VYPR

Android

by Google

CVEs (8,504)

  • CVE-2009-1754May 26, 2009
    risk 0.00cvss epss 0.01

    The PackageManagerService class in services/java/com/android/server/PackageManagerService.java in Android 1.5 through 1.5 CRB42 does not properly check developer certificates during processing of sharedUserId requests at an application's installation time, which allows remote…

  • CVE-2009-0608Feb 17, 2009
    risk 0.00cvss epss 0.00

    Integer overflow in the showLog function in fake_log_device.c in liblog in Open Handset Alliance Android 1.0 allows attackers to trigger a buffer overflow and possibly have unspecified other impact by sending a large number of input lines.

  • CVE-2009-0607Feb 17, 2009
    risk 0.00cvss epss 0.00

    Multiple integer overflows in malloc_leak.c in Bionic in Open Handset Alliance Android 1.0 have unknown impact and attack vectors, related to the (1) chk_calloc and (2) leak_calloc functions.

  • CVE-2009-0606Feb 17, 2009
    risk 0.00cvss epss 0.00

    The link_image function in linker/linker.c in the dynamic linker in Bionic in Open Handset Alliance Android 1.0 on the T-Mobile G1 phone does not properly handle file descriptors 0, 1, and 2 for a setgid program, which allows local users to create arbitrary files owned by…

Page 426 of 426