Vulnerabilities > Google > Android

DATE CVE VULNERABILITY TITLE RISK
2017-12-06 CVE-2017-0873 Improper Input Validation vulnerability in Google Android
A denial of service vulnerability in the Android media framework (libmpeg2).
network
low complexity
google CWE-20
6.5
2017-12-06 CVE-2017-0872 Improper Input Validation vulnerability in Google Android
A remote code execution vulnerability in the Android media framework (libskia).
network
low complexity
google CWE-20
8.8
2017-12-06 CVE-2017-0871 Unspecified vulnerability in Google Android 8.0
An elevation of privilege vulnerability in the Android framework (framework base).
local
low complexity
google
7.8
2017-12-06 CVE-2017-0870 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the Android framework (libminikin).
local
low complexity
google
7.8
2017-12-06 CVE-2017-0837 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the Android media framework (libaudiopolicymanager).
local
low complexity
google
7.8
2017-12-05 CVE-2017-9716 Unspecified vulnerability in Google Android
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, the qbt1000 driver implements an alternative channel for usermode applications to talk to QSEE applications.
local
low complexity
google
7.8
2017-12-05 CVE-2017-6211 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the processing of a downlink supplementary services message, a buffer overflow can occur.
network
low complexity
google CWE-119
critical
9.8
2017-12-05 CVE-2017-14918 Use After Free vulnerability in Google Android
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the GPS location wireless interface, a Use After Free condition can occur.
network
low complexity
google CWE-416
critical
9.8
2017-12-05 CVE-2017-14917 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, buffer sizes in the message passing interface are not properly validated.
network
low complexity
google CWE-119
critical
9.8
2017-12-05 CVE-2017-14916 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, buffer sizes in the message passing interface are not properly validated.
network
low complexity
google CWE-119
critical
9.8