Google

Android

7930 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.11%
  • Veröffentlicht 05.08.2016 20:59:25
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The secure-session feature in the mm-video-v4l2 venc component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 mishandles heap pointers, which allows attackers to obtain sensitive informat...

  • EPSS 0.11%
  • Veröffentlicht 05.08.2016 20:59:24
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The camera APIs in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 allow attackers to bypass intended access restrictions and obtain sensitive information about ANW buffer addresses via a crafted applicatio...

  • EPSS 0.05%
  • Veröffentlicht 05.08.2016 20:59:23
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Shell component in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 does not properly manage the MANAGE_USERS and CREATE_USERS permissions, which allows attackers to bypass intended access restrictions via a crafted appli...

  • EPSS 0.07%
  • Veröffentlicht 05.08.2016 20:59:22
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The framework APIs in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 do not ensure that package data originated from the Package Manager, which allows attackers to bypass an unspecified protection mechanis...

  • EPSS 0.5%
  • Veröffentlicht 05.08.2016 20:59:21
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The telephony component in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 allows remote attackers to cause a denial of service (device crash) via a NITZ time value of 2038-01-19 or later that is mishandled...

  • EPSS 0.19%
  • Veröffentlicht 05.08.2016 20:59:20
  • Zuletzt bearbeitet 12.04.2025 10:46:40

codecs/aacdec/SoftAAC2.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 allows remote attackers to cause a denial of service (device hang or reboot) via crafted ADTS d...

  • EPSS 0.19%
  • Veröffentlicht 05.08.2016 20:59:19
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The ih264d decoder in mediaserver in Android 6.x before 2016-08-01 does not initialize certain structure members, which allows remote attackers to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 29023649.

  • EPSS 0.19%
  • Veröffentlicht 05.08.2016 20:59:18
  • Zuletzt bearbeitet 12.04.2025 10:46:40

decoder/ih264d_api.c in mediaserver in Android 6.x before 2016-08-01 mishandles invalid PPS and SPS NAL units, which allows remote attackers to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 28835995.

  • EPSS 0.19%
  • Veröffentlicht 05.08.2016 20:59:16
  • Zuletzt bearbeitet 12.04.2025 10:46:40

codecs/hevcdec/SoftHEVC.cpp in libstagefright in mediaserver in Android 6.0.1 before 2016-08-01 mishandles decoder errors, which allows remote attackers to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 2...

  • EPSS 0.02%
  • Veröffentlicht 05.08.2016 20:59:15
  • Zuletzt bearbeitet 12.04.2025 10:46:40

services/audioflinger/Effects.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 does not validate the reply size for an AudioFlinger effect command, which allows attackers to gain privil...