CVE-2017-9689
- EPSS 0.04%
- Veröffentlicht 10.01.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:36:39
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a specially-crafted HDMI CEC message can be used to cause stack memory corruption.
CVE-2017-9705
- EPSS 0.03%
- Veröffentlicht 10.01.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:36:40
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, concurrent rx notifications and read() operations in the G-Link PKT driver can result in a double free condition due to missing locking re...
CVE-2017-9712
- EPSS 0.09%
- Veröffentlicht 10.01.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:36:41
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, if userspace provides a too-large IE length in wlan_hdd_cfg80211_set_ie, a buffer over-read occurs.
CVE-2017-11069
- EPSS 0.07%
- Veröffentlicht 10.01.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:07:02
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, manipulation of SafeSwitch Image data can result in Heap overflow.
CVE-2017-15849
- EPSS 0.1%
- Veröffentlicht 10.01.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:15:20
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a LayerStack can be destroyed in between Validate and Commit by the application resulting in a Use After Free condition.
CVE-2015-7889
- EPSS 2.45%
- Veröffentlicht 28.12.2017 02:29:03
- Zuletzt bearbeitet 20.04.2025 01:37:25
The SecEmailComposer/EmailComposer application in the Samsung S6 Edge before the October 2015 MR uses weak permissions for the com.samsung.android.email.intent.action.QUICK_REPLY_BACKGROUND service action, which might allow remote attackers with know...
- EPSS 0.03%
- Veröffentlicht 06.12.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
NVIDIA driver contains a vulnerability where it is possible a use after free malfunction can occur due to a race condition which could enable unauthorized code execution and possibly lead to elevation of privileges. This issue is rated as high. Produ...
CVE-2017-6263
- EPSS 0.03%
- Veröffentlicht 06.12.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
NVIDIA driver contains a vulnerability where it is possible a use after free malfunction can occur due to improper usage of the list_for_each kernel macro which could enable unauthorized code execution and possibly lead to elevation of privileges. Th...
CVE-2017-6276
- EPSS 0.03%
- Veröffentlicht 06.12.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
NVIDIA mediaserver contains a vulnerability where it is possible a use after free malfunction can occur due to an incorrect bounds check which could enable unauthorized code execution and possibly lead to elevation of privileges. This issue is rated ...
CVE-2017-13156
- EPSS 60.2%
- Veröffentlicht 06.12.2017 14:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
An elevation of privilege vulnerability in the Android system (art). Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-64211847.