CVE-2017-13260
- EPSS 20.05%
- Veröffentlicht 04.04.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:11:15
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. ...
CVE-2017-13261
- EPSS 33.57%
- Veröffentlicht 04.04.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:11:15
In bnep_process_control_packet of bnep_utils.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for...
CVE-2017-13306
- EPSS 0.1%
- Veröffentlicht 04.04.2018 16:29:02
- Zuletzt bearbeitet 21.11.2024 03:11:20
A elevation of privilege vulnerability in the Upstream kernel mnh driver. Product: Android. Versions: Android kernel. Android ID: A-70295063.
CVE-2017-13307
- EPSS 0.05%
- Veröffentlicht 04.04.2018 16:29:02
- Zuletzt bearbeitet 21.11.2024 03:11:20
A elevation of privilege vulnerability in the Upstream kernel pci sysfs. Product: Android. Versions: Android kernel. Android ID: A-69128924.
CVE-2017-13287
- EPSS 0.03%
- Veröffentlicht 04.04.2018 16:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:18
In createFromParcel of VerifyCredentialResponse.java, there is a possible invalid parcel read due to improper input validation. This could lead to local escalation of privilege if mPayload in writeToParcel were null, with no additional execution priv...
CVE-2017-13288
- EPSS 0.01%
- Veröffentlicht 04.04.2018 16:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:18
In writeToParcel and readFromParcel of PeriodicAdvertisingReport.java, there is a permission bypass due to a 64/32bit int mismatch. This could lead to a local escalation of privilege where the user can start an activity with system privileges, with n...
CVE-2017-13289
- EPSS 0.01%
- Veröffentlicht 04.04.2018 16:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:18
In writeToParcel and createFromParcel of RttManager.java, there is a permission bypass due to a write size mismatch. This could lead to a local escalation of privileges where the user can start an activity with system privileges, with no additional e...
CVE-2017-13290
- EPSS 0.05%
- Veröffentlicht 04.04.2018 16:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:18
In sdp_server_handle_client_req of sdp_server.cc, there is an out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploit...
CVE-2017-13291
- EPSS 1.77%
- Veröffentlicht 04.04.2018 16:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:19
In avrc_ctrl_pars_vendor_rsp of avrc_pars_ct.cc, there is a possible NULL pointer dereference due to missing bounds checks. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for...
- EPSS 2.13%
- Veröffentlicht 04.04.2018 16:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:19
In wl_get_assoc_ies of wl_cfg80211.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. ...