Vulnerabilities > Numeric Errors

DATE CVE VULNERABILITY TITLE RISK
2016-08-06 CVE-2016-6510 Numeric Errors vulnerability in Wireshark
Off-by-one error in epan/dissectors/packet-rlc.c in the RLC dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) via a crafted packet.
network
high complexity
wireshark CWE-189
5.9
2016-08-06 CVE-2014-9876 Numeric Errors vulnerability in Google Android
drivers/char/diag/diagfwd.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5, 5X, 6, 6P, and 7 (2013) devices mishandles certain integer values, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28767796 and Qualcomm internal bug CR483408.
local
low complexity
google CWE-189
7.8
2016-07-11 CVE-2016-2507 Numeric Errors vulnerability in Google Android
Integer overflow in codecs/on2/h264dec/source/h264bsd_storage.c in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-07-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 28532266.
local
low complexity
google CWE-189
7.8
2016-07-11 CVE-2015-8891 Numeric Errors vulnerability in Google Android
Multiple integer overflows in app/aboot/aboot.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices allow attackers to bypass intended access restrictions via a crafted image, aka Android internal bug 28842418 and Qualcomm internal bug CR813930.
local
low complexity
google CWE-189
7.8
2016-07-11 CVE-2015-8888 Numeric Errors vulnerability in Google Android
Integer overflow in app/aboot/aboot.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices allows attackers to bypass intended access restrictions via a crafted block count and block size of a sparse header, aka Android internal bug 28822465 and Qualcomm internal bug CR813933.
local
low complexity
google CWE-189
7.8
2016-07-11 CVE-2014-9801 Numeric Errors vulnerability in Google Android
Multiple integer overflows in lib/libfdt/fdt_rw.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices allow attackers to gain privileges via a crafted application, aka Android internal bug 28822060 and Qualcomm internal bug CR705078.
local
low complexity
google CWE-189
7.8
2016-07-11 CVE-2014-9800 Numeric Errors vulnerability in Google Android
Integer overflow in lib/heap/heap.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28822150 and Qualcomm internal bug CR692478.
local
low complexity
google CWE-189
7.8
2016-07-11 CVE-2014-9795 Numeric Errors vulnerability in Google Android
app/aboot/aboot.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices does not properly check for an integer overflow, which allows attackers to bypass intended access restrictions via crafted start and size values, aka Android internal bug 28820720 and Qualcomm internal bug CR681957, a related issue to CVE-2014-4325.
local
low complexity
google CWE-189
7.8
2016-07-11 CVE-2014-9792 Numeric Errors vulnerability in Google Android
arch/arm/mach-msm/ipc_router.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices uses an incorrect integer data type, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28769399 and Qualcomm internal bug CR550606.
local
low complexity
google CWE-189
7.8
2016-07-11 CVE-2014-9787 Numeric Errors vulnerability in Google Android
Integer overflow in drivers/misc/qseecom.c in the Qualcomm components in Android before 2016-07-05 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28571496 and Qualcomm internal bug CR545764.
local
low complexity
google CWE-189
7.8