Vulnerabilities > Google > Android > 4.3

DATE CVE VULNERABILITY TITLE RISK
2017-05-12 CVE-2017-0592 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in FLACExtractor.cpp in libstagefright in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
network
google CWE-119
critical
9.3
2017-05-12 CVE-2017-0588 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in id3/ID3.cpp in libstagefright in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
network
google CWE-119
critical
9.3
2017-05-12 CVE-2017-0465 Classic Buffer Overflow vulnerability in multiple products
An elevation of privilege vulnerability in the Qualcomm ADSPRPC driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
linux google CWE-120
7.6
2017-05-12 CVE-2016-10282 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek thermal driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
google CWE-264
7.6
2017-05-12 CVE-2016-10281 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek thermal driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
google CWE-264
7.6
2017-05-12 CVE-2016-10280 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek thermal driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
google CWE-264
7.6
2017-05-12 CVE-2016-10276 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the Qualcomm bootloader could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
google CWE-264
critical
9.3
2017-05-12 CVE-2016-10275 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the Qualcomm bootloader could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
google CWE-264
critical
9.3
2017-05-12 CVE-2016-10274 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
google CWE-264
critical
9.3
2017-05-02 CVE-2017-0331 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in multiple products
An elevation of privilege vulnerability in the NVIDIA video driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
google linux CWE-367
critical
9.3