Vulnerabilities > Google > Android > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-05-12 CVE-2017-0603 Integer Overflow or Wraparound vulnerability in Google Android
A denial of service vulnerability in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
local
high complexity
google CWE-190
4.7
2017-05-12 CVE-2017-0602 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in Bluetooth could allow a local malicious application to bypass operating system protections that isolate application data from other applications.
local
low complexity
google CWE-200
5.5
2017-05-12 CVE-2017-0601 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android
An Elevation of Privilege vulnerability in Bluetooth could potentially enable a local malicious application to accept harmful files shared via bluetooth without user permission.
local
low complexity
google CWE-732
5.5
2017-05-12 CVE-2017-0600 Unspecified vulnerability in Google Android
A remote denial of service vulnerability in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
local
low complexity
google
5.5
2017-05-12 CVE-2017-0599 Unchecked Return Value vulnerability in Google Android
A remote denial of service vulnerability in libhevc in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
local
low complexity
google CWE-252
5.5
2017-05-12 CVE-2017-0598 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the Framework APIs could enable a local malicious application to bypass operating system protections that isolate application data from other applications.
local
low complexity
google CWE-200
5.5
2017-05-12 CVE-2017-0493 Insecure Storage of Sensitive Information vulnerability in Google Android 7.0/7.1.0/7.1.1
An information disclosure vulnerability in File-Based Encryption could enable a local malicious attacker to bypass operating system protections for the lock screen.
local
low complexity
google CWE-922
5.5
2017-04-07 CVE-2017-0560 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the factory reset process could enable a local malicious attacker to access data from the previous owner.
local
low complexity
google CWE-200
5.5
2017-04-07 CVE-2017-0559 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in libskia could enable a local malicious application to access data outside of its permission levels.
local
low complexity
google CWE-200
5.5
2017-04-07 CVE-2017-0558 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in Mediaserver could enable a local malicious application to access data outside of its permission levels.
local
low complexity
google CWE-200
5.5