Vulnerabilities > Google > Android > 2.1

DATE CVE VULNERABILITY TITLE RISK
2015-10-06 CVE-2015-6604 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23129786.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-6603 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23227354.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-6601 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 22935234.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-6600 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 22882938.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-6599 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23416608.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-6598 Improper Input Validation vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23306638.
network
low complexity
google CWE-20
critical
10.0
2015-10-06 CVE-2015-6596 Permissions, Privileges, and Access Controls vulnerability in Google Android
mediaserver in Android before 5.1.1 LMY48T allows attackers to gain privileges via a crafted application, aka internal bugs 20731946 and 20719651, a different vulnerability than CVE-2015-7717.
network
google CWE-264
critical
9.3
2015-10-06 CVE-2015-3879 Permissions, Privileges, and Access Controls vulnerability in Google Android
Media Player Framework in Android before 5.1.1 LMY48T allows attackers to gain privileges via a crafted application, aka internal bug 23223325.
network
google CWE-264
critical
9.3
2015-10-06 CVE-2015-3877 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
Skia, as used in Android before 5.1.1 LMY48T, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 20723696.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-3875 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libutils in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted audio file, aka internal bug 22952485.
network
low complexity
google CWE-119
critical
10.0