VYPR

linux kernel

by Google

CVEs (67)

  • CVE-2014-9924HigJun 6, 2017
    risk 0.51cvss 7.8epss 0.00

    In 1x in all Android releases from CAF using the Linux kernel, a Signed to Unsigned Conversion Error could potentially occur.

  • CVE-2016-10239HigMay 16, 2017
    risk 0.51cvss 7.8epss 0.01

    In TrustZone access control policy may potentially be bypassed in all Android releases from CAF using the Linux kernel due to improper input validation an integer overflow vulnerability leading to a buffer overflow could potentially occur and a buffer over-read vulnerability…

  • CVE-2014-9935HigMay 16, 2017
    risk 0.51cvss 7.8epss 0.01

    In TrustZone an integer overflow vulnerability leading to a buffer overflow could potentially occur in a DRM routine in all Android releases from CAF using the Linux kernel.

  • CVE-2014-9933HigMay 16, 2017
    risk 0.51cvss 7.8epss 0.01

    Due to missing input validation in all Android releases from CAF using the Linux kernel, HLOS can write to fuses for which it should not have access.

  • CVE-2017-14882HigMar 15, 2018
    risk 0.49cvss 7.5epss 0.01

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing VENDOR specific action frame in the function lim_process_action_vendor_specific(), a comparison is performed with the incoming action frame body…

  • CVE-2017-11028HigNov 16, 2017
    risk 0.49cvss 7.5epss 0.01

    In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the ISP Camera driver, the contents of an arbitrary kernel address can be leaked to userspace by the function msm_isp_get_stream_common_data().

  • CVE-2017-15834HigMar 16, 2018
    risk 0.46cvss 7.0epss 0.00

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, race condition in diag_dbgfs_read_dcistats(), while accessing diag_dbgfs_dci_data_index, causes potential heap overflow.

  • CVE-2017-15847HigJan 10, 2018
    risk 0.46cvss 7.0epss 0.00

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the SPCom kernel driver, a race condition exists when creating a channel.

  • CVE-2017-11025HigNov 16, 2017
    risk 0.46cvss 7.0epss 0.00

    In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, due to a race condition in the function audio_effects_shared_ioctl(), memory corruption can occur.

  • CVE-2016-10339HigJun 13, 2017
    risk 0.46cvss 7.1epss 0.01

    In all Android releases from CAF using the Linux kernel, HLOS can overwite secure memory or read contents of the keystore.

  • CVE-2015-9022HigJun 13, 2017
    risk 0.46cvss 7.0epss 0.00

    In all Android releases from CAF using the Linux kernel, time-of-check Time-of-use (TOCTOU) Race Conditions exist in several TZ APIs.

  • CVE-2014-9966HigJun 13, 2017
    risk 0.46cvss 7.0epss 0.00

    In all Android releases from CAF using the Linux kernel, a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability exists in Secure Display.

  • CVE-2016-10297HigJun 6, 2017
    risk 0.46cvss 7.0epss 0.00

    In TrustZone in all Android releases from CAF using the Linux kernel, a Time-of-Check Time-of-Use Race Condition vulnerability could potentially exist.

  • CVE-2018-11946MedNov 27, 2018
    risk 0.42cvss 6.5epss 0.00

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, the UPnP daemon should not be running out of box because it enables port forwarding without authentication.

  • CVE-2018-12006MedFeb 11, 2019
    risk 0.36cvss 5.5epss 0.00

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Users with no extra privileges can potentially access leaked data due to uninitialized padding present in display function.

  • CVE-2017-15844MedSep 18, 2018
    risk 0.36cvss 5.5epss 0.00

    In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing the function for writing device values into flash, uninitialized memory can be written to flash.

  • CVE-2016-10337MedJun 13, 2017
    risk 0.36cvss 5.5epss 0.01

    In all Android releases from CAF using the Linux kernel, some validation of secure applications was not being performed.

  • CVE-2016-10336MedJun 13, 2017
    risk 0.36cvss 5.5epss 0.01

    In all Android releases from CAF using the Linux kernel, some regions of memory were not protected during boot.

  • CVE-2016-10335MedJun 13, 2017
    risk 0.36cvss 5.5epss 0.01

    In all Android releases from CAF using the Linux kernel, libtomcrypt was updated.

  • CVE-2016-10334MedJun 13, 2017
    risk 0.36cvss 5.5epss 0.01

    In all Android releases from CAF using the Linux kernel, a dynamically-protected DDR region could potentially get overwritten.