- EPSS 0.78%
- Published 12.01.2017 20:59:00
- Last modified 20.04.2025 01:37:25
Integer overflow leading to a TOCTOU condition in hypervisor PIL. An integer overflow exposes a race condition that may be used to bypass (Peripheral Image Loader) PIL authentication. Product: Android. Versions: Kernel 3.18. Android ID: A-31624565. R...
- EPSS 0.59%
- Published 12.01.2017 20:59:00
- Last modified 20.04.2025 01:37:25
Possible buffer overflow in trust zone access control API. Buffer overflow may occur due to lack of buffer size checking. Product: Android. Versions: Kernel 3.18. Android ID: A-31625204. References: QC-CR#1027804.
- EPSS 0.53%
- Published 12.01.2017 20:59:00
- Last modified 20.04.2025 01:37:25
Possible buffer overflow in SMMU system call. Improper input validation in ADSP SID2CB system call may result in hypervisor memory overwrite. Product: Android. Versions: Kernel 3.18. Android ID: A-31625306. References: QC-CR#1036747.
CVE-2016-8441
- EPSS 0.05%
- Published 12.01.2017 20:59:00
- Last modified 20.04.2025 01:37:25
Possible buffer overflow in the hypervisor. Inappropriate usage of a static array could lead to a buffer overrun. Product: Android. Versions: Kernel 3.18. Android ID: A-31625904. References: QC-CR#1027769.
CVE-2016-8442
- EPSS 0.05%
- Published 12.01.2017 20:59:00
- Last modified 20.04.2025 01:37:25
Possible unauthorized memory access in the hypervisor. Lack of input validation could allow hypervisor memory to be accessed by the HLOS. Product: Android. Versions: Kernel 3.18. Android ID: A-31625910. QC-CR#1038173.
CVE-2016-8443
- EPSS 0.04%
- Published 12.01.2017 20:59:00
- Last modified 20.04.2025 01:37:25
Possible unauthorized memory access in the hypervisor. Incorrect configuration provides access to subsystem page tables. Product: Android. Versions: Kernel 3.18. Android ID: A-32576499. References: QC-CR#964185.
CVE-2016-8444
- EPSS 0.14%
- Published 12.01.2017 20:59:00
- Last modified 20.04.2025 01:37:25
An elevation of privilege vulnerability in the Qualcomm camera could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged proc...
CVE-2016-8410
- EPSS 0.19%
- Published 12.01.2017 15:59:02
- Last modified 20.04.2025 01:37:25
An information disclosure vulnerability in the Qualcomm sound driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged proce...
CVE-2016-6782
- EPSS 0.14%
- Published 12.01.2017 15:59:01
- Last modified 20.04.2025 01:37:25
An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged proc...
CVE-2016-6785
- EPSS 0.14%
- Published 12.01.2017 15:59:01
- Last modified 20.04.2025 01:37:25
An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged proc...