Vulnerabilities > Google > Android > 4.4

DATE CVE VULNERABILITY TITLE RISK
2017-01-12 CVE-2016-6770 Improper Access Control vulnerability in Google Android
An elevation of privilege vulnerability in the Framework API could enable a local malicious application to access system functions beyond its access level.
network
google CWE-284
4.3
2017-01-12 CVE-2016-6767 Resource Management Errors vulnerability in Google Android
A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
google CWE-399
7.1
2017-01-12 CVE-2016-6766 Data Processing Errors vulnerability in Google Android
A denial of service vulnerability in libmedia and libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
google CWE-19
7.1
2017-01-12 CVE-2016-6765 Data Processing Errors vulnerability in Google Android
A denial of service vulnerability in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
google CWE-19
7.1
2017-01-12 CVE-2016-6764 Resource Management Errors vulnerability in Google Android
A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
google CWE-399
7.1
2017-01-12 CVE-2016-6763 Improper Access Control vulnerability in Google Android
A denial of service vulnerability in Telephony could enable a local malicious application to use a specially crafted file to cause a device hang or reboot.
network
google CWE-284
7.1
2016-12-13 CVE-2016-6722 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in libstagefright in Mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious application to access data outside of its permission levels.
network
google CWE-200
4.3
2016-12-13 CVE-2016-6720 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in libstagefright in Mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious application to access data outside of its permission levels.
network
google CWE-200
4.3
2016-12-13 CVE-2016-6712 Improper Input Validation vulnerability in Google Android
A remote denial of service vulnerability in libvpx in Mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-11-01 could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
google CWE-20
7.1
2016-12-13 CVE-2016-6711 Improper Input Validation vulnerability in Google Android
A remote denial of service vulnerability in libvpx in Mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-11-01 could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
google CWE-20
7.1