Google

Android

8032 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Veröffentlicht 07.02.2017 07:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Race condition in the ip4_datagram_release_cb function in net/ipv4/datagram.c in the Linux kernel before 3.15.2 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging incorrect expectations about locking dur...

  • EPSS 0.01%
  • Veröffentlicht 07.02.2017 07:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The aio_mount function in fs/aio.c in the Linux kernel before 4.7.7 does not properly restrict execute access, which makes it easier for local users to bypass intended SELinux W^X policy restrictions, and consequently gain privileges, via an io_setup...

  • EPSS 0.11%
  • Veröffentlicht 27.01.2017 17:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Buffer overflow vulnerability while processing QMI QOS TLVs. Product: Android. Versions: versions that have qmi_qos_srvc.c. Android ID: 31805216. References: QC CR#912775.

  • EPSS 0.04%
  • Veröffentlicht 18.01.2017 17:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privilege...

  • EPSS 0.04%
  • Veröffentlicht 18.01.2017 17:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privilege...

  • EPSS 0.07%
  • Veröffentlicht 13.01.2017 16:59:01
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An information disclosure vulnerability in Audioserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. P...

  • EPSS 0.02%
  • Veröffentlicht 13.01.2017 16:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An elevation of privilege vulnerability in the bootloader could enable a local attacker to execute arbitrary modem commands on the device. This issue is rated as High because it is a local permanent denial of service (device interoperability: complet...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 12.01.2017 23:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The MT6573FDVT_SetRegHW function in camera_fdvt.c in the MediaTek driver for Linux allows local users to gain privileges via a crafted application that makes an MT6573FDVTIOC_T_SET_FDCONF_CMD IOCTL call.

  • EPSS 0.28%
  • Veröffentlicht 12.01.2017 20:59:02
  • Zuletzt bearbeitet 20.04.2025 01:37:25

A remote code execution vulnerability in the Framesequence library could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process. This issue is rated as High due to the possibility of remo...

  • EPSS 0.05%
  • Veröffentlicht 12.01.2017 20:59:02
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access t...