Vulnerabilities > Google > Android > 7.1.2

DATE CVE VULNERABILITY TITLE RISK
2017-07-06 CVE-2017-0665 Improper Input Validation vulnerability in Google Android
A elevation of privilege vulnerability in the Android framework.
network
google CWE-20
critical
9.3
2017-07-06 CVE-2017-0664 Unspecified vulnerability in Google Android
A elevation of privilege vulnerability in the Android framework.
network
google
critical
9.3
2017-06-14 CVE-2017-0663 Out-of-bounds Write vulnerability in Google Android
A remote code execution vulnerability in libxml2 could enable an attacker using a specially crafted file to execute arbitrary code within the context of an unprivileged process.
local
low complexity
google CWE-787
7.8
2017-06-14 CVE-2017-0649 Privilege Escalation vulnerability in Google Android 7.1.2
An elevation of privilege vulnerability in the MediaTek sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
google
7.6
2017-06-14 CVE-2017-0647 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in libziparchive could enable a local malicious application to access data outside of its permission levels.
network
google CWE-200
4.3
2017-06-14 CVE-2017-0646 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in Bluetooth component could enable a local malicious application to access data outside of its permission levels.
network
google CWE-200
4.3
2017-06-14 CVE-2017-0645 Information Exposure vulnerability in Google Android
An elevation of privilege vulnerability in Bluetooth could enable a local malicious application to access data outside of its permission levels.
network
google CWE-200
4.3
2017-06-14 CVE-2017-0642 Memory Corruption vulnerability in Google Android Media Framework
A remote denial of service vulnerability in libhevc in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
google
7.1
2017-06-14 CVE-2017-0641 Improper Initialization vulnerability in Google Android
A remote denial of service vulnerability in libvpx in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
google CWE-665
7.1
2017-06-14 CVE-2017-0639 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in Bluetooth component could enable a local malicious application to access data outside of its permission levels.
network
google CWE-200
4.3