|
6241
|
7.8
6.8
|
HIGH
Local
|
A remote code execution vulnerability in libjpeg in Android 4.x before 4.4.4, 5.0.x before 5.0.2, and 5.1.x before 5.1.1 could enable an attacker using a specially crafted file to execute arbitrary c…
|
CWE-284
Improper Access Control
|
CVE-2016-6702
|
cpe:2.3:o:google:android:5.1:* cpe:2.3:o:google:android:5.1.0:* cpe:2.3:o:google:android:5.0:* cpe:2.3:o:googl…
|
|
|
|
|
2024-11-21 11:56
2016-11-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6242
|
7.8
6.8
|
HIGH
Local
|
A remote code execution vulnerability in libskia in Android 7.0 before 2016-11-01 could enable an attacker using a specially crafted file to cause memory corruption during media file and data process…
|
CWE-119 CWE-284
Incorrect Access of Indexable Resource ('Range Error') Improper Access Control
|
CVE-2016-6701
|
cpe:2.3:o:google:android:*:*
|
|
7.0
|
|
|
2024-11-21 11:56
2016-11-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6243
|
7.8
9.3
|
HIGH
Local
|
An elevation of privilege vulnerability in libzipfile in Android 4.x before 4.4.4, 5.0.x before 5.0.2, and 5.1.x before 5.1.1 could enable a local malicious application to execute arbitrary code with…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-6700
|
cpe:2.3:o:google:android:5.1:* cpe:2.3:o:google:android:5.1.0:* cpe:2.3:o:google:android:5.0:* cpe:2.3:o:googl…
|
|
|
|
|
2024-11-21 11:56
2016-11-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6244
|
5.5
4.3
|
MEDIUM
Local
|
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Point driver, and sound driver in Android before 2016-11-05 could enable a local m…
|
CWE-200
Information Exposure
|
CVE-2016-6698
|
cpe:2.3:o:google:android:*:*
|
|
7.0
|
|
|
2024-11-21 11:56
2016-11-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6245
|
5.5
4.3
|
MEDIUM
Local
|
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Point driver, and sound driver in Android before 2016-11-05 could enable a local m…
|
CWE-200
Information Exposure
|
CVE-2016-3907
|
cpe:2.3:o:google:android:*:*
|
|
7.0
|
|
|
2024-11-21 11:50
2016-11-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6246
|
5.5
4.3
|
MEDIUM
Local
|
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Point driver, and sound driver in Android before 2016-11-05 could enable a local m…
|
CWE-200
Information Exposure
|
CVE-2016-3906
|
cpe:2.3:o:google:android:*:*
|
|
7.0
|
|
|
2024-11-21 11:50
2016-11-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6247
|
7.8
6.8
|
HIGH
Local
|
An elevation of privilege vulnerability in the Qualcomm bus driver in Android before 2016-11-05 could enable a local malicious application to execute arbitrary code within the context of the kernel. …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3904
|
cpe:2.3:o:google:android:*:*
|
|
7.0
|
|
|
2024-11-21 11:50
2016-11-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6248
|
7.5
7.8
|
HIGH
Network
|
On Samsung Galaxy S4 through S7 devices, the "omacp" app ignores security information embedded in the OMACP messages resulting in remote unsolicited WAP Push SMS messages being accepted, parsed, and …
|
CWE-388
7PK - Errors
|
CVE-2016-7991
|
cpe:2.3:o:google:android:6.0:* cpe:2.3:o:google:android:6.0.1:* cpe:2.3:o:google:android:5.1:* cpe:2.3:o:googl…
|
|
|
|
|
2024-11-21 11:58
2016-10-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6249
|
9.8
10.0
|
CRITICAL
Network
|
On Samsung Galaxy S4 through S7 devices, an integer overflow condition exists within libomacp.so when parsing OMACP messages (within WAP Push SMS messages) leading to a heap corruption that can resul…
|
CWE-190 CWE-388
Integer Overflow or Wraparound 7PK - Errors
|
CVE-2016-7990
|
cpe:2.3:o:google:android:6.0:* cpe:2.3:o:google:android:6.0.1:* cpe:2.3:o:google:android:5.1:* cpe:2.3:o:googl…
|
|
|
|
|
2024-11-21 11:58
2016-10-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6250
|
7.5
7.8
|
HIGH
Network
|
On Samsung Galaxy S4 through S7 devices, a malformed OTA WAP PUSH SMS containing an OMACP message sent remotely triggers an unhandled ArrayIndexOutOfBoundsException in Samsung's implementation of the…
|
CWE-254
7PK - Security Features
|
CVE-2016-7989
|
cpe:2.3:o:google:android:6.0:* cpe:2.3:o:google:android:6.0.1:* cpe:2.3:o:google:android:5.1:* cpe:2.3:o:googl…
|
|
|
|
|
2024-11-21 11:58
2016-10-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|