VYPR

Android

by Google

CVEs (8,563)

  • CVE-2015-6634Dec 8, 2015
    risk 0.00cvss —epss 0.02

    The display drivers in Android before 5.1.1 LMY48Z allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 24163261.

  • CVE-2015-6633Dec 8, 2015
    risk 0.00cvss —epss 0.02

    The display drivers in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23987307.

  • CVE-2015-6632Dec 8, 2015
    risk 0.00cvss —epss 0.01

    libstagefright in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access,…

  • CVE-2015-6631Dec 8, 2015
    risk 0.00cvss —epss 0.01

    libstagefright in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access,…

  • CVE-2015-6630Dec 8, 2015
    risk 0.00cvss —epss 0.00

    SystemUI in Android 5.x before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to read screenshots and consequently gain privileges via a crafted application, aka internal bug 19121797.

  • CVE-2015-6629Dec 8, 2015
    risk 0.00cvss —epss 0.00

    Wi-Fi in Android 5.x before 5.1.1 LMY48Z allows attackers to obtain sensitive information via unspecified vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 22667667.

  • CVE-2015-6628Dec 8, 2015
    risk 0.00cvss —epss 0.00

    Media Framework in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, aka…

  • CVE-2015-6627Dec 8, 2015
    risk 0.00cvss —epss 0.01

    The Audio component in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to obtain sensitive information via a crafted audio file, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24211743.

  • CVE-2015-6626Dec 8, 2015
    risk 0.00cvss —epss 0.01

    libstagefright in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access,…

  • CVE-2015-6625Dec 8, 2015
    risk 0.00cvss —epss 0.00

    System Server in Android 6.0 before 2015-12-01 allows attackers to obtain sensitive information and consequently gain privileges via a crafted application, aka internal bug 23936840.

  • CVE-2015-6624Dec 8, 2015
    risk 0.00cvss —epss 0.00

    System Server in Android 6.0 before 2015-12-01 allows attackers to obtain sensitive information via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 23999740.

  • CVE-2015-6623Dec 8, 2015
    risk 0.00cvss —epss 0.01

    Wi-Fi in Android 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24872703.

  • CVE-2015-6622Dec 8, 2015
    risk 0.00cvss —epss 0.00

    The Native Frameworks Library in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem…

  • CVE-2015-6621Dec 8, 2015
    risk 0.00cvss —epss 0.01

    SystemUI in Android 5.x before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 23909438.

  • CVE-2015-6620Dec 8, 2015
    risk 0.00cvss —epss 0.02

    libstagefright in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bugs 24123723 and 24445127.

  • CVE-2015-6619Dec 8, 2015
    risk 0.00cvss —epss 0.01

    The kernel in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, aka internal bug 23520714.

  • CVE-2015-6618Dec 8, 2015
    risk 0.00cvss —epss 0.00

    Bluetooth in Android 4.4 and 5.x before 5.1.1 LMY48Z allows user-assisted remote attackers to execute arbitrary code by leveraging access to the local physical environment, aka internal bug 24595992.

  • CVE-2015-6617Dec 8, 2015
    risk 0.00cvss —epss 0.02

    Skia, as used in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23648740.

  • CVE-2015-6616Dec 8, 2015
    risk 0.00cvss —epss 0.02

    mediaserver in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bugs 24630158 and 23882800, a different vulnerability than…

  • CVE-2015-6783Dec 6, 2015
    risk 0.00cvss —epss 0.01

    The FindStartOffsetOfFileInZipFile function in crazy_linker_zip.cpp in crazy_linker (aka Crazy Linker) in Android 5.x and 6.x, as used in Google Chrome before 47.0.2526.73, improperly searches for an EOCD record, which allows attackers to bypass a signature-validation…

Page 422 of 429