Google

Android

8041 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Veröffentlicht 05.08.2016 20:59:15
  • Zuletzt bearbeitet 06.05.2026 22:30:45

services/audioflinger/Effects.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 does not validate the reply size for an AudioFlinger effect command, which allows attackers to gain privil...

  • EPSS 0.02%
  • Veröffentlicht 05.08.2016 20:59:14
  • Zuletzt bearbeitet 06.05.2026 22:30:45

mm-video-v4l2/vidc/venc/src/omx_video_base.cpp in mediaserver in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 allocates an incorrect amount of memory, which allows attackers to gain privileges via a crafted application, a...

  • EPSS 0.02%
  • Veröffentlicht 05.08.2016 20:59:13
  • Zuletzt bearbeitet 06.05.2026 22:30:45

omx/OMXNodeInstance.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 does not validate the buffer port, which allows attackers to gain privileges via a crafted applica...

  • EPSS 0.02%
  • Veröffentlicht 05.08.2016 20:59:11
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The secure-session feature in the mm-video-v4l2 venc component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 mishandles heap pointers, which allows attackers to gain privileges via a cra...

  • EPSS 0.35%
  • Veröffentlicht 05.08.2016 20:59:10
  • Zuletzt bearbeitet 06.05.2026 22:30:45

exif.c in Matthias Wandel jhead 2.87, as used in libjhead in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01, allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds ac...

  • EPSS 0.84%
  • Veröffentlicht 05.08.2016 20:59:09
  • Zuletzt bearbeitet 06.05.2026 22:30:45

libmedia in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 has certain incorrect declarations, which allows remote attackers to execute arbitrary code or cause a denial of service (NULL poin...

  • EPSS 1.49%
  • Veröffentlicht 05.08.2016 20:59:08
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The ih264d decoder in mediaserver in Android 6.x before 2016-08-01 mishandles slice numbers, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 28673410.

  • EPSS 1.49%
  • Veröffentlicht 05.08.2016 20:59:06
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Integer overflow in codecs/on2/h264dec/source/h264bsd_dpb.c in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 allows remote attackers to execute arbitrary code or cause a d...

  • EPSS 0.01%
  • Veröffentlicht 05.08.2016 20:59:05
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The Qualcomm GPU driver in Android before 2016-08-05 on Nexus 5, 5X, 6, 6P, and 7 (2013) devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28026365 and Qualcomm internal bug CR1002974.

  • EPSS 0.16%
  • Veröffentlicht 05.08.2016 20:59:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

services/core/java/com/android/server/pm/PackageManagerService.java in the framework APIs in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 allows attackers to increase intent-filter priority via a crafted...