Vulnerabilities > Google > Android > 7.1.2

DATE CVE VULNERABILITY TITLE RISK
2017-05-12 CVE-2017-0615 Privilege Escalation vulnerability in Google Android Mediatek Power Driver
An elevation of privilege vulnerability in the MediaTek power driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
high complexity
google
7.6
2017-05-12 CVE-2017-0604 Always-Incorrect Control Flow Implementation vulnerability in Google Android
An elevation of privilege vulnerability in the kernel Qualcomm power driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
google CWE-670
critical
9.3
2017-05-12 CVE-2017-0603 Divide By Zero vulnerability in Google Android
A denial of service vulnerability in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
high complexity
google CWE-369
5.4
2017-05-12 CVE-2017-0602 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in Bluetooth could allow a local malicious application to bypass operating system protections that isolate application data from other applications.
network
google CWE-200
4.3
2017-05-12 CVE-2017-0601 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android
An Elevation of Privilege vulnerability in Bluetooth could potentially enable a local malicious application to accept harmful files shared via bluetooth without user permission.
network
google CWE-732
4.3
2017-05-12 CVE-2017-0600 Denial Of Service vulnerability in Google Android Mediaserver
A remote denial of service vulnerability in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
google
7.1
2017-05-12 CVE-2017-0599 Unchecked Return Value vulnerability in Google Android
A remote denial of service vulnerability in libhevc in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
google CWE-252
7.1
2017-05-12 CVE-2017-0598 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the Framework APIs could enable a local malicious application to bypass operating system protections that isolate application data from other applications.
network
google CWE-200
4.3
2017-05-12 CVE-2017-0597 Integer Overflow or Wraparound vulnerability in Google Android
An elevation of privilege vulnerability in Audioserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
network
google CWE-190
critical
9.3
2017-05-12 CVE-2017-0596 Privilege Escalation vulnerability in Google Android Mediaserver
An elevation of privilege vulnerability in libstagefright in Mediaserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
network
google
critical
9.3