VYPR

Android

by Google

CVEs (8,504)

  • CVE-2018-9453MedNov 6, 2018
    risk 0.36cvss 5.5epss 0.00

    In avdt_msg_prs_cfg of avdt_msg.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions:…

  • CVE-2018-9451MedNov 6, 2018
    risk 0.36cvss 5.5epss 0.00

    In DynamicRefTable::load of ResourceTypes.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android…

  • CVE-2018-9444MedNov 6, 2018
    risk 0.36cvss 5.5epss 0.01

    In ih264d_video_decode of ih264d_api.c there is a possible resource exhaustion due to an infinite loop. This could lead to remote temporary device denial of service (remote hang or reboot) with no additional execution privileges needed. User interaction is needed for…

  • CVE-2018-9437MedNov 6, 2018
    risk 0.36cvss 5.5epss 0.02

    In getstring of ID3.cpp there is a possible out-of-bounds read due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android Versions: Android-6.0…

  • CVE-2017-18281MedOct 29, 2018
    risk 0.36cvss 5.5epss 0.00

    A bool variable in Video function, which gets typecasted to int before being read could result in an out of bound read access in all Android releases from CAF using the linux kernel

  • CVE-2018-9511MedOct 2, 2018
    risk 0.36cvss 5.5epss 0.00

    In ipSecSetEncapSocketOwner of XfrmController.cpp, there is a possible failure to initialize a security feature due to uninitialized data. This could lead to local denial of service of IPsec on sockets with no additional execution privileges needed. User interaction is not…

  • CVE-2018-9499MedOct 2, 2018
    risk 0.36cvss 5.5epss 0.00

    In readVector of iCrypto.cpp, there is a possible invalid read due to uninitialized data. This could lead to local information disclosure from the DRM server with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android…

  • CVE-2018-9493MedOct 2, 2018
    risk 0.36cvss 5.5epss 0.01

    In the content provider of the download manager, there is a possible SQL injection due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android…

  • CVE-2018-9452MedOct 2, 2018
    risk 0.36cvss 5.5epss 0.02

    In getOffsetForHorizontal of Layout.java, there is a possible application hang due to a slow width calculation. This could lead to remote denial of service if a contact with many hidden unicode characters were sent to the device and used by a local app, with no additional…

  • CVE-2018-3574MedSep 19, 2018
    risk 0.36cvss 5.5epss 0.00

    In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, userspace can request ION cache maintenance on a secure ION buffer for which the ION_FLAG_SECURE ion flag is not set and cause the kernel to attempt to perform cache…

  • CVE-2018-11280MedSep 18, 2018
    risk 0.36cvss 5.5epss 0.00

    In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing user-space there is no size validation of the NAT entry input. If the user input size of the NAT entry is greater than the max allowed size, memory…

  • CVE-2018-11275MedSep 18, 2018
    risk 0.36cvss 5.5epss 0.00

    In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, when flashing image using FastbootLib if size is not divisible by block size, information leak occurs.

  • CVE-2017-15844MedSep 18, 2018
    risk 0.36cvss 5.5epss 0.00

    In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing the function for writing device values into flash, uninitialized memory can be written to flash.

  • CVE-2018-5865MedJul 6, 2018
    risk 0.36cvss 5.5epss 0.00

    While processing a debug log event from firmware in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, an integer underflow and/or buffer over-read can occur.

  • CVE-2018-5864MedJul 6, 2018
    risk 0.36cvss 5.5epss 0.00

    While processing a WMI_APFIND event in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, a buffer over-read and information leak can potentially occur.

  • CVE-2018-5895MedJul 6, 2018
    risk 0.36cvss 5.5epss 0.00

    Buffer over-read may happen in wma_process_utf_event() due to improper buffer length validation before writing into param_buf->num_wow_packet_buffer in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level…

  • CVE-2018-5836MedJul 6, 2018
    risk 0.36cvss 5.5epss 0.00

    In wma_nan_rsp_event_handler() in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, the data_len value is received from firmware and not properly validated which could potentially lead to…

  • CVE-2017-15824MedJul 6, 2018
    risk 0.36cvss 5.5epss 0.00

    In Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, the function UpdateDeviceStatus() writes a local stack buffer without initialization to flash memory using WriteToPartition() which may…

  • CVE-2017-14893MedJul 6, 2018
    risk 0.36cvss 5.5epss 0.00

    While flashing meta image, a buffer over-read may potentially occur when the image size is smaller than the image header size or is smaller than the image header size + total image header entry in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for…

  • CVE-2017-14872MedJul 6, 2018
    risk 0.36cvss 5.5epss 0.00

    While flashing a meta image, a buffer over-read can potentially occur when the number of images are out of the maximum range of 32 in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

Page 347 of 426