Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2018-12-20 CVE-2018-11964 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android
In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Exposing the hashed content in /etc/passwd may lead to security issue.
local
low complexity
google CWE-732
7.8
2018-12-20 CVE-2018-11963 Out-of-bounds Read vulnerability in Google Android
In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Buffer overread may occur due to non-null terminated strings while processing vsprintf in camera jpeg driver.
local
low complexity
google CWE-125
7.8
2018-12-20 CVE-2018-11961 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Possibility of accessing out of bound vector index When updating some GNSS configurations.
local
low complexity
google CWE-119
7.8
2018-12-20 CVE-2018-11960 Use After Free vulnerability in Google Android
In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, A use after free condition can occur in the SPS driver which can lead to error in kernel.
local
low complexity
google CWE-416
7.8
2018-12-20 CVE-2017-9704 Use After Free vulnerability in Google Android
In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, There is no synchronization between msm_vb2 buffer operations which can lead to use after free.
local
low complexity
google CWE-416
7.8
2018-12-07 CVE-2018-9577 Out-of-bounds Write vulnerability in Google Android 9.0
In impd_parametric_drc_parse_gain_set_params of impd_drc_static_payload.c there is a possible out of bounds write due to missing bounds check.
local
low complexity
google CWE-787
7.8
2018-12-07 CVE-2018-9576 Out-of-bounds Write vulnerability in Google Android 9.0
In impd_parse_parametric_drc_instructions of impd_drc_static_payload.c there is a possible out of bounds write due to missing bounds check.
local
low complexity
google CWE-787
7.8
2018-12-07 CVE-2018-9575 Out-of-bounds Write vulnerability in Google Android 9.0
In impd_parse_dwnmix_instructions of impd_drc_static_payload.c there is a possible out of bounds write due to missing bounds check.
local
low complexity
google CWE-787
7.8
2018-12-07 CVE-2018-9574 Out-of-bounds Write vulnerability in Google Android 9.0
In impd_parse_split_drc_characteristic of impd_drc_static_payload.c there is a possible out of bounds write due to missing bounds check.
local
low complexity
google CWE-787
7.8
2018-12-07 CVE-2018-9573 Out-of-bounds Write vulnerability in Google Android 9.0
In impd_parse_filt_block of impd_drc_dynamic_payload.c there is a possible out of bounds write due to missing bounds check.
local
low complexity
google CWE-787
7.8