Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2017-01-12 CVE-2016-8433 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
low complexity
google CWE-264
7.8
2017-01-12 CVE-2016-8423 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the Qualcomm bootloader could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
low complexity
google CWE-264
7.8
2017-01-12 CVE-2016-8422 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the Qualcomm bootloader could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
low complexity
google CWE-264
7.8
2017-01-12 CVE-2016-6788 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek I2C driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google CWE-264
7.0
2017-01-12 CVE-2016-6784 Improper Access Control vulnerability in Google Android 6.0.1
An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google CWE-284
7.0
2017-01-12 CVE-2016-6783 Improper Access Control vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google CWE-284
7.0
2017-01-12 CVE-2016-6772 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in Wi-Fi could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google CWE-264
7.8
2017-01-12 CVE-2016-6768 Improper Access Control vulnerability in Google Android
A remote code execution vulnerability in the Framesequence library could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process.
local
low complexity
google CWE-284
7.8
2017-01-12 CVE-2016-6762 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the libziparchive library could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google CWE-264
7.8
2016-12-18 CVE-2016-5185 Use After Free vulnerability in Google Chrome
Blink in Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android incorrectly allowed reentrance of FrameView::updateLifecyclePhasesInternal(), which allowed a remote attacker to perform an out of bounds memory read via crafted HTML pages.
network
low complexity
google CWE-416
8.8