Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2017-06-14 CVE-2017-0650 Information Exposure vulnerability in Linux Kernel 3.10/3.18
An information disclosure vulnerability in the Synaptics touchscreen driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2017-06-14 CVE-2017-0647 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in libziparchive could enable a local malicious application to access data outside of its permission levels.
local
low complexity
google CWE-200
5.5
2017-06-14 CVE-2017-0646 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in Bluetooth component could enable a local malicious application to access data outside of its permission levels.
local
low complexity
google CWE-200
5.5
2017-06-14 CVE-2017-0645 Information Exposure vulnerability in Google Android
An elevation of privilege vulnerability in Bluetooth could enable a local malicious application to access data outside of its permission levels.
local
low complexity
google CWE-200
5.5
2017-06-14 CVE-2017-0639 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in Bluetooth component could enable a local malicious application to access data outside of its permission levels.
local
low complexity
google CWE-200
5.5
2017-06-13 CVE-2017-8239 Information Exposure vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, userspace-controlled parameters for flash initialization are not sanitized potentially leading to exposure of kernel memory.
local
low complexity
google CWE-200
5.5
2017-06-13 CVE-2016-10339 Information Exposure vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, HLOS can overwite secure memory or read contents of the keystore.
local
low complexity
google CWE-200
7.1
2017-06-13 CVE-2015-9032 Information Exposure vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a DRM key was exposed to QTEE applications.
local
low complexity
google CWE-200
3.3
2017-06-13 CVE-2015-9031 Information Exposure vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a TZ memory address is exposed to HLOS by HDCP.
local
low complexity
google CWE-200
3.3
2017-06-13 CVE-2017-9605 Information Exposure vulnerability in Linux Kernel
The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW_GB_SURFACE_CREATE) in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.11.4 defines a backup_handle variable but does not give it an initial value.
local
low complexity
linux CWE-200
5.5