- EPSS 15.73%
- Veröffentlicht 12.01.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:09
In receive_packet of libnetutils/packet.c, there is a possible out-of-bounds write due to a missing bounds check on the DHCP response. This could lead to remote code execution as a privileged process with no additional execution privileges needed. Us...
CVE-2017-13209
- EPSS 0.47%
- Veröffentlicht 12.01.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:09
In the ServiceManager::add function in the hardware service manager, there is an insecure permissions check based on the PID of the caller which could allow an application or service to replace a HAL service with its own service. This could lead to a...
CVE-2017-13210
- EPSS 0.04%
- Veröffentlicht 12.01.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:10
In CameraDeviceClient::submitRequestList of CameraDeviceClient.cpp, there is an out-of-bounds write if metadataSize is too small. This could lead to a local elevation of privilege enabling code execution as a privileged process with no additional exe...
CVE-2017-13211
- EPSS 3.68%
- Veröffentlicht 12.01.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:10
In bta_scan_results_cb_impl of btif_ble_scanner.cc, there is possible resource exhaustion if a large number of repeated BLE scan results are received. This could lead to a remote denial of service of a critical system process with no additional execu...
CVE-2017-13212
- EPSS 0.03%
- Veröffentlicht 12.01.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:10
An elevation of privilege vulnerability in the Android system (systemui). Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-62187985.
CVE-2017-13213
- EPSS 0.03%
- Veröffentlicht 12.01.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:10
An elevation of privilege vulnerability in the Broadcom bcmdhd driver. Product: Android. Versions: Android kernel. Android ID: A-63374465. References: B-V2017081501.
CVE-2017-13214
- EPSS 1.52%
- Veröffentlicht 12.01.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:10
In the hardware HEVC decoder, some media files could cause a page fault. This could lead to a remote denial of service of a critical system process with no additional execution privileges needed. User interaction is not needed for exploitation. Produ...
CVE-2017-13215
- EPSS 0.1%
- Veröffentlicht 12.01.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:10
A elevation of privilege vulnerability in the Upstream kernel skcipher. Product: Android. Versions: Android kernel. Android ID: A-64386293. References: Upstream kernel.
CVE-2017-13216
- EPSS 3.84%
- Veröffentlicht 12.01.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:10
In ashmem_ioctl of ashmem.c, there is an out-of-bounds write due to insufficient locking when accessing asma. This could lead to a local elevation of privilege enabling code execution as a privileged process with no additional execution privileges ne...
CVE-2017-13217
- EPSS 0.03%
- Veröffentlicht 12.01.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:11:10
In DisplayFtmItem in the bootloader, there is an out-of-bounds write due to reading a string without verifying that it's null-terminated. This could lead to a secure boot bypass and a local elevation of privilege enabling code execution as a privileg...