Lucene search

K

Android Security Vulnerabilities

cve
cve

CVE-2016-2427

The AES-GCM specification in RFC 5084, as used in Android 5.x and 6.x, recommends 12 octets for the aes-ICVlen parameter field, which might make it easier for attackers to defeat a cryptographic protection mechanism and discover an authentication key via a crafted application, aka internal bug 2623...

5.5CVSS

6.2AI Score

0.001EPSS

2016-04-18 12:59 AM
17
cve
cve

CVE-2016-2428

libAACdec/src/aacdec_drc.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not properly limit the number of threads, which allows remote attackers to execute arbitrary code or cause a denial of service (stack memory corruption) vi...

9.8CVSS

8.7AI Score

0.001EPSS

2016-05-09 10:59 AM
21
cve
cve

CVE-2016-2429

libFLAC/stream_decoder.c in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not prevent free operations on uninitialized memory, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corrupti...

9.8CVSS

8.8AI Score

0.001EPSS

2016-05-09 10:59 AM
17
cve
cve

CVE-2016-2430

libbacktrace/Backtrace.cpp in debuggerd in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 allows attackers to gain privileges via an application containing a crafted symbol name, aka internal bug 27299236.

7.8CVSS

7.5AI Score

0.001EPSS

2016-05-09 10:59 AM
28
cve
cve

CVE-2016-2431

The Qualcomm TrustZone component in Android before 2016-05-01 on Nexus 5, Nexus 6, Nexus 7 (2013), and Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 24968809.

7.8CVSS

7.4AI Score

0.001EPSS

2016-05-09 10:59 AM
43
2
cve
cve

CVE-2016-2432

The Qualcomm TrustZone component in Android before 2016-05-01 on Nexus 6 and Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 25913059.

7.8CVSS

7.5AI Score

0.001EPSS

2016-05-09 10:59 AM
24
cve
cve

CVE-2016-2433

The Broadcom Wi-Fi driver for Android, as used by BlackBerry smartphones before Build AAE570, allows remote attackers to execute arbitrary code in the context of the kernel.

8.8CVSS

8.9AI Score

0.002EPSS

2017-04-21 08:59 PM
16
cve
cve

CVE-2016-2434

The NVIDIA video driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27251090.

7.8CVSS

7.4AI Score

0.001EPSS

2016-05-09 10:59 AM
20
cve
cve

CVE-2016-2435

The NVIDIA video driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27297988.

7.8CVSS

7.5AI Score

0.001EPSS

2016-05-09 10:59 AM
22
cve
cve

CVE-2016-2436

The NVIDIA video driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27299111.

7.8CVSS

7.5AI Score

0.001EPSS

2016-05-09 10:59 AM
20
cve
cve

CVE-2016-2437

The NVIDIA video driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27436822.

7.8CVSS

7.5AI Score

0.001EPSS

2016-05-09 10:59 AM
21
cve
cve

CVE-2016-2439

Buffer overflow in btif/src/btif_dm.c in Bluetooth in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 allows remote attackers to execute arbitrary code via a long PIN value, aka internal bug 27411268.

8.8CVSS

8.2AI Score

0.002EPSS

2016-05-09 10:59 AM
20
cve
cve

CVE-2016-2440

libs/binder/IPCThreadState.cpp in Binder in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 mishandles object references, which allows attackers to gain privileges via a crafted application, aka internal bug 27252896.

7.8CVSS

7.4AI Score

0.001EPSS

2016-05-09 10:59 AM
12
cve
cve

CVE-2016-2441

The Qualcomm buspm driver in Android before 2016-05-01 on Nexus 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 26354602.

7CVSS

7AI Score

0.001EPSS

2016-05-09 10:59 AM
23
cve
cve

CVE-2016-2442

The Qualcomm buspm driver in Android before 2016-05-01 on Nexus 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 26494907.

7CVSS

7AI Score

0.001EPSS

2016-05-09 10:59 AM
18
cve
cve

CVE-2016-2443

The Qualcomm MDP driver in Android before 2016-05-01 on Nexus 5 and Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 26404525.

7CVSS

7AI Score

0.001EPSS

2016-05-09 10:59 AM
23
cve
cve

CVE-2016-2444

The NVIDIA media driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27208332.

7CVSS

7AI Score

0.001EPSS

2016-05-09 10:59 AM
15
cve
cve

CVE-2016-2445

The NVIDIA media driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27253079.

7CVSS

7AI Score

0.001EPSS

2016-05-09 10:59 AM
13
cve
cve

CVE-2016-2446

The NVIDIA media driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27441354.

7CVSS

7AI Score

0.001EPSS

2016-05-09 10:59 AM
15
cve
cve

CVE-2016-2448

media/libmediaplayerservice/nuplayer/NuPlayerStreamListener.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not properly validate entry data structures, which allows attackers to gain privileges via a crafted application, as dem...

7.8CVSS

7.5AI Score

0.001EPSS

2016-05-09 10:59 AM
19
cve
cve

CVE-2016-2449

services/camera/libcameraservice/device3/Camera3Device.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate template IDs, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining ...

7.8CVSS

7.5AI Score

0.001EPSS

2016-05-09 10:59 AM
22
cve
cve

CVE-2016-2450

codecs/on2/enc/SoftVPXEncoder.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate OMX buffer sizes, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Sig...

7.8CVSS

7.6AI Score

0.001EPSS

2016-05-09 10:59 AM
16
cve
cve

CVE-2016-2451

codecs/on2/dec/SoftVPX.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate VPX output buffer sizes, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Sig...

7.8CVSS

7.6AI Score

0.001EPSS

2016-05-09 10:59 AM
13
cve
cve

CVE-2016-2452

codecs/amrnb/dec/SoftAMR.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate buffer sizes, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or...

7.8CVSS

7.7AI Score

0.001EPSS

2016-05-09 10:59 AM
16
cve
cve

CVE-2016-2454

The Qualcomm hardware video codec in Android before 2016-05-01 on Nexus 5 devices allows remote attackers to cause a denial of service (reboot) via a crafted file, aka internal bug 26221024.

5.5CVSS

5.7AI Score

0.002EPSS

2016-05-09 10:59 AM
22
cve
cve

CVE-2016-2456

The MediaTek Wi-Fi driver in Android before 2016-05-01 on Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 27275187.

7CVSS

7AI Score

0.001EPSS

2016-05-09 10:59 AM
14
cve
cve

CVE-2016-2457

server/pm/UserManagerService.java in Wi-Fi in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 allows attackers to bypass intended restrictions on Wi-Fi configuration changes by leveraging guest access, aka internal bug 27411179.

5.5CVSS

6.2AI Score

0.001EPSS

2016-05-09 10:59 AM
16
cve
cve

CVE-2016-2458

The compose functionality in AOSP Mail in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not properly restrict attachments, which allows attackers to obtain sensitive information via a crafted application, related to ComposeActivity.java and ComposeActivityEmail.java...

5.5CVSS

5.5AI Score

0.001EPSS

2016-05-09 10:59 AM
13
cve
cve

CVE-2016-2459

mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not initialize certain data structures, which allows attackers to obtain sensitive information via a crafted application, related to IGraphicBufferConsumer.cpp and IGraphicBufferProducer....

5.5CVSS

5.5AI Score

0.001EPSS

2016-05-09 10:59 AM
24
cve
cve

CVE-2016-2460

mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not initialize certain data structures, which allows attackers to obtain sensitive information via a crafted application, related to IGraphicBufferConsumer.cpp and IGraphicBufferProducer....

5.5CVSS

5.5AI Score

0.001EPSS

2016-05-09 10:59 AM
19
cve
cve

CVE-2016-2461

OpenSSLCipher.java in Conscrypt in Android 6.x before 2016-05-01 mishandles resets of the Additional Authenticated Data (AAD) array, which allows attackers to spoof message authentication via unspecified vectors, aka internal bugs 27324690 and 27696681.

7CVSS

7.1AI Score

0.001EPSS

2016-05-09 10:59 AM
21
cve
cve

CVE-2016-2462

OpenSSLCipher.java in Conscrypt in Android 6.x before 2016-05-01 mishandles updates of the Additional Authenticated Data (AAD) array, which allows attackers to spoof message authentication via unspecified vectors, aka internal bug 27371173.

7CVSS

7AI Score

0.001EPSS

2016-05-09 10:59 AM
20
cve
cve

CVE-2016-2463

Multiple integer overflows in the h264dec component in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media f...

8.4CVSS

8.4AI Score

0.002EPSS

2016-06-13 01:59 AM
22
cve
cve

CVE-2016-2464

libvpx in libwebm in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted mkv file, aka internal bug 23167726.

7.8CVSS

8AI Score

0.007EPSS

2016-06-13 01:59 AM
18
cve
cve

CVE-2016-2465

The Qualcomm video driver in Android before 2016-06-01 on Nexus 5, 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 27407865.

7.8CVSS

7.6AI Score

0.001EPSS

2016-06-13 01:59 AM
20
cve
cve

CVE-2016-2466

The Qualcomm sound driver in Android before 2016-06-01 on Nexus 6 devices allows attackers to gain privileges via a crafted application, aka internal bug 27947307.

7.8CVSS

7.6AI Score

0.001EPSS

2016-06-13 01:59 AM
21
cve
cve

CVE-2016-2467

The Qualcomm sound driver in Android before 2016-06-01 on Nexus 5 devices allows attackers to gain privileges via a crafted application, aka internal bug 28029010.

7.8CVSS

7.6AI Score

0.001EPSS

2016-06-13 01:59 AM
17
cve
cve

CVE-2016-2468

The Qualcomm GPU driver in Android before 2016-06-01 on Nexus 5, 5X, 6, 6P, and 7 devices allows attackers to gain privileges via a crafted application, aka internal bug 27475454.

7.8CVSS

7.6AI Score

0.001EPSS

2016-06-13 01:59 AM
22
cve
cve

CVE-2016-2469

The Qualcomm sound driver in Android before 2016-06-01 on Nexus 5, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 27531992.

7.8CVSS

7.6AI Score

0.001EPSS

2016-06-13 01:59 AM
27
4
cve
cve

CVE-2016-2470

The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 27662174.

7.8CVSS

8AI Score

0.001EPSS

2016-06-13 01:59 AM
18
cve
cve

CVE-2016-2471

The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 27773913.

7.8CVSS

8AI Score

0.001EPSS

2016-06-13 01:59 AM
19
cve
cve

CVE-2016-2472

The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 27776888.

7.8CVSS

8AI Score

0.001EPSS

2016-06-13 01:59 AM
15
cve
cve

CVE-2016-2473

The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 27777501.

9.8CVSS

9.1AI Score

0.001EPSS

2016-06-13 01:59 AM
20
cve
cve

CVE-2016-2474

The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 5X devices allows attackers to gain privileges via a crafted application, aka internal bug 27424603.

7.8CVSS

7.6AI Score

0.001EPSS

2016-06-13 01:59 AM
19
cve
cve

CVE-2016-2475

The Broadcom Wi-Fi driver in Android before 2016-06-01 on Nexus 5, Nexus 6, Nexus 6P, Nexus 7 (2013), Nexus 9, Nexus Player, and Pixel C devices allows attackers to gain privileges for certain system calls via a crafted application, aka internal bug 26425765.

7.8CVSS

8AI Score

0.001EPSS

2016-06-13 01:59 AM
20
cve
cve

CVE-2016-2476

mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 does not validate OMX buffer sizes, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27...

7.8CVSS

8.1AI Score

0.001EPSS

2016-06-13 01:59 AM
22
cve
cve

CVE-2016-2477

mm-video-v4l2/vidc/vdec/src/omx_vdec_msm8974.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles pointers, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or Signatur...

7.8CVSS

8AI Score

0.001EPSS

2016-06-13 01:59 AM
20
cve
cve

CVE-2016-2478

mm-video-v4l2/vidc/vdec/src/omx_vdec_msm8974.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles pointers, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or Signatur...

7.8CVSS

8AI Score

0.001EPSS

2016-06-13 01:59 AM
15
cve
cve

CVE-2016-2479

The mm-video-v4l2 vdec component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles a buffer count, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem ...

7.8CVSS

8.1AI Score

0.001EPSS

2016-06-13 01:59 AM
23
cve
cve

CVE-2016-2480

The mm-video-v4l2 vidc component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 does not validate certain OMX parameter data structures, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining S...

7.8CVSS

8AI Score

0.001EPSS

2016-06-13 01:59 AM
19
Total number of security vulnerabilities7147