Vulnerabilities > Google > Android

DATE CVE VULNERABILITY TITLE RISK
2017-06-06 CVE-2014-9927 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In UIM in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist.
local
low complexity
google CWE-119
7.8
2017-06-06 CVE-2014-9926 Use After Free vulnerability in Google Android
In GNSS in all Android releases from CAF using the Linux kernel, a Use After Free vulnerability could potentially exist.
local
low complexity
google CWE-416
7.8
2017-06-06 CVE-2014-9925 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In HDR in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist.
local
low complexity
google CWE-119
7.8
2017-06-06 CVE-2014-9924 Numeric Errors vulnerability in Google Android
In 1x in all Android releases from CAF using the Linux kernel, a Signed to Unsigned Conversion Error could potentially occur.
local
low complexity
google CWE-189
7.8
2017-06-06 CVE-2014-9923 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In NAS in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist.
local
low complexity
google CWE-119
7.8
2017-05-23 CVE-2015-1529 Integer Overflow or Wraparound vulnerability in Google Android
Integer overflow in soundtrigger/ISoundTriggerHwService.cpp in Android allows attacks to cause a denial of service via unspecified vectors.
network
low complexity
google CWE-190
7.5
2017-05-16 CVE-2016-10242 Race Condition vulnerability in Google Android
A time-of-check time-of-use race condition could potentially exist in the secure file system in all Android releases from CAF using the Linux kernel.
local
high complexity
google CWE-362
7.0
2017-05-16 CVE-2016-10239 Integer Overflow or Wraparound vulnerability in Google Android
In TrustZone access control policy may potentially be bypassed in all Android releases from CAF using the Linux kernel due to improper input validation an integer overflow vulnerability leading to a buffer overflow could potentially occur and a buffer over-read vulnerability could potentially occur.
local
low complexity
google CWE-190
7.8
2017-05-16 CVE-2016-10238 Permissions, Privileges, and Access Controls vulnerability in Google Android
In QSEE in all Android releases from CAF using the Linux kernel access control may potentially be bypassed due to a page alignment issue.
local
low complexity
google CWE-264
7.8
2017-05-16 CVE-2016-10237 Improper Access Control vulnerability in Google Android
If shared content protection memory were passed as the secure camera memory buffer by the HLOS to a trusted application (TA) in all Android releases from CAF using the Linux kernel, the TA would not detect an issue and it would be treated as secure memory.
local
low complexity
google CWE-284
7.8