Vulnerabilities > Google > Android > 7.1.2

DATE CVE VULNERABILITY TITLE RISK
2017-06-14 CVE-2017-0638 Out-of-bounds Write vulnerability in Google Android 7.1.1/7.1.2
A remote code execution vulnerability in System UI component could enable an attacker using a specially crafted file to execute arbitrary code within the context of an unprivileged process.
network
google CWE-787
6.8
2017-06-14 CVE-2017-0637 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in libhevc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
network
google CWE-119
critical
9.3
2017-06-14 CVE-2017-0636 Privilege Escalation vulnerability in Google Android 7.1.2
An elevation of privilege vulnerability in the MediaTek command queue driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
google
7.6
2017-05-12 CVE-2017-0635 NULL Pointer Dereference vulnerability in Google Android
A remote denial of service vulnerability in HevcUtils.cpp in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
google CWE-476
7.1
2017-05-12 CVE-2017-0625 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the MediaTek command queue driver could enable a local malicious application to access data outside of its permission levels.
network
google CWE-200
4.3
2017-05-12 CVE-2017-0620 Improper Input Validation vulnerability in multiple products
An elevation of privilege vulnerability in the Qualcomm Secure Channel Manager driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
linux google CWE-20
7.6
2017-05-12 CVE-2017-0619 Privilege Escalation vulnerability in Google Android Qualcomm Pin Controller Driver
An elevation of privilege vulnerability in the Qualcomm pin controller driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
linux google
7.6
2017-05-12 CVE-2017-0618 Privilege Escalation vulnerability in Google Android Mediatek Command Queue Driver
An elevation of privilege vulnerability in the MediaTek command queue driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
google
7.6
2017-05-12 CVE-2017-0617 Privilege Escalation vulnerability in Google Android Mediatek Video Driver
An elevation of privilege vulnerability in the MediaTek video driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
google
7.6
2017-05-12 CVE-2017-0616 Privilege Escalation vulnerability in Google Android Mediatek Driver
An elevation of privilege vulnerability in the MediaTek system management interrupt driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
google
7.6