Vulnerabilities > Google > Android > 6.0.1

DATE CVE VULNERABILITY TITLE RISK
2016-04-18 CVE-2016-0840 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 6.0/6.0.1
Multiple stack-based buffer underflows in decoder/ih264d_parse_cavlc.c in mediaserver in Android 6.x before 2016-04-01 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 26399350.
network
low complexity
google CWE-119
critical
10.0
2016-04-18 CVE-2016-0839 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 6.0/6.0.1
post_proc/volume_listener.c in mediaserver in Android 6.x before 2016-04-01 mishandles deleted effect context, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 25753245.
network
low complexity
google CWE-119
critical
10.0
2016-04-18 CVE-2016-0838 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
Sonivox in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not check for a negative number of samples, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, related to arm-wt-22k/lib_src/eas_wtengine.c and arm-wt-22k/lib_src/eas_wtsynth.c, aka internal bug 26366256.
network
low complexity
google CWE-119
critical
10.0
2016-04-18 CVE-2016-0837 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
MPEG4Extractor.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read and memory corruption) via a crafted media file, aka internal bug 27208621.
network
low complexity
google CWE-119
critical
10.0
2016-04-18 CVE-2016-0836 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 6.0/6.0.1
Stack-based buffer overflow in decoder/impeg2d_vld.c in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 25812590.
network
low complexity
google CWE-119
critical
10.0
2016-04-18 CVE-2016-0835 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 6.0/6.0.1
decoder/impeg2d_dec_hdr.c in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file that triggers a certain negative value, aka internal bug 26070014.
network
low complexity
google CWE-119
critical
10.0
2016-04-18 CVE-2016-0834 Improper Input Validation vulnerability in Google Android 6.0/6.0.1
An unspecified media codec in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 26220548.
network
low complexity
google CWE-20
critical
10.0
2016-03-12 CVE-2016-1621 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libvpx in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.0 before 2016-03-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, related to libwebm/mkvparser.cpp and other files, aka internal bug 23452792.
network
low complexity
google CWE-119
critical
9.8
2016-03-12 CVE-2016-0832 Permissions, Privileges, and Access Controls vulnerability in Google Android
Setup Wizard in Android 5.1.x before LMY49H and 6.x before 2016-03-01 allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism and delete data via unspecified vectors, aka internal bug 25955042.
local
low complexity
google CWE-264
6.6
2016-03-12 CVE-2016-0831 Information Exposure vulnerability in Google Android
The getDeviceIdForPhone function in internal/telephony/PhoneSubInfoController.java in Telephony in Android 5.x before 5.1.1 LMY49H and 6.x before 2016-03-01 does not check for the READ_PHONE_STATE permission, which allows attackers to obtain sensitive information via a crafted application, aka internal bug 25778215.
network
google CWE-200
4.3