Vulnerabilities > Google > Android

DATE CVE VULNERABILITY TITLE RISK
2017-04-17 CVE-2016-6726 Unspecified vulnerability in Google Android
Unspecified vulnerability in Qualcomm components in Android on Nexus 6 and Android One devices.
network
low complexity
google
critical
9.8
2017-04-13 CVE-2016-1155 Injection vulnerability in Google Android
HTTP header injection vulnerability in the URLConnection class in Android OS 2.2 through 6.0 allows remote attackers to execute arbitrary scripts or set arbitrary values in cookies.
network
low complexity
google CWE-74
critical
9.8
2017-04-13 CVE-2014-7921 Permissions, Privileges, and Access Controls vulnerability in Google Android
mediaserver in Android 4.0.3 through 5.x before 5.1 allows attackers to gain privileges.
network
low complexity
google CWE-264
critical
9.8
2017-04-13 CVE-2014-7920 Permissions, Privileges, and Access Controls vulnerability in Google Android
mediaserver in Android 2.2 through 5.x before 5.1 allows attackers to gain privileges.
network
low complexity
google CWE-264
critical
9.8
2017-04-12 CVE-2016-5856 Permissions, Privileges, and Access Controls vulnerability in multiple products
Drivers/soc/qcom/spcom.c in the Qualcomm SPCom driver in the Android kernel 2017-03-05 allows local users to gain privileges, a different vulnerability than CVE-2016-5857.
local
high complexity
linux google CWE-264
7.0
2017-04-07 CVE-2017-0578 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the DTS sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google
7.0
2017-04-07 CVE-2017-0566 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek camera driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google
7.0
2017-04-07 CVE-2017-0565 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek thermal driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google
7.0
2017-04-07 CVE-2017-0562 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
low complexity
google
7.8
2017-04-07 CVE-2017-0560 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the factory reset process could enable a local malicious attacker to access data from the previous owner.
local
low complexity
google CWE-200
5.5