13 actively exploited, with patch priority, exploit likelihood and the news covering them.
Recently exploited
- CVE-2026-58704 CVSS 8.8 high · actively exploited Google Pixel Improper Authorization Vulnerability
- CVE-2025-48595 CVSS 8.4 high · actively exploited Android Framework Integer Overflow Vulnerability
- CVE-2025-48633 CVSS 5.5 medium · actively exploited Android Framework Information Disclosure Vulnerability
- CVE-2025-48572 CVSS 7.8 high · actively exploited Android Framework Privilege Escalation Vulnerability
- CVE-2025-48543 CVSS 8.8 high · actively exploited Android Runtime Use-After-Free Vulnerability
- CVE-2024-43093 CVSS 7.3 high · actively exploited Android Framework Privilege Escalation Vulnerability
- CVE-2024-32896 CVSS 7.8 high · actively exploited Android Pixel Privilege Escalation Vulnerability
- CVE-2024-29748 CVSS 7.8 high · actively exploited Android Pixel Privilege Escalation Vulnerability
- CVE-2024-29745 CVSS 5.5 medium · actively exploited Android Pixel Information Disclosure Vulnerability
- CVE-2023-35674 CVSS 7.8 high · actively exploited Android Framework Privilege Escalation Vulnerability
Latest vulnerabilities
- CVE-2026-58880 not yet scored In handle_app_val_response of btif_rc.cc, there is a possible way to achieve code execution due to a race condition. This could lead to…
- CVE-2026-58865 CVSS 7.5 high In multiple functions of PduParser.java, there is a possible persistent denial of service due to a missing bounds check. This could lead…
- CVE-2026-58859 not yet scored In multiple places, there is a possible denial of service due to an uncaught exception. This could lead to local escalation of privilege…
- CVE-2026-58856 not yet scored In returnOutputBufferLocked of DeprecatedCamera3StreamSplitter.cpp, there is a possible out-of-bounds read due to a missing bounds check…
- CVE-2026-58854 not yet scored In multiple locations, there is a possible memory corruption due to type confusion. This could lead to local escalation of privilege with…
- CVE-2026-58841 not yet scored In multiple functions of VirtualAudioControllerTest.java, there is a possible permission bypass due to a logic error in the code. This…
- CVE-2026-58835 not yet scored In cfg2prop of btif_storage.cc, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote code…
- CVE-2026-58834 not yet scored In setPermissionGrantState of DevicePolicyManagerService.java, there is a possible persistent denial of service due to improper input…
- CVE-2026-58815 not yet scored In multiple locations, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of…
- CVE-2026-55286 not yet scored In stpropnci_process of stpropnci.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local…
- CVE-2026-55280 not yet scored In multiple locations, there is a possible out-of-bounds write due to uninitialized data. This could lead to remote escalation of…
- CVE-2026-55270 not yet scored In dialInternal in multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation…
- CVE-2026-55269 not yet scored In FilterCapturedPacket of snoop_logger.cc, there is a possible memory safety issue due to improper input validation. This could lead to…
- CVE-2026-55266 not yet scored In qsort of libufdt_sysdeps_vendor.c, there is a possible out-of-bounds write due to resource exhaustion. This could lead to local…
- CVE-2026-55265 not yet scored In multiple functions of PduParser.java, there is a possible out of bounds read due to a missing bounds check. This could lead to a remote…
- CVE-2026-49937 not yet scored In multiple functions of MessageQueueBase.h, there is a possible out of bounds read due to an incorrect bounds check. This could lead to…
- CVE-2026-49933 not yet scored In handle_le_monitor_device_event of msft.cc, there is a possible control-flow hijack in the privileged bluetooth process due to an…
- CVE-2026-49885 not yet scored In rw_t4t_update_file of rw_t4t.cc, there is a possible out-of-bounds write due to an integer overflow. This could lead to local…
- CVE-2026-49880 not yet scored In multiple functions of nfa_nfcee_act.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local…
- CVE-2026-49878 not yet scored In wpas_handle_robust_av_scs_recv_action of robust_av.c, there is a possible out-of-bounds write due to a logic error in the code. This…
- CVE-2026-45524 not yet scored In isSystem of WifiPermissionsUtil.java, there is a possible sandbox escape due to a missing permission check. This could lead to local…
- CVE-2026-28667 not yet scored In multiple functions of rw_t5t.cc, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local…
- CVE-2026-28648 not yet scored In Settings, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no…
- CVE-2026-28647 not yet scored In updateState of DeviceAdminAppsPreferenceController.java, there is a possible permission bypass due to a logic error in the code. This…
- CVE-2026-28641 not yet scored In shouldDisableUninstallButton of ApplicationActionButtonsPreferenceController.java, there is a possible permission bypass due to a logic…
- CVE-2026-28640 not yet scored In checkCallerIsCertInstallerOrSelfInProfile of CredentialStorageActivity.java, there is a possible permission bypass due to improper…
- CVE-2026-28625 not yet scored In multiple locations, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of…
- CVE-2026-58773 CVSS 6.7 medium In link_load_gnss_image of link_device.c, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local…
- CVE-2026-58767 CVSS 6.7 medium In multiple functions of arm-smmu-v3.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to…
- CVE-2026-58766 CVSS 7.8 high In multiple functions of arm-smmu-v3.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to…