Vulnerabilities > Google > Android > 2.2.3

DATE CVE VULNERABILITY TITLE RISK
2016-09-11 CVE-2016-3893 Information Exposure vulnerability in Google Android
The wcdcal_hwdep_ioctl_shared function in sound/soc/codecs/wcdcal-hwdep.c in the Qualcomm sound codec in Android before 2016-09-05 on Nexus 6P devices does not properly copy firmware data, which allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 29512527 and Qualcomm internal bug CR856400.
network
google CWE-200
4.3
2016-09-11 CVE-2016-3892 Information Exposure vulnerability in Google Android
The Qualcomm SPMI driver in Android before 2016-09-05 on Nexus 5, 5X, 6, and 6P devices allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 28760543 and Qualcomm internal bug CR1024197.
network
google CWE-200
4.3
2016-09-11 CVE-2016-3877 Unspecified vulnerability in Google Android
Unspecified vulnerability in Android before 2016-09-01 has unknown impact and attack vectors.
network
low complexity
google
critical
10.0
2016-09-11 CVE-2016-3874 Permissions, Privileges, and Access Controls vulnerability in Google Android
CORE/HDD/src/wlan_hdd_wext.c in the Qualcomm Wi-Fi driver in Android before 2016-09-05 on Nexus 5X devices does not properly validate the arguments array, which allows attackers to gain privileges via a crafted application that sends a WE_UNIT_TEST_CMD command, aka Android internal bug 29944562 and Qualcomm internal bug CR997797.
network
google CWE-264
critical
9.3
2016-09-11 CVE-2016-3873 Permissions, Privileges, and Access Controls vulnerability in Google Android
The NVIDIA kernel in Android before 2016-09-05 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 29518457.
network
google CWE-264
critical
9.3
2016-09-11 CVE-2016-3869 Permissions, Privileges, and Access Controls vulnerability in Google Android
The Broadcom Wi-Fi driver in Android before 2016-09-05 on Nexus 5, Nexus 6, Nexus 6P, Nexus 9, Nexus Player, and Pixel C devices allows attackers to gain privileges via a crafted application, aka Android internal bug 29009982 and Broadcom internal bug RB#96070.
network
google CWE-264
critical
9.3
2016-09-11 CVE-2016-3868 Permissions, Privileges, and Access Controls vulnerability in Google Android
The Qualcomm power driver in Android before 2016-09-05 on Nexus 5X and 6P devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28967028 and Qualcomm internal bug CR1032875.
network
google CWE-264
critical
9.3
2016-09-11 CVE-2016-3867 Permissions, Privileges, and Access Controls vulnerability in Google Android
The Qualcomm IPA driver in Android before 2016-09-05 on Nexus 5X and 6P devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28919863 and Qualcomm internal bug CR1037897.
network
google CWE-264
critical
9.3
2016-09-11 CVE-2016-3866 Permissions, Privileges, and Access Controls vulnerability in Google Android
The Qualcomm sound driver in Android before 2016-09-05 on Nexus 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28868303 and Qualcomm internal bug CR1032820.
network
google CWE-264
critical
9.3
2016-09-11 CVE-2016-3865 Permissions, Privileges, and Access Controls vulnerability in Google Android
The Synaptics touchscreen driver in Android before 2016-09-05 on Nexus 5X and 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 28799389.
network
google CWE-264
critical
9.3