Vulnerabilities > Google > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-08-18 CVE-2015-9072 NULL Pointer Dereference vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, an untrusted pointer dereference can occur in a TrustZone syscall.
network
low complexity
google CWE-476
critical
9.8
2017-08-18 CVE-2015-9071 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer over-read vulnerability exists in a TrustZone syscall.
network
low complexity
google CWE-119
critical
9.8
2017-08-18 CVE-2015-9070 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer over-read vulnerability exists in a TrustZone syscall.
network
low complexity
google CWE-119
critical
9.8
2017-08-18 CVE-2015-9069 Improper Input Validation vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, the Secure File System can become corrupted.
network
low complexity
google CWE-20
critical
9.8
2017-08-18 CVE-2015-9068 Improper Input Validation vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, an argument to a mink syscall is not properly validated.
network
low complexity
google CWE-20
critical
9.8
2017-08-18 CVE-2015-9067 Unspecified vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, a potential compiler optimization of memset() is addressed.
network
low complexity
google
critical
9.8
2017-08-18 CVE-2015-9066 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in an Inter-RAT procedure.
network
low complexity
google CWE-119
critical
9.8
2017-08-18 CVE-2015-9065 7PK - Security Features vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, a UE can respond to a UEInformationRequest before Access Stratum security is established.
network
low complexity
google CWE-254
critical
9.8
2017-08-18 CVE-2015-9064 Improper Access Control vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, the UE can send IMEI or IMEISV to the network on a network request before NAS security has been activated.
network
low complexity
google CWE-284
critical
9.8
2017-08-18 CVE-2015-9063 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a procedure involving a remote UIM client.
network
low complexity
google CWE-119
critical
9.8