- EPSS 7.14%
- Veröffentlicht 18.04.2016 00:59:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
dhcpcd before 6.10.0, as used in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 and other products, mismanages option lengths, which allows remote attackers to execute arbitrary code or cause a denial of s...
CVE-2016-0850
- EPSS 0.09%
- Veröffentlicht 18.04.2016 00:59:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
The PORCHE_PAIRING_CONFLICT feature in Bluetooth in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows remote attackers to bypass intended pairing restrictions via a crafted device, aka internal bug 265...
CVE-2016-0849
- EPSS 0.02%
- Veröffentlicht 18.04.2016 00:59:13
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple integer overflows in minzip/SysUtil.c in the Recovery Procedure in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allow attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature...
CVE-2016-0848
- EPSS 0.01%
- Veröffentlicht 18.04.2016 00:59:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
Race condition in Download Manager in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows attackers to bypass private-storage file-access restrictions via a crafted application that changes a symlink tar...
CVE-2016-0847
- EPSS 0.02%
- Veröffentlicht 18.04.2016 00:59:11
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Telecom Component in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows attackers to spoof the originating telephone number of a call via a crafted application, as demonstrated by obtaining Signature or SignatureOrSy...
CVE-2016-0846
- EPSS 0.41%
- Veröffentlicht 18.04.2016 00:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
libs/binder/IMemory.cpp in the IMemory Native Interface in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not properly consider the heap size, which allows attackers to gain privileges via a crafted a...
CVE-2016-0844
- EPSS 0.02%
- Veröffentlicht 18.04.2016 00:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Qualcomm RF driver in Android 6.x before 2016-04-01 does not properly restrict access to socket ioctl calls, which allows attackers to gain privileges via a crafted application, aka internal bug 26324307.
CVE-2016-0843
- EPSS 0.02%
- Veröffentlicht 18.04.2016 00:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Qualcomm ARM processor performance-event manager in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows attackers to gain privileges via a crafted application, aka internal bug 25801197.
- EPSS 0.79%
- Veröffentlicht 18.04.2016 00:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
The H.264 decoder in libstagefright in Android 6.x before 2016-04-01 mishandles Memory Management Control Operation (MMCO) data, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted me...
- EPSS 1.22%
- Veröffentlicht 18.04.2016 00:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
media/libmedia/mediametadataretriever.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 mishandles cleared service binders, which allows remote attackers to execute arbitrary code or cau...