Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2017-01-12 CVE-2016-6788 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek I2C driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google CWE-264
7.0
2017-01-12 CVE-2016-6784 Improper Access Control vulnerability in Google Android 6.0.1
An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google CWE-284
7.0
2017-01-12 CVE-2016-6783 Improper Access Control vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google CWE-284
7.0
2017-01-12 CVE-2016-6772 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in Wi-Fi could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google CWE-264
7.8
2017-01-12 CVE-2016-6768 Improper Access Control vulnerability in Google Android
A remote code execution vulnerability in the Framesequence library could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process.
local
low complexity
google CWE-284
7.8
2017-01-12 CVE-2016-6762 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the libziparchive library could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google CWE-264
7.8
2016-12-13 CVE-2016-6706 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in libstagefright in Mediaserver in Android 7.0 before 2016-11-01 could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google CWE-264
7.8
2016-12-13 CVE-2016-6699 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in libstagefright in Mediaserver in Android 7.0 before 2016-11-01 could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
local
low complexity
google CWE-119
7.8
2016-12-08 CVE-2015-8967 Permissions, Privileges, and Access Controls vulnerability in multiple products
arch/arm64/kernel/sys.c in the Linux kernel before 4.0 allows local users to bypass the "strict page permissions" protection mechanism and modify the system-call table, and consequently gain privileges, by leveraging write access.
local
low complexity
google linux CWE-264
7.8
2016-11-25 CVE-2016-6754 Injection vulnerability in Google Android
A remote code execution vulnerability in Webview in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-11-05 could enable a remote attacker to execute arbitrary code when the user is navigating to a website.
network
low complexity
google CWE-74
8.8