Vulnerabilities > Google > Critical

DATE CVE VULNERABILITY TITLE RISK
2015-12-08 CVE-2015-8507 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 6.0
mediaserver in Android 6.0 before 2015-12-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 24157524, a different vulnerability than CVE-2015-6616, CVE-2015-8505, and CVE-2015-8506.
network
google CWE-119
critical
9.3
2015-12-08 CVE-2015-8506 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
mediaserver in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 24441553, a different vulnerability than CVE-2015-6616, CVE-2015-8505, and CVE-2015-8507.
network
google CWE-119
critical
9.3
2015-12-08 CVE-2015-8505 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
mediaserver in Android before 5.1.1 LMY48Z allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 17769851, a different vulnerability than CVE-2015-6616, CVE-2015-8506, and CVE-2015-8507.
network
google CWE-119
critical
9.3
2015-12-08 CVE-2015-6634 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
The display drivers in Android before 5.1.1 LMY48Z allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 24163261.
network
google CWE-119
critical
9.3
2015-12-08 CVE-2015-6633 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
The display drivers in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23987307.
network
google CWE-119
critical
9.3
2015-12-08 CVE-2015-6623 Permissions, Privileges, and Access Controls vulnerability in Google Android 6.0
Wi-Fi in Android 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24872703.
network
google CWE-264
critical
9.3
2015-12-08 CVE-2015-6621 Permissions, Privileges, and Access Controls vulnerability in Google Android 5.0/5.1/6.0
SystemUI in Android 5.x before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 23909438.
network
google CWE-264
critical
9.3
2015-12-08 CVE-2015-6620 Permissions, Privileges, and Access Controls vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bugs 24123723 and 24445127.
network
google CWE-264
critical
9.3
2015-12-08 CVE-2015-6619 Permissions, Privileges, and Access Controls vulnerability in Google Android
The kernel in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, aka internal bug 23520714.
network
google CWE-264
critical
9.3
2015-12-08 CVE-2015-6617 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
Skia, as used in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23648740.
network
google CWE-119
critical
9.3