VYPR

Android

by Google

CVEs (8,504)

  • CVE-2018-5860MedJun 15, 2018
    risk 0.36cvss 5.5epss 0.00

    In the MDSS driver in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel, a data structure may be used without being initialized correctly.

  • CVE-2017-18169MedJun 15, 2018
    risk 0.36cvss 5.5epss 0.00

    User process can perform the kernel DOS in ashmem when doing cache maintenance operation in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.

  • CVE-2018-3579MedJun 12, 2018
    risk 0.36cvss 5.5epss 0.00

    In the WLAN driver in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel, event->num_entries_in_page is a value received from firmware that is not properly validated which can lead to a buffer over-read

  • CVE-2018-3562MedJun 6, 2018
    risk 0.36cvss 5.5epss 0.01

    Buffer over -read can occur while processing a FILS authentication frame in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel.

  • CVE-2016-10420MedApr 18, 2018
    risk 0.36cvss 5.5epss 0.01

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 450, SD 600, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810,…

  • CVE-2015-9218MedApr 18, 2018
    risk 0.36cvss 5.5epss 0.00

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SD 835, SD 845, SDM630,…

  • CVE-2016-10234MedApr 4, 2018
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability in the Qualcomm IPA driver. Product: Android. Versions: Android kernel. Android ID: A-34390017. References: QC-CR#1069060.

  • CVE-2017-13279MedApr 4, 2018
    risk 0.36cvss 5.5epss 0.01

    In M3UParser::parse of M3UParser.cpp, there is a memory resource exhaustion due to a large loop of pushing items into a vector. This could lead to remote denial of service with no additional execution privileges needed. User interaction is needed for exploitation. Product:…

  • CVE-2017-13275MedApr 4, 2018
    risk 0.36cvss 5.5epss 0.00

    In getVSCoverage of CmapCoverage.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional privileges needed. User interaction is needed for exploitation. Product: Android. Versions: 8.0, 8.1.…

  • CVE-2017-9693MedMar 30, 2018
    risk 0.36cvss 5.5epss 0.00

    The length of attribute value for STA_EXT_CAPABILITY in __wlan_hdd_change_station in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-06-06 being less than the actual lenth of StaParams.extn_capability results in a read for extra bytes when a memcpy is done from…

  • CVE-2017-17769MedMar 30, 2018
    risk 0.36cvss 5.5epss 0.00

    Information leakage in Android for MSM, Firefox OS for MSM, and QRD Android can occur in the audio driver.

  • CVE-2017-6288MedMar 12, 2018
    risk 0.36cvss 5.5epss 0.00

    NVIDIA libnvrm contains a possible out of bounds read due to a missing bounds check which could lead to local information disclosure. This issue is rated as moderate. Product: Android. Version: N/A. Android: A-65482562. Reference: N-CVE-2017-6288.

  • CVE-2017-6287MedMar 12, 2018
    risk 0.36cvss 5.5epss 0.00

    NVIDIA libnvrm contains a possible out of bounds read due to a missing bounds check which could lead to local information disclosure. This issue is rated as moderate.Product: Android. Version: N/A. Android: A-64893264. Reference: N-CVE-2017-6287.

  • CVE-2017-6285MedMar 12, 2018
    risk 0.36cvss 5.5epss 0.00

    NVIDIA libnvrm contains a possible out of bounds read due to a missing bounds check which could lead to local information disclosure. This issue is rated as moderate. Product: Android. Version: N/A. Android: A-64893156. Reference: N-CVE-2017-6285.

  • CVE-2017-6284MedMar 6, 2018
    risk 0.36cvss 5.5epss 0.00

    NVIDIA Security Engine contains a vulnerability in the Deterministic Random Bit Generator (DRBG) where the DRBG does not properly initialize and store or transmits sensitive data using a weakened encryption scheme that is unable to protect sensitive data which may lead to…

  • CVE-2017-6283MedMar 6, 2018
    risk 0.36cvss 5.5epss 0.00

    NVIDIA Security Engine contains a vulnerability in the RSA function where the keyslot read/write lock permissions are cleared on a chip reset which may lead to information disclosure. This issue is rated as high.

  • CVE-2017-0816MedOct 4, 2017
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability in the Android media framework (libeffects). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-63662938.

  • CVE-2017-0815MedOct 4, 2017
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability in the Android media framework (libeffects). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-63526567.

  • CVE-2015-1526MedSep 28, 2017
    risk 0.36cvss 5.5epss 0.01

    The media_server component in Android allows remote attackers to cause a denial of service via a crafted application.

  • CVE-2017-11040MedSep 21, 2017
    risk 0.36cvss 5.5epss 0.01

    In all Qualcomm products with Android releases from CAF using the Linux kernel, when reading from sysfs nodes, one can read more information than it is allowed to.

Page 348 of 426