Vulnerabilities > Google > Android

DATE CVE VULNERABILITY TITLE RISK
2017-06-13 CVE-2015-9030 Missing Authentication for Critical Function vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, the Hypervisor API could be misused to bypass authentication.
local
low complexity
google CWE-306
7.8
2017-06-13 CVE-2015-9029 Improper Access Control vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a vulnerability exists in the access control settings of modem memory.
local
low complexity
google CWE-284
7.8
2017-06-13 CVE-2015-9028 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a cryptographic routine.
local
low complexity
google CWE-119
7.8
2017-06-13 CVE-2015-9027 NULL Pointer Dereference vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, an untrusted pointer dereference vulnerability exists in WideVine DRM.
local
low complexity
google CWE-476
7.8
2017-06-13 CVE-2015-9026 NULL Pointer Dereference vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, an untrusted pointer dereference vulnerability exists in WideVine DRM.
local
low complexity
google CWE-476
7.8
2017-06-13 CVE-2015-9025 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a QTEE application.
local
low complexity
google CWE-119
7.8
2017-06-13 CVE-2015-9024 Improper Access Control vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, some interfaces were improperly exposed to QTEE applications.
local
low complexity
google CWE-284
5.5
2017-06-13 CVE-2015-9023 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in the PlayReady API.
local
low complexity
google CWE-119
7.8
2017-06-13 CVE-2015-9022 Race Condition vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, time-of-check Time-of-use (TOCTOU) Race Conditions exist in several TZ APIs.
local
high complexity
google CWE-362
7.0
2017-06-13 CVE-2015-9021 Improper Access Control vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, access control to SMEM memory was not enabled.
local
low complexity
google CWE-284
5.5