Vulnerabilities > Google > Android > 5.0

DATE CVE VULNERABILITY TITLE RISK
2020-04-07 CVE-2016-11046 Improper Input Validation vulnerability in Google Android
An issue was discovered on Samsung mobile devices with JBP(4.3), KK(4.4), and L(5.0/5.1) software.
network
low complexity
google CWE-20
7.5
2020-04-07 CVE-2016-11045 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 5.0/5.1
An issue was discovered on Samsung mobile devices with L(5.0/5.1) software.
local
low complexity
google CWE-119
7.8
2020-04-07 CVE-2016-11044 Improper Verification of Cryptographic Signature vulnerability in Google Android 5.0/5.1/6.0
An issue was discovered on Samsung mobile devices with L(5.0/5.1) and M(6.0) (with Fingerprint support) software.
local
low complexity
google CWE-347
7.8
2020-04-07 CVE-2016-11042 Improper Authentication vulnerability in Google Android 5.0/5.1/6.0
An issue was discovered on Samsung mobile devices with L(5.0/5.1) and M(6.0) software.
network
low complexity
google CWE-287
7.5
2020-02-21 CVE-2014-7914 Incorrect Authorization vulnerability in Google Android
btif/src/btif_dm.c in Android before 5.1 does not properly enforce the temporary nature of a Bluetooth pairing, which allows user-assisted remote attackers to bypass intended access restrictions via crafted Bluetooth packets after the tapping of a crafted NFC tag.
network
low complexity
google CWE-863
8.1
2020-01-24 CVE-2015-1530 Integer Overflow or Wraparound vulnerability in Google Android
media/libmedia/IAudioPolicyService.cpp in Android before 5.1 allows attackers to execute arbitrary code with media_server privileges or cause a denial of service (integer overflow) via a crafted application that provides an invalid array size.
local
low complexity
google CWE-190
7.8
2020-01-24 CVE-2015-1525 Improper Input Validation vulnerability in Google Android
audio/AudioPolicyManagerBase.cpp in Android before 5.1 allows attackers to cause a denial of service (audio_policy application outage) via a crafted application that provides a NULL device address.
local
low complexity
google CWE-20
5.5
2018-11-30 CVE-2018-15835 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android
Android 1.0 through 9.0 has Insecure Permissions.
network
low complexity
google CWE-732
7.5
2018-07-06 CVE-2018-5907 Integer Overflow or Wraparound vulnerability in Google Android
Possible buffer overflow in msm_adsp_stream_callback_put due to lack of input validation of user-provided data that leads to integer overflow in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.
local
low complexity
google CWE-190
7.8
2018-07-06 CVE-2018-11304 Integer Overflow or Wraparound vulnerability in Google Android
Possible buffer overflow in msm_adsp_stream_callback_put due to lack of input validation of user-provided data that leads to integer overflow in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.
local
low complexity
google CWE-190
7.8