Vulnerabilities > Google > Android

DATE CVE VULNERABILITY TITLE RISK
2017-05-12 CVE-2017-0601 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android
An Elevation of Privilege vulnerability in Bluetooth could potentially enable a local malicious application to accept harmful files shared via bluetooth without user permission.
local
low complexity
google CWE-732
5.5
2017-05-12 CVE-2017-0600 Unspecified vulnerability in Google Android
A remote denial of service vulnerability in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
local
low complexity
google
5.5
2017-05-12 CVE-2017-0599 Unchecked Return Value vulnerability in Google Android
A remote denial of service vulnerability in libhevc in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
local
low complexity
google CWE-252
5.5
2017-05-12 CVE-2017-0598 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the Framework APIs could enable a local malicious application to bypass operating system protections that isolate application data from other applications.
local
low complexity
google CWE-200
5.5
2017-05-12 CVE-2017-0597 Integer Overflow or Wraparound vulnerability in Google Android
An elevation of privilege vulnerability in Audioserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google CWE-190
7.8
2017-05-12 CVE-2017-0596 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in libstagefright in Mediaserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google
7.8
2017-05-12 CVE-2017-0595 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in libstagefright in Mediaserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google
7.8
2017-05-12 CVE-2017-0594 Classic Buffer Overflow vulnerability in Google Android
An elevation of privilege vulnerability in codecs/aacenc/SoftAACEncoder2.cpp in libstagefright in Mediaserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google CWE-120
7.8
2017-05-12 CVE-2017-0593 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android
An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to obtain access to custom permissions.
local
low complexity
google CWE-732
7.8
2017-05-12 CVE-2017-0592 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in FLACExtractor.cpp in libstagefright in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
local
low complexity
google CWE-119
7.8