- EPSS 0.03%
- Veröffentlicht 12.05.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In core_info_read and inst_info_read in all Android releases from CAF using the Linux kernel, variable "dbg_buf", "dbg_buf->curr" and "dbg_buf->filled_size" could be modified by different threads at the same time, but they are not protected with mute...
CVE-2017-8245
- EPSS 0.04%
- Veröffentlicht 12.05.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In all Android releases from CAF using the Linux kernel, while processing a voice SVC request which is nonstandard by specifying a payload size that will overflow its own declared size, an out of bounds memory copy occurs.
CVE-2017-8246
- EPSS 0.03%
- Veröffentlicht 12.05.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In function msm_pcm_playback_close() in all Android releases from CAF using the Linux kernel, prtd is assigned substream->runtime->private_data. Later, prtd is freed. However, prtd is not sanitized and set to NULL, resulting in a dangling pointer. Th...
CVE-2017-0615
- EPSS 0.05%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
An elevation of privilege vulnerability in the MediaTek power driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privilege...
CVE-2017-0616
- EPSS 0.05%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
An elevation of privilege vulnerability in the MediaTek system management interrupt driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires co...
CVE-2017-0617
- EPSS 0.05%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
An elevation of privilege vulnerability in the MediaTek video driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privilege...
CVE-2017-0618
- EPSS 0.04%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
An elevation of privilege vulnerability in the MediaTek command queue driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a p...
CVE-2017-0619
- EPSS 0.04%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
An elevation of privilege vulnerability in the Qualcomm pin controller driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a ...
CVE-2017-0620
- EPSS 0.05%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
An elevation of privilege vulnerability in the Qualcomm Secure Channel Manager driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires comprom...
CVE-2017-0625
- EPSS 0.07%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
An information disclosure vulnerability in the MediaTek command queue driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as High because it could be used to access sensitive data wit...