CVE-2017-3749
- EPSS 0.01%
- Veröffentlicht 29.06.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
On Lenovo VIBE mobile phones, the Idea Friend Android application allows private data to be backed up and restored via Android Debug Bridge, which allows tampering leading to privilege escalation in conjunction with CVE-2017-3748 and CVE-2017-3750.
CVE-2017-3750
- EPSS 0.01%
- Veröffentlicht 29.06.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
On Lenovo VIBE mobile phones, the Lenovo Security Android application allows private data to be backed up and restored via Android Debug Bridge, which allows tampering leading to privilege escalation in conjunction with CVE-2017-3748 and CVE-2017-374...
CVE-2015-3840
- EPSS 0.03%
- Veröffentlicht 27.06.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The MessageStatusReceiver service in the AndroidManifest.XML in Android 5.1.1 and earlier allows local users to alter sent/received statuses of SMS and MMS messages without the associated "WRITE_SMS" permission.
CVE-2017-0636
- EPSS 0.08%
- Veröffentlicht 14.06.2017 13:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
An elevation of privilege vulnerability in the MediaTek command queue driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a p...
CVE-2017-0637
- EPSS 0.84%
- Veröffentlicht 14.06.2017 13:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
A remote code execution vulnerability in libhevc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as Critical due to the possibility of remote...
CVE-2017-0638
- EPSS 0.45%
- Veröffentlicht 14.06.2017 13:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
A remote code execution vulnerability in System UI component could enable an attacker using a specially crafted file to execute arbitrary code within the context of an unprivileged process. This issue is rated as High because it is a remote arbitrary...
CVE-2017-0639
- EPSS 0.11%
- Veröffentlicht 14.06.2017 13:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
An information disclosure vulnerability in Bluetooth component could enable a local malicious application to access data outside of its permission levels. This issue is rated as High because it is a general bypass for operating system protections tha...
CVE-2017-0640
- EPSS 0.2%
- Veröffentlicht 14.06.2017 13:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
A remote denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High severity due to the possibility of remote denial of service. Product: Andro...
CVE-2017-0641
- EPSS 2.72%
- Veröffentlicht 14.06.2017 13:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
A remote denial of service vulnerability in libvpx in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High severity due to the possibility of remote denial of service. Prod...
CVE-2017-0642
- EPSS 0.19%
- Veröffentlicht 14.06.2017 13:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
A remote denial of service vulnerability in libhevc in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High severity due to the possibility of remote denial of service. Pro...