CVE-2016-2458
- EPSS 0.13%
- Veröffentlicht 09.05.2016 10:59:36
- Zuletzt bearbeitet 12.04.2025 10:46:40
The compose functionality in AOSP Mail in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not properly restrict attachments, which allows attackers to obtain sensitive information via a crafted application, related to C...
CVE-2016-2457
- EPSS 0.03%
- Veröffentlicht 09.05.2016 10:59:34
- Zuletzt bearbeitet 12.04.2025 10:46:40
server/pm/UserManagerService.java in Wi-Fi in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 allows attackers to bypass intended restrictions on Wi-Fi configuration changes by leveraging guest access, aka internal bug 27411...
- EPSS 0.06%
- Veröffentlicht 09.05.2016 10:59:33
- Zuletzt bearbeitet 12.04.2025 10:46:40
The MediaTek Wi-Fi driver in Android before 2016-05-01 on Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 27275187.
CVE-2016-2454
- EPSS 0.28%
- Veröffentlicht 09.05.2016 10:59:32
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Qualcomm hardware video codec in Android before 2016-05-01 on Nexus 5 devices allows remote attackers to cause a denial of service (reboot) via a crafted file, aka internal bug 26221024.
CVE-2016-2452
- EPSS 0.07%
- Veröffentlicht 09.05.2016 10:59:30
- Zuletzt bearbeitet 12.04.2025 10:46:40
codecs/amrnb/dec/SoftAMR.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate buffer sizes, which allows attackers to gain privileges via a crafted appli...
CVE-2016-2451
- EPSS 0.04%
- Veröffentlicht 09.05.2016 10:59:28
- Zuletzt bearbeitet 12.04.2025 10:46:40
codecs/on2/dec/SoftVPX.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate VPX output buffer sizes, which allows attackers to gain privileges via a craf...
CVE-2016-2450
- EPSS 0.04%
- Veröffentlicht 09.05.2016 10:59:27
- Zuletzt bearbeitet 12.04.2025 10:46:40
codecs/on2/enc/SoftVPXEncoder.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate OMX buffer sizes, which allows attackers to gain privileges via a craf...
CVE-2016-2449
- EPSS 0.04%
- Veröffentlicht 09.05.2016 10:59:26
- Zuletzt bearbeitet 12.04.2025 10:46:40
services/camera/libcameraservice/device3/Camera3Device.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate template IDs, which allows attackers to gain privileges via a c...
CVE-2016-2448
- EPSS 0.04%
- Veröffentlicht 09.05.2016 10:59:25
- Zuletzt bearbeitet 12.04.2025 10:46:40
media/libmediaplayerservice/nuplayer/NuPlayerStreamListener.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not properly validate entry data structures, which allows attackers to ...
CVE-2016-2446
- EPSS 0.06%
- Veröffentlicht 09.05.2016 10:59:24
- Zuletzt bearbeitet 12.04.2025 10:46:40
The NVIDIA media driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27441354.