Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2017-05-12 CVE-2017-0604 Always-Incorrect Control Flow Implementation vulnerability in Google Android
An elevation of privilege vulnerability in the kernel Qualcomm power driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
low complexity
google CWE-670
7.8
2017-05-12 CVE-2017-0597 Integer Overflow or Wraparound vulnerability in Google Android
An elevation of privilege vulnerability in Audioserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google CWE-190
7.8
2017-05-12 CVE-2017-0596 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in libstagefright in Mediaserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google
7.8
2017-05-12 CVE-2017-0595 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in libstagefright in Mediaserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google
7.8
2017-05-12 CVE-2017-0594 Classic Buffer Overflow vulnerability in Google Android
An elevation of privilege vulnerability in codecs/aacenc/SoftAACEncoder2.cpp in libstagefright in Mediaserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google CWE-120
7.8
2017-05-12 CVE-2017-0593 Incorrect Permission Assignment for Critical Resource vulnerability in Google Android
An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to obtain access to custom permissions.
local
low complexity
google CWE-732
7.8
2017-05-12 CVE-2017-0592 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in FLACExtractor.cpp in libstagefright in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
local
low complexity
google CWE-119
7.8
2017-05-12 CVE-2017-0591 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in libavc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
local
low complexity
google CWE-119
7.8
2017-05-12 CVE-2017-0590 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in libhevc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
local
low complexity
google CWE-119
7.8
2017-05-12 CVE-2017-0589 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in libhevc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
local
low complexity
google CWE-119
7.8