Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-07-06 CVE-2018-5875 Integer Overflow or Wraparound vulnerability in Qualcomm products
While parsing an mp4 file, an integer overflow leading to a buffer overflow can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear.
network
low complexity
qualcomm CWE-190
8.8
2018-07-06 CVE-2018-5874 Out-of-bounds Write vulnerability in Qualcomm products
While parsing an mp4 file, a stack-based buffer overflow can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear.
network
low complexity
qualcomm CWE-787
8.8
2018-07-06 CVE-2018-5838 Improper Validation of Array Index vulnerability in Qualcomm products
Improper Validation of Array Index In the adreno OpenGL driver in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear, an out-of-bounds access can occur in SurfaceFlinger.
local
low complexity
qualcomm CWE-129
7.8
2018-07-06 CVE-2018-5835 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
If the seq_len is greater then CSR_MAX_RSC_LEN, a buffer overflow in __wlan_hdd_cfg80211_add_key() may occur when copying keyRSC in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.
local
low complexity
google CWE-119
7.8
2018-07-06 CVE-2018-5834 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In __wlan_hdd_cfg80211_vendor_scan(), a buffer overwrite can potentially occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.
local
low complexity
google CWE-119
7.8
2018-07-06 CVE-2018-5832 Use After Free vulnerability in Google Android
Due to a race condition in a camera driver ioctl handler in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a Use After Free condition can occur.
local
high complexity
google CWE-416
7.0
2018-07-06 CVE-2018-5831 Use After Free vulnerability in Google Android
In the KGSL driver in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a reference counting error can lead to a Use After Free condition.
local
low complexity
google CWE-416
7.8
2018-07-06 CVE-2018-5830 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
While processing the HTT_T2H_MSG_TYPE_MGMT_TX_COMPL_IND message, a buffer overflow can potentially occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.
local
low complexity
google CWE-119
7.8
2018-07-06 CVE-2018-5829 Out-of-bounds Read vulnerability in Google Android
In wlan_hdd_cfg80211_set_privacy_ibss() in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a buffer over-read can potentially occur.
network
low complexity
google CWE-125
7.5
2018-07-06 CVE-2018-3597 Improper Input Validation vulnerability in Google Android
In the ADSP RPC driver in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, an arbitrary kernel write can occur.
local
low complexity
google CWE-20
7.8