CVE-2017-0687
- EPSS 0.04%
- Veröffentlicht 18.08.2017 17:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
A denial of service vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-35583675.
CVE-2016-5347
- EPSS 0.13%
- Veröffentlicht 16.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In all Qualcomm products with Android releases from CAF using the Linux kernel, kernel stack data can be leaked to userspace by an audio driver.
CVE-2016-5853
- EPSS 0.08%
- Veröffentlicht 16.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In an audio driver in all Qualcomm products with Android releases from CAF using the Linux kernel, when a sanity check encounters a length value not in the correct range, an error message is printed, but code execution continues in the same way as fo...
CVE-2016-5854
- EPSS 0.11%
- Veröffentlicht 16.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In a driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, kernel heap memory can be exposed to userspace.
CVE-2016-5855
- EPSS 0.11%
- Veröffentlicht 16.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In a driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, a user-supplied buffer is casted to a structure without checking if the source buffer is large enough.
CVE-2016-5858
- EPSS 0.14%
- Veröffentlicht 16.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In an ioctl handler in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, if a user supplies a value too large, then an out-of-bounds read occurs.
CVE-2016-5859
- EPSS 0.06%
- Veröffentlicht 16.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In a sound driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, if a function is called with a very large length, an integer overflow could occur followed by a buffer overflow.
CVE-2016-5860
- EPSS 0.06%
- Veröffentlicht 16.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In an audio driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, if a function is called with a very large length, an integer overflow could occur followed by a heap buffer overflow.
CVE-2016-5861
- EPSS 0.24%
- Veröffentlicht 16.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In a display driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, a variable controlled by userspace is used to calculate offsets and sizes for copy operations, which could result in heap overflow.
CVE-2016-5862
- EPSS 0.06%
- Veröffentlicht 16.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
When a control related to codec is issued from userspace in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, the type casting is done to the container structure instead of the codec's individual structure, resulting in ...