Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2017-06-13 CVE-2014-9962 Improper Input Validation vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a vulnerability exists in the parsing of a DRM provisioning command.
local
low complexity
google CWE-20
7.8
2017-06-13 CVE-2014-9961 Improper Access Control vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a vulnerability in eMMC write protection exists that can be used to bypass power-on write protection.
local
low complexity
google CWE-284
7.8
2017-06-13 CVE-2014-9960 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in the PlayReady API.
local
low complexity
google CWE-119
7.8
2017-06-08 CVE-2014-7919 NULL Pointer Dereference vulnerability in Google Android
b/libs/gui/ISurfaceComposer.cpp in Android allows attackers to trigger a denial of service (null pointer dereference and process crash).
network
low complexity
google CWE-476
7.5
2017-06-06 CVE-2016-10297 Race Condition vulnerability in Google Android
In TrustZone in all Android releases from CAF using the Linux kernel, a Time-of-Check Time-of-Use Race Condition vulnerability could potentially exist.
local
high complexity
google CWE-362
7.0
2017-06-06 CVE-2015-9007 Double Free vulnerability in Google Android
In TrustZone in all Android releases from CAF using the Linux kernel, a Double Free vulnerability could potentially exist.
local
low complexity
google CWE-415
7.8
2017-06-06 CVE-2015-9006 Improper Access Control vulnerability in Google Android
In Resource Power Manager (RPM) in all Android releases from CAF using the Linux kernel, an Improper Access Control vulnerability could potentially exist.
local
low complexity
google CWE-284
7.8
2017-06-06 CVE-2015-9005 Integer Overflow or Wraparound vulnerability in Google Android
In TrustZone in all Android releases from CAF using the Linux kernel, an Integer Overflow to Buffer Overflow vulnerability could potentially exist.
local
low complexity
google CWE-190
7.8
2017-06-06 CVE-2014-9952 Improper Authentication vulnerability in Google Android
In the Secure File System in all Android releases from CAF using the Linux kernel, a capture-replay vulnerability could potentially exist.
local
low complexity
google CWE-287
7.8
2017-06-06 CVE-2014-9950 Improper Authorization vulnerability in Google Android
In Core Kernel in all Android releases from CAF using the Linux kernel, an Improper Authorization vulnerability could potentially exist.
local
low complexity
google CWE-285
7.8