Vulnerabilities > Google > Android > 4.1

DATE CVE VULNERABILITY TITLE RISK
2017-08-09 CVE-2017-0738 Information Exposure vulnerability in Google Android
A information disclosure vulnerability in the Android media framework (audioserver).
local
low complexity
google CWE-200
5.5
2017-08-09 CVE-2017-0737 Improper Validation of Array Index vulnerability in Google Android
A elevation of privilege vulnerability in the Android media framework (libstagefright).
local
low complexity
google CWE-129
7.8
2017-08-09 CVE-2017-0731 Release of Invalid Pointer or Reference vulnerability in Google Android
A elevation of privilege vulnerability in the Android media framework (mpeg4 encoder).
local
low complexity
google CWE-763
7.8
2017-08-09 CVE-2017-0726 Missing Release of Resource after Effective Lifetime vulnerability in Google Android
A denial of service vulnerability in the Android media framework (libstagefright).
local
low complexity
google CWE-772
5.5
2017-08-09 CVE-2017-0722 Unspecified vulnerability in Google Android
A remote code execution vulnerability in the Android media framework (h263 decoder).
local
low complexity
google
7.8
2017-08-09 CVE-2017-0714 Unspecified vulnerability in Google Android
A remote code execution vulnerability in the Android media framework (h263 decoder).
local
low complexity
google
7.8
2017-08-09 CVE-2017-0713 Unspecified vulnerability in Google Android
A remote code execution vulnerability in the Android libraries (sfntly).
local
low complexity
google
7.8
2017-08-07 CVE-2015-3839 NULL Pointer Dereference vulnerability in Google Android
The updateMessageStatus function in Android 5.1.1 and earlier allows local users to cause a denial of service (NULL pointer exception and process crash).
local
low complexity
google CWE-476
5.5
2017-07-13 CVE-2017-6249 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the NVIDIA sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google
7.0
2017-06-29 CVE-2017-3750 Unspecified vulnerability in Google Android
On Lenovo VIBE mobile phones, the Lenovo Security Android application allows private data to be backed up and restored via Android Debug Bridge, which allows tampering leading to privilege escalation in conjunction with CVE-2017-3748 and CVE-2017-3749.
high complexity
google
6.4