Vulnerabilities > Google > Android

DATE CVE VULNERABILITY TITLE RISK
2017-06-14 CVE-2017-0642 Unspecified vulnerability in Google Android
A remote denial of service vulnerability in libhevc in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
local
low complexity
google
5.5
2017-06-14 CVE-2017-0641 Improper Initialization vulnerability in Google Android
A remote denial of service vulnerability in libvpx in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
local
low complexity
google CWE-665
5.5
2017-06-14 CVE-2017-0640 Unspecified vulnerability in Google Android
A remote denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
local
low complexity
google
5.5
2017-06-14 CVE-2017-0639 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in Bluetooth component could enable a local malicious application to access data outside of its permission levels.
local
low complexity
google CWE-200
5.5
2017-06-14 CVE-2017-0638 Out-of-bounds Write vulnerability in Google Android 7.1.1/7.1.2
A remote code execution vulnerability in System UI component could enable an attacker using a specially crafted file to execute arbitrary code within the context of an unprivileged process.
local
low complexity
google CWE-787
7.8
2017-06-14 CVE-2017-0637 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in libhevc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
local
low complexity
google CWE-119
7.8
2017-06-14 CVE-2017-0636 Unspecified vulnerability in Google Android 7.1.2
An elevation of privilege vulnerability in the MediaTek command queue driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google
7.0
2017-06-13 CVE-2017-8242 Race Condition vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a race condition exists in a QTEE driver potentially leading to an arbitrary memory write.
network
high complexity
google CWE-362
5.9
2017-06-13 CVE-2017-8241 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a WLAN function due to an incorrect message length.
local
low complexity
google CWE-119
7.8
2017-06-13 CVE-2017-8240 Out-of-bounds Read vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a kernel driver has an off-by-one buffer over-read vulnerability.
local
low complexity
google CWE-125
7.8