Vulnerabilities > LG

DATE CVE VULNERABILITY TITLE RISK
2018-05-04 CVE-2018-10229 Information Exposure vulnerability in multiple products
A hardware vulnerability in GPU memory modules allows attackers to accelerate micro-architectural attacks through the use of the JavaScript WebGL API.
5.8
2017-10-16 CVE-2017-15361 Unspecified vulnerability in Infineon RSA Library and Trusted Platform Firmware
The Infineon RSA library 1.02.013 in Infineon Trusted Platform Module (TPM) firmware, such as versions before 0000000000000422 - 4.34, before 000000000000062b - 6.43, and before 0000000000008521 - 133.33, mishandles RSA key generation, which makes it easier for attackers to defeat various cryptographic protection mechanisms via targeted attacks, aka ROCA.
4.3
2017-09-26 CVE-2014-0997 Data Processing Errors vulnerability in Google Android 4.1.2/4.2.2/4.4.4
WiFiMonitor in Android 4.4.4 as used in the Nexus 5 and 4, Android 4.2.2 as used in the LG D806, Android 4.2.2 as used in the Samsung SM-T310, Android 4.1.2 as used in the Motorola RAZR HD, and potentially other unspecified Android releases before 5.0.1 and 5.0.2 does not properly handle exceptions, which allows remote attackers to cause a denial of service (reboot) via a crafted 802.11 probe response frame.
network
low complexity
google lg samsung motorola CWE-19
5.0
2017-01-13 CVE-2016-10135 Information Exposure vulnerability in LG Mobile
An issue was discovered on LG devices using the MTK chipset with L(5.0/5.1), M(6.0/6.0.1), and N(7.0) software, and RCA Voyager Tablet, BLU Advance 5.0, and BLU R1 HD devices.
network
lg CWE-200
4.3
2015-02-17 CVE-2014-8757 Improper Access Control vulnerability in LG On-Screen Phone 4.3.009
LG On-Screen Phone (OSP) before 4.3.010 allows remote attackers to bypass authorization via a crafted request.
low complexity
lg CWE-284
8.3
2014-12-05 CVE-2014-7252 Multiple Security vulnerability in OMAP Mobile Processors Syslink Driver
Multiple unspecified vulnerabilities in the Syslink driver for Texas Instruments OMAP mobile processor, as used on NTT DOCOMO ARROWS Tab LTE F-01D, ARROWS X LTE F-05D, Disney Mobile on docomo F-08D, REGZA Phone T-01D, and PRADA phone by LG L-02D; and SoftBank SHARP handsets 102SH allow local users to execute arbitrary code or read kernel memory via unknown vectors related to userland data and "improper data validation."
local
low complexity
disney-interactive fujitsu sharp lg
4.6
2014-12-05 CVE-2014-7243 Information Exposure vulnerability in LG L-03E, L-04D and L-09C
LG Electronics Mobile WiFi router L-09C, L-03E, and L-04D does not restrict access to the web administration interface, which allows remote attackers to obtain sensitive information via unspecified vectors.
network
low complexity
lg CWE-200
5.0
2013-05-29 CVE-2013-3666 Permissions, Privileges, and Access Controls vulnerability in multiple products
The LG Hidden Menu component for Android on the LG Optimus G E973 allows physically proximate attackers to execute arbitrary commands by entering USB Debugging mode, using Android Debug Bridge (adb) to establish a USB connection, dialing 3845#*973#, modifying the WLAN Test Wi-Fi Ping Test/User Command tcpdump command string, and pressing the CANCEL button.
local
low complexity
google lg CWE-264
7.2