Vulnerabilities > Google > Android > 4.3

DATE CVE VULNERABILITY TITLE RISK
2015-10-06 CVE-2015-6605 Unspecified vulnerability in Google Android
mediaserver in Android before 5.1.1 LMY48T allows attackers to cause a denial of service (process crash) via unspecified vectors, aka internal bugs 20915134 and 23142203, a different vulnerability than CVE-2015-7718.
network
low complexity
google
5.0
2015-10-06 CVE-2015-6604 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23129786.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-6603 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23227354.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-6601 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 22935234.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-6600 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 22882938.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-6599 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23416608.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-6598 Improper Input Validation vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23306638.
network
low complexity
google CWE-20
critical
10.0
2015-10-06 CVE-2015-6596 Permissions, Privileges, and Access Controls vulnerability in Google Android
mediaserver in Android before 5.1.1 LMY48T allows attackers to gain privileges via a crafted application, aka internal bugs 20731946 and 20719651, a different vulnerability than CVE-2015-7717.
network
google CWE-264
critical
9.3
2015-10-06 CVE-2015-3879 Permissions, Privileges, and Access Controls vulnerability in Google Android
Media Player Framework in Android before 5.1.1 LMY48T allows attackers to gain privileges via a crafted application, aka internal bug 23223325.
network
google CWE-264
critical
9.3
2015-10-06 CVE-2015-3877 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
Skia, as used in Android before 5.1.1 LMY48T, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 20723696.
network
low complexity
google CWE-119
critical
10.0