CVE-2017-8245
- EPSS 0.04%
- Veröffentlicht 12.05.2017 20:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
In all Android releases from CAF using the Linux kernel, while processing a voice SVC request which is nonstandard by specifying a payload size that will overflow its own declared size, an out of bounds memory copy occurs.
CVE-2017-8246
- EPSS 0.03%
- Veröffentlicht 12.05.2017 20:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
In function msm_pcm_playback_close() in all Android releases from CAF using the Linux kernel, prtd is assigned substream->runtime->private_data. Later, prtd is freed. However, prtd is not sanitized and set to NULL, resulting in a dangling pointer. Th...
CVE-2017-0615
- EPSS 0.05%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
An elevation of privilege vulnerability in the MediaTek power driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privilege...
CVE-2017-0616
- EPSS 0.05%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
An elevation of privilege vulnerability in the MediaTek system management interrupt driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires co...
CVE-2017-0617
- EPSS 0.05%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
An elevation of privilege vulnerability in the MediaTek video driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privilege...
CVE-2017-0618
- EPSS 0.04%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
An elevation of privilege vulnerability in the MediaTek command queue driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a p...
CVE-2017-0619
- EPSS 0.04%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
An elevation of privilege vulnerability in the Qualcomm pin controller driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a ...
CVE-2017-0620
- EPSS 0.05%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
An elevation of privilege vulnerability in the Qualcomm Secure Channel Manager driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires comprom...
CVE-2017-0625
- EPSS 0.07%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
An information disclosure vulnerability in the MediaTek command queue driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as High because it could be used to access sensitive data wit...
CVE-2017-0635
- EPSS 0.23%
- Veröffentlicht 12.05.2017 15:29:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
A remote denial of service vulnerability in HevcUtils.cpp in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as Low due to details specific to the vulnerabil...