Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2018-07-06 CVE-2018-5831 Use After Free vulnerability in Google Android
In the KGSL driver in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a reference counting error can lead to a Use After Free condition.
local
low complexity
google CWE-416
7.8
2018-07-06 CVE-2018-5830 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
While processing the HTT_T2H_MSG_TYPE_MGMT_TX_COMPL_IND message, a buffer overflow can potentially occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.
local
low complexity
google CWE-119
7.8
2018-07-06 CVE-2018-5829 Out-of-bounds Read vulnerability in Google Android
In wlan_hdd_cfg80211_set_privacy_ibss() in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a buffer over-read can potentially occur.
network
low complexity
google CWE-125
7.5
2018-07-06 CVE-2018-3597 Improper Input Validation vulnerability in Google Android
In the ADSP RPC driver in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, an arbitrary kernel write can occur.
local
low complexity
google CWE-20
7.8
2018-07-06 CVE-2018-3577 Integer Overflow or Wraparound vulnerability in Google Android
While processing fragments, when the fragment count becomes very large, an integer overflow leading to a buffer overflow can occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.
network
low complexity
google CWE-190
7.5
2018-07-06 CVE-2018-3569 Out-of-bounds Read vulnerability in Google Android
A buffer over-read can occur during a fast initial link setup (FILS) connection in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.
local
low complexity
google CWE-125
7.8
2018-07-06 CVE-2018-3564 Use After Free vulnerability in Google Android
In the FastRPC driver in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a Use After Free condition can occur when mapping on the remote processor fails.
local
low complexity
google CWE-416
7.8
2018-07-06 CVE-2017-18159 Out-of-bounds Read vulnerability in Google Android
In Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, while processing a StrHwPlatform with length smaller than EFICHIPINFO_MAX_ID_LENGTH, an array out of bounds access may occur.
local
low complexity
google CWE-125
7.8
2018-07-06 CVE-2017-18158 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
Possible buffer overflows and array out of bounds accesses in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05 while flashing images.
local
low complexity
google CWE-119
7.8
2018-07-06 CVE-2017-15856 Double Free vulnerability in Google Android
Due to a race condition while processing the power stats debug file to read status, a double free condition can occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.
local
high complexity
google CWE-415
7.0