Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Android Number Of NVD 6838 CRITICAL 484 HIGH 2986 MEDIUM 3124 LOW 236
URL https://www.android.com/
Explanation It is an operating system installed on smartphones provided by Google.
Since it is open source, many manufacturers use it in their smartphones, tablets, and wearable devices.

The support period differs for each development vendor.
After Google provides a security patch, it is up to the vendor to provide the patch to the target devices.
Tag
  • GPL v2
  • LGPL 2.1+
  • Mobile
  • Google
  • Apache License v2.0

Add Information URL
No Type Name URL
1 https://en.wikipedia.org/wiki/Android_version_history
2 https://source.android.com/setup/start/licenses
3 https://source.android.com/security/bulletin/
4 https://developer.android.com/
5 https://developer.android.com/about/versions/
6 https://android-developers.googleblog.com/

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
6761 Android 14 14.1 Nov. 6, 2024 Aug. 7, 2024 0 3 1 0
6762 Android 13 13.4 Aug. 7, 2023 Aug. 15, 2022 15 311 812 67
6763 Android 12 12.4 Oct. 17, 2022 Oct. 4, 2020 43 479 1193 106
6764 Android 11 11 Sept. 8, 2020 Sept. 8, 2020 58 636 1364 107
6765 Android 10 10 Sept. 3, 2019 Sept. 3, 2019 103 680 1055 110
6766 Android 9 9 Aug. 6, 2018 Aug. 6, 2018 112 463 331 35
6767 Android 8 8.1.0 Dec. 5, 2017 Aug. 21, 2017 144 529 318 25
6768 Android 7 7.1.2 April 4, 2017 Aug. 22, 2016 116 627 380 20
6769 Android 6 6.0.1 Dec. 7, 2015 Oct. 5, 2015 109 734 397 20
6770 Android 5 5.1.1 April 21, 2015 Nov. 12, 2014 67 661 317 16
6771 Android 4 4.4.4 June 19, 2014 Oct. 18, 2011 53 577 271 16
6772 Android 3 3.2.6 Feb. 1, 2012 Feb. 22, 2011 25 420 174 10
6773 Android 2 2.2.3 Nov. 21, 2011 Oct. 26, 2009 25 424 181 12
6774 Android 1 1.6 Sept. 15, 2009 Sept. 23, 2008 150 1558 2312 204
6775 Android 9.0 9.0 109 441 323 34
6776 Android 7.2 7.2 16 61 79 9
6777 Android 12.1 12.1 15 229 224 23
6778 Android 12.0l 12.0l 0 28 68 9
6779 Android 12.0 12.0 43 447 1159 104
6780 Android 11.0 11.0 58 636 1364 107
6781 Android 10.0 10.0 103 680 1055 110
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
6761 -
6.4
MEDIUM Bluetooth in Android before 5.1.1 LMY48T allows attackers to remove stored SMS messages via a crafted application, aka internal bug 22343270. CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-3847 cpe:2.3:o:google:android:*:* 5.1 2024-11-21 11:29
2015-10-7
Show GitHub Exploit DB Packet Storm
6762 -
10.0
HIGH libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 21335999. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2015-3823 cpe:2.3:o:google:android:*:* 5.1 2024-11-21 11:29
2015-10-7
Show GitHub Exploit DB Packet Storm
6763 -
9.3
HIGH libutils in Android through 5.1.1 LMY48M allows remote attackers to execute arbitrary code via crafted metadata in a (1) MP3 or (2) MP4 file, as demonstrated by an attack against use of libutils by l… CWE-20
 Improper Input Validation 
CVE-2015-6602 cpe:2.3:o:google:android:*:* 5.1.1 2024-11-21 11:35
2015-10-2
Show GitHub Exploit DB Packet Storm
6764 -
9.3
HIGH libstagefright in Android through 5.1.1 LMY48M allows remote attackers to execute arbitrary code via crafted metadata in a (1) MP3 or (2) MP4 file. CWE-20
 Improper Input Validation 
CVE-2015-3876 cpe:2.3:o:google:android:*:* 5.1.1 2024-11-21 11:29
2015-10-2
Show GitHub Exploit DB Packet Storm
6765 -
10.0
HIGH SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I does not properly consider integer promotion, which allows remote attackers to execute arbitrary code or cause a denial of service (in… CWE-189
Numeric Errors
CVE-2015-6575 cpe:2.3:o:google:android:*:* 5.1 2024-11-21 11:35
2015-10-1
Show GitHub Exploit DB Packet Storm
6766 -
10.0
HIGH Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android before 5.1.1 LMY48M allows remote attackers to execute arbitrary code vi… CWE-189
Numeric Errors
CVE-2015-3864 cpe:2.3:o:google:android:*:* 5.1 2024-11-21 11:29
2015-10-1
Show GitHub Exploit DB Packet Storm
6767 -
9.3
HIGH Multiple integer overflows in the Blob class in keystore/keystore.cpp in Keystore in Android before 5.1.1 LMY48M allow attackers to execute arbitrary code and read arbitrary Keystore keys via an appl… CWE-189
Numeric Errors
CVE-2015-3863 cpe:2.3:o:google:android:*:* 5.1 2024-11-21 11:29
2015-10-1
Show GitHub Exploit DB Packet Storm
6768 -
5.0
MEDIUM Multiple integer overflows in the addVorbisCodecInfo function in matroska/MatroskaExtractor.cpp in libstagefright in mediaserver in Android before 5.1.1 LMY48M allow remote attackers to cause a denia… CWE-189
Numeric Errors
CVE-2015-3861 cpe:2.3:o:google:android:*:* 5.1 2024-11-21 11:29
2015-10-1
Show GitHub Exploit DB Packet Storm
6769 -
7.2
HIGH packages/Keyguard/res/layout/keyguard_password_view.xml in Lockscreen in Android 5.x before 5.1.1 LMY48M does not restrict the number of characters in the passwordEntry input field, which allows phys… CWE-284
Improper Access Control
CVE-2015-3860 cpe:2.3:o:google:android:*:* 5.1 2024-11-21 11:29
2015-10-1
Show GitHub Exploit DB Packet Storm
6770 -
9.3
HIGH The checkDestination function in internal/telephony/SMSDispatcher.java in Android before 5.1.1 LMY48M relies on an obsolete permission name for an authorization check, which allows attackers to bypas… CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-3858 cpe:2.3:o:google:android:*:* 5.1 2024-11-21 11:29
2015-10-1
Show GitHub Exploit DB Packet Storm