Vulnerabilities > Google > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-08-18 CVE-2015-9071 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer over-read vulnerability exists in a TrustZone syscall.
network
low complexity
google CWE-119
critical
10.0
2017-08-18 CVE-2015-9070 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer over-read vulnerability exists in a TrustZone syscall.
network
low complexity
google CWE-119
critical
10.0
2017-08-18 CVE-2015-9069 Improper Input Validation vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, the Secure File System can become corrupted.
network
low complexity
google CWE-20
critical
10.0
2017-08-18 CVE-2015-9068 Improper Input Validation vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, an argument to a mink syscall is not properly validated.
network
low complexity
google CWE-20
critical
10.0
2017-08-18 CVE-2015-9067 Unspecified vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, a potential compiler optimization of memset() is addressed.
network
low complexity
google
critical
10.0
2017-08-18 CVE-2015-9066 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in an Inter-RAT procedure.
network
low complexity
google CWE-119
critical
10.0
2017-08-18 CVE-2015-9065 7PK - Security Features vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, a UE can respond to a UEInformationRequest before Access Stratum security is established.
network
low complexity
google CWE-254
critical
10.0
2017-08-18 CVE-2015-9064 Improper Access Control vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, the UE can send IMEI or IMEISV to the network on a network request before NAS security has been activated.
network
low complexity
google CWE-284
critical
10.0
2017-08-18 CVE-2015-9063 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a procedure involving a remote UIM client.
network
low complexity
google CWE-119
critical
10.0
2017-08-18 CVE-2015-9062 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow to buffer overflow vulnerability exists when loading an ELF file.
network
low complexity
google CWE-119
critical
10.0