Google

Android

7895 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.25%
  • Veröffentlicht 09.05.2016 10:59:10
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The NVIDIA video driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27251090.

  • EPSS 0.04%
  • Veröffentlicht 09.05.2016 10:59:09
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Qualcomm TrustZone component in Android before 2016-05-01 on Nexus 6 and Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 25913059.

  • EPSS 1.43%
  • Veröffentlicht 09.05.2016 10:59:08
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Qualcomm TrustZone component in Android before 2016-05-01 on Nexus 5, Nexus 6, Nexus 7 (2013), and Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 24968809.

  • EPSS 0.04%
  • Veröffentlicht 09.05.2016 10:59:07
  • Zuletzt bearbeitet 12.04.2025 10:46:40

libbacktrace/Backtrace.cpp in debuggerd in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 allows attackers to gain privileges via an application containing a crafted symbol name, aka internal bug 27299236.

  • EPSS 1.22%
  • Veröffentlicht 09.05.2016 10:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

libFLAC/stream_decoder.c in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not prevent free operations on uninitialized memory, which allows remote attackers to execute arbitrary code o...

  • EPSS 1.22%
  • Veröffentlicht 09.05.2016 10:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

libAACdec/src/aacdec_drc.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not properly limit the number of threads, which allows remote attackers to execute arbitrary code or cause...

  • EPSS 0.04%
  • Veröffentlicht 09.05.2016 10:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

server/TetherController.cpp in the tethering controller in netd, as distributed with Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not properly validate upstream interface names, which allows attacke...

  • EPSS 0.04%
  • Veröffentlicht 05.05.2016 21:59:07
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The msm_ipc_router_bind_control_port function in net/ipc_router/ipc_router_core.c in the IPC router kernel module for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does no...

  • EPSS 50.01%
  • Veröffentlicht 05.05.2016 01:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The ASN.1 implementation in OpenSSL before 1.0.1o and 1.0.2 before 1.0.2c allows remote attackers to execute arbitrary code or cause a denial of service (buffer underflow and memory corruption) via an ANY field in crafted serialized data, aka the "ne...

  • EPSS 78.05%
  • Veröffentlicht 05.05.2016 01:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The AES-NI implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h does not consider memory allocation during a certain padding check, which allows remote attackers to obtain sensitive cleartext information via a padding-oracle attack against...