The Android Open Source Project
100 exploits
Active since May 2014
Android 8.0-9 - Local Information Disclosure via Unsafe PendingIntent in BeamTransferManager
CVSS 5.5
Android - Out-of-bounds Read in Bluetooth SDP Server
CVSS 7.5
Android - Out-of-bounds Write in DecodeFrameCombinedMode
CVSS 8.8
Android - Use-After-Free in NuPlayerDriver.cpp
CVSS 7.8
Android - Local Information Disclosure via DownloadProvider Confused Deputy
CVSS 4.0
Android - Local Privilege Escalation via UsbProfileGroupSettingsManager Logic Error
CVSS 7.8
Android - Local Privilege Escalation via Lock Screen Visibility Logic Error
CVSS 7.8
Android - Local Privilege Escalation via Malformed Uri Object
CVSS 7.8
Android - Out-of-bounds Write in ConvertRGBToPlanarYUV
CVSS 7.8
Android - Heap-based Buffer Overflow in MtpPacket.cpp setParameter
CVSS 7.5
Android - Local Information Disclosure via Confused Deputy in Screenshot Access
CVSS 3.3
Android - Local Information Disclosure via Confused Deputy in Screenshot Access
CVSS 3.3
Android 10-12 - Local Privilege Escalation via Task.java Confused Deputy
CVSS 7.8
Android - Local Privilege Escalation via NotificationManagerService Permissions Bypass
CVSS 7.8
Android - Local Privilege Escalation via Tapjacking Overlay Attack
CVSS 7.8
Android - Remote Code Execution via Bluetooth Out-of-bounds Write in btif_rc.cc
CVSS 8.8
Android - Use-After-Free via Race Condition in FindOrCreatePeer
CVSS 7.0
Android 10 - Remote Information Disclosure via ClientModeImpl Identifier Tracking
CVSS 7.5
Android - Double Free in DrmPlugin.cpp
CVSS 7.8
Android - Remote Information Disclosure via Uninitialized Data in avrc_proc_vendor_command
CVSS 7.5
Android - Remote Information Disclosure via Uninitialized Data in avrc_proc_vendor_command
CVSS 7.5
Android - Out-of-bounds Read in avrc_msg_cback
CVSS 7.5
Android - Tapjacking/Overlay Attack in ResolverActivity
CVSS 7.3
Android - Local Privilege Escalation
CVSS 7.8
Android - Tapjacking/Overlay Attack via DevicePickerFragment
CVSS 7.8