Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Android Number Of NVD 6904 CRITICAL 484 HIGH 3022 MEDIUM 3149 LOW 241
URL https://www.android.com/
Explanation It is an operating system installed on smartphones provided by Google.
Since it is open source, many manufacturers use it in their smartphones, tablets, and wearable devices.

The support period differs for each development vendor.
After Google provides a security patch, it is up to the vendor to provide the patch to the target devices.
Tag
  • Google
  • Apache License v2.0
  • GPL v2
  • LGPL 2.1+
  • Mobile

Add Information URL
No Type Name URL
1 https://en.wikipedia.org/wiki/Android_version_history
2 https://source.android.com/setup/start/licenses
3 https://source.android.com/security/bulletin/
4 https://developer.android.com/
5 https://developer.android.com/about/versions/
6 https://android-developers.googleblog.com/

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
6861 Android 14 14.1 Nov. 6, 2024 Aug. 7, 2024 0 3 1 0
6862 Android 13 13.4 Aug. 7, 2023 Aug. 15, 2022 15 317 812 67
6863 Android 12 12.4 Oct. 17, 2022 Oct. 4, 2020 43 479 1193 106
6864 Android 11 11 Sept. 8, 2020 Sept. 8, 2020 58 636 1364 107
6865 Android 10 10 Sept. 3, 2019 Sept. 3, 2019 103 680 1055 110
6866 Android 9 9 Aug. 6, 2018 Aug. 6, 2018 112 463 331 35
6867 Android 8 8.1.0 Dec. 5, 2017 Aug. 21, 2017 144 529 318 25
6868 Android 7 7.1.2 April 4, 2017 Aug. 22, 2016 116 627 380 20
6869 Android 6 6.0.1 Dec. 7, 2015 Oct. 5, 2015 109 734 397 20
6870 Android 5 5.1.1 April 21, 2015 Nov. 12, 2014 67 661 317 16
6871 Android 4 4.4.4 June 19, 2014 Oct. 18, 2011 53 577 271 16
6872 Android 3 3.2.6 Feb. 1, 2012 Feb. 22, 2011 25 420 174 10
6873 Android 2 2.2.3 Nov. 21, 2011 Oct. 26, 2009 25 424 181 12
6874 Android 1 1.6 Sept. 15, 2009 Sept. 23, 2008 150 1594 2337 209
6875 Android 9.0 9.0 109 441 323 34
6876 Android 7.2 7.2 16 61 79 9
6877 Android 12.1 12.1 15 229 224 23
6878 Android 12.0l 12.0l 0 28 68 9
6879 Android 12.0 12.0 43 447 1159 104
6880 Android 11.0 11.0 58 636 1364 107
6881 Android 10.0 10.0 103 680 1055 110
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
6861 -
10.0
HIGH Integer overflow in SampleTable.cpp in libstagefright in Android before 5.0.0 has unspecified impact and attack vectors, aka internal bug 15328708. CWE-189
Numeric Errors
CVE-2014-7915 cpe:2.3:o:google:android:*:* 4.4.4 2024-11-21 11:18
2015-10-1
Show GitHub Exploit DB Packet Storm
6862 -
7.2
HIGH The (1) pipe_read and (2) pipe_write implementations in fs/pipe.c in the Linux kernel before 3.16 do not properly consider the side effects of failed __copy_to_user_inatomic and __copy_from_user_inat… CWE-17
Code
CVE-2015-1805 cpe:2.3:o:google:android:6.0:*
cpe:2.3:o:google:android:5.1:*
cpe:2.3:o:google:android:5.1.1:*
cpe:2.3:o:googl…
2024-11-21 11:26
2015-08-8
Show GitHub Exploit DB Packet Storm
6863 -
10.0
HIGH Multiple integer overflows in the GraphicBuffer::unflatten function in platform/frameworks/native/libs/ui/GraphicBuffer.cpp in Android through 5.0 allow attackers to gain privileges or cause a denial… CWE-189
Numeric Errors
CVE-2015-1474 cpe:2.3:o:google:android:*:* 5.0 2024-11-21 11:25
2015-02-16
Show GitHub Exploit DB Packet Storm
6864 7.8
7.2
HIGH
Local
arch/x86/kernel/entry_64.S in the Linux kernel before 3.17.5 does not properly handle faults associated with the Stack Segment (SS) segment register, which allows local users to gain privileges by tr… CWE-269
 Improper Privilege Management
CVE-2014-9322 cpe:2.3:o:google:android:6.0:*
cpe:2.3:o:google:android:6.0.1:*
2024-11-21 11:20
2014-12-17
Show GitHub Exploit DB Packet Storm
6865 -
3.3
LOW AndroidManifest.xml in Android before 5.0.0 does not require the SEND_SMS permission for the SmsReceiver receiver, which allows attackers to send stored SMS messages, and consequently transmit arbitr… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-8610 cpe:2.3:o:google:android:4.4:*
cpe:2.3:o:google:android:4.4.3:*
cpe:2.3:o:google:android:4.4.2:*
cpe:2.3:o:goo…
4.4.4 2024-11-21 11:19
2014-12-16
Show GitHub Exploit DB Packet Storm
6866 -
7.2
HIGH The addAccount method in src/com/android/settings/accounts/AddAccountSettings.java in the Settings application in Android before 5.0.0 does not properly create a PendingIntent, which allows attackers… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-8609 cpe:2.3:o:google:android:4.4:*
cpe:2.3:o:google:android:4.4.3:*
cpe:2.3:o:google:android:4.4.2:*
cpe:2.3:o:goo…
4.4.4 2024-11-21 11:19
2014-12-16
Show GitHub Exploit DB Packet Storm
6867 -
7.5
HIGH Multiple SQL injection vulnerabilities in the queryLastApp method in packages/WAPPushManager/src/com/android/smspush/WapPushManager.java in the WAPPushManager module in Android before 5.0.0 allow rem… CWE-89
SQL Injection
CVE-2014-8507 cpe:2.3:o:google:android:4.4:*
cpe:2.3:o:google:android:4.4.3:*
cpe:2.3:o:google:android:4.4.2:*
cpe:2.3:o:goo…
4.4.4 2024-11-21 11:19
2014-12-16
Show GitHub Exploit DB Packet Storm
6868 -
7.2
HIGH luni/src/main/java/java/io/ObjectInputStream.java in the java.io.ObjectInputStream implementation in Android before 5.0.0 does not verify that deserialization will result in an object that met the re… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-7911 cpe:2.3:o:google:android:4.4:*
cpe:2.3:o:google:android:4.4.3:*
cpe:2.3:o:google:android:4.4.2:*
cpe:2.3:o:goo…
4.4.4 2024-11-21 11:18
2014-12-16
Show GitHub Exploit DB Packet Storm
6869 -
3.3
LOW The get_option function in dhcpcd 4.0.0 through 6.x before 6.4.3 allows remote DHCP servers to cause a denial of service by resetting the DHO_OPTIONSOVERLOADED option in the (1) bootfile or (2) serve… CWE-399
 Resource Management Errors
CVE-2014-6060 cpe:2.3:o:google:android:*:* 4.4.3 2024-11-21 11:13
2014-09-5
Show GitHub Exploit DB Packet Storm
6870 -
5.1
MEDIUM Stack-based buffer overflow in the encode_key function in /system/bin/keystore in the KeyStore service in Android 4.3 allows attackers to execute arbitrary code, and consequently obtain sensitive key… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-3100 cpe:2.3:o:google:android:4.3:* 2024-11-21 11:07
2014-07-2
Show GitHub Exploit DB Packet Storm