CVE-2015-8951
- EPSS 0.06%
- Veröffentlicht 10.10.2016 10:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple use-after-free vulnerabilities in sound/soc/msm/qdsp6v2/msm-lsm-client.c in the Qualcomm sound driver in Android before 2016-10-05 on Nexus 5X, Nexus 6P, and Android One devices allow attackers to gain privileges via a crafted application, a...
CVE-2016-3899
- EPSS 0.27%
- Veröffentlicht 11.09.2016 21:59:44
- Zuletzt bearbeitet 12.04.2025 10:46:40
OMXCodec.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 does not validate a certain pointer, which allows remote attackers to cause a denial o...
CVE-2016-3898
- EPSS 0.07%
- Veröffentlicht 11.09.2016 21:59:43
- Zuletzt bearbeitet 12.04.2025 10:46:40
Telephony in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 allows attackers to cause a denial of service (loss of locked-screen 911 TTY functionality) via a crafted application that modifies the TTY ...
CVE-2016-3897
- EPSS 0.13%
- Veröffentlicht 11.09.2016 21:59:42
- Zuletzt bearbeitet 12.04.2025 10:46:40
The WifiEnterpriseConfig class in net/wifi/WifiEnterpriseConfig.java in Wi-Fi in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-09-01 includes a password in the return value of a toString method call, which allo...
CVE-2016-3896
- EPSS 0.12%
- Veröffentlicht 11.09.2016 21:59:40
- Zuletzt bearbeitet 12.04.2025 10:46:40
AOSP Mail in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-09-01 allows attackers to obtain sensitive EmailAccountCacheProvider information via a crafted application, aka internal bug 29767043.
CVE-2016-3895
- EPSS 0.11%
- Veröffentlicht 11.09.2016 21:59:39
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the Region::unflatten function in libs/ui/Region.cpp in mediaserver in Android 6.x before 2016-09-01 and 7.0 before 2016-09-01 allows attackers to obtain sensitive information via a crafted application, aka internal bug 29983260.
CVE-2016-3894
- EPSS 0.13%
- Veröffentlicht 11.09.2016 21:59:38
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Qualcomm DMA component in Android before 2016-09-05 on Nexus 6 devices allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 29618014 and Qualcomm internal bug CR1042033.
CVE-2016-3893
- EPSS 0.11%
- Veröffentlicht 11.09.2016 21:59:37
- Zuletzt bearbeitet 12.04.2025 10:46:40
The wcdcal_hwdep_ioctl_shared function in sound/soc/codecs/wcdcal-hwdep.c in the Qualcomm sound codec in Android before 2016-09-05 on Nexus 6P devices does not properly copy firmware data, which allows attackers to obtain sensitive information via a ...
CVE-2016-3892
- EPSS 0.13%
- Veröffentlicht 11.09.2016 21:59:36
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Qualcomm SPMI driver in Android before 2016-09-05 on Nexus 5, 5X, 6, and 6P devices allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 28760543 and Qualcomm internal bug CR1024197.
CVE-2016-3890
- EPSS 0.09%
- Veröffentlicht 11.09.2016 21:59:35
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Java Debug Wire Protocol (JDWP) implementation in adb/sockets.cpp in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-09-01 mishandles socket close operations, which allows attackers to gain privileges via a c...