Vulnerabilities > Google > Android > 4.4

DATE CVE VULNERABILITY TITLE RISK
2017-04-13 CVE-2014-7921 Permissions, Privileges, and Access Controls vulnerability in Google Android
mediaserver in Android 4.0.3 through 5.x before 5.1 allows attackers to gain privileges.
network
low complexity
google CWE-264
critical
9.8
2017-04-13 CVE-2014-7920 Permissions, Privileges, and Access Controls vulnerability in Google Android
mediaserver in Android 2.2 through 5.x before 5.1 allows attackers to gain privileges.
network
low complexity
google CWE-264
critical
9.8
2017-04-12 CVE-2016-5856 Permissions, Privileges, and Access Controls vulnerability in multiple products
Drivers/soc/qcom/spcom.c in the Qualcomm SPCom driver in the Android kernel 2017-03-05 allows local users to gain privileges, a different vulnerability than CVE-2016-5857.
network
high complexity
linux google CWE-264
7.6
2017-04-07 CVE-2017-0578 Privilege Escalation vulnerability in Google Android DTS Sound Driver
An elevation of privilege vulnerability in the DTS sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
google
7.6
2017-04-07 CVE-2017-0566 Privilege Escalation vulnerability in Google Android MediaTek Camera Driver
An elevation of privilege vulnerability in the MediaTek camera driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
google
7.6
2017-04-07 CVE-2017-0565 Privilege Escalation vulnerability in Google Android MediaTek Thermal Driver
An elevation of privilege vulnerability in the MediaTek thermal driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
google
7.6
2017-04-07 CVE-2017-0562 Privilege Escalation vulnerability in Google Android MediaTek Touchscreen Driver
An elevation of privilege vulnerability in the MediaTek touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
google
critical
9.3
2017-04-07 CVE-2017-0560 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the factory reset process could enable a local malicious attacker to access data from the previous owner.
network
google CWE-200
4.3
2017-04-07 CVE-2017-0559 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in libskia could enable a local malicious application to access data outside of its permission levels.
network
google CWE-200
4.3
2017-04-07 CVE-2017-0558 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in Mediaserver could enable a local malicious application to access data outside of its permission levels.
network
google CWE-200
4.3