Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2017-11-16 CVE-2017-0849 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the Android media framework (libavc).
network
low complexity
google CWE-200
5.3
2017-11-16 CVE-2017-0848 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the Android media framework (libeffects).
network
low complexity
google CWE-200
5.3
2017-11-16 CVE-2017-0840 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the Android media framework (libstagefright).
network
low complexity
google CWE-200
7.5
2017-11-16 CVE-2017-0839 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the Android media framework (libeffects).
network
low complexity
google CWE-200
7.5
2017-11-16 CVE-2017-9701 Information Exposure vulnerability in Google Android
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing OEM unlock/unlock-go fastboot commands data leak may occur, resulting from writing uninitialized stack structure to non-volatile memory.
network
low complexity
google CWE-200
7.5
2017-11-16 CVE-2017-11028 Information Exposure vulnerability in Google Android
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the ISP Camera driver, the contents of an arbitrary kernel address can be leaked to userspace by the function msm_isp_get_stream_common_data().
network
low complexity
google CWE-200
7.5
2017-11-16 CVE-2017-11022 Information Exposure vulnerability in Google Android
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, the probe requests originated from user's phone contains the information elements which specifies the supported wifi features.
network
low complexity
google CWE-200
5.3
2017-11-16 CVE-2017-16715 Information Exposure vulnerability in Moxa products
An Information Exposure issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Version 3.7 and prior.
network
low complexity
moxa CWE-200
7.5
2017-11-16 CVE-2017-1088 Information Exposure vulnerability in Freebsd
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p4, 11.0-RELEASE-p15, 10.4-STABLE, 10.4-RELEASE-p3, and 10.3-RELEASE-p24, the kernel does not properly clear the memory of the kld_file_stat structure before filling the data.
local
low complexity
freebsd CWE-200
3.3
2017-11-16 CVE-2017-1086 Information Exposure vulnerability in Freebsd
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p4, 11.0-RELEASE-p15, 10.4-STABLE, 10.4-RELEASE-p3, and 10.3-RELEASE-p24, not all information in the struct ptrace_lwpinfo is relevant for the state of any thread, and the kernel does not fill the irrelevant bytes or short strings.
local
low complexity
freebsd CWE-200
3.3