|
6581
|
7.8
9.3
|
HIGH
Local
|
The Qualcomm video driver in Android before 2016-06-01 on Nexus 5, 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 27407865.
|
NVD-CWE-noinfo
|
CVE-2016-2465
|
cpe:2.3:o:google:android:*:*
|
|
6.0.1
|
|
|
2024-11-21 11:48
2016-06-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6582
|
7.8
9.3
|
HIGH
Local
|
libvpx in libwebm in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 allows remote attackers to execute arbitrary code or cause a denial of …
|
CWE-20
Improper Input Validation
|
CVE-2016-2464
|
cpe:2.3:o:google:android:6.0:* cpe:2.3:o:google:android:6.0.1:* cpe:2.3:o:google:android:5.1:* cpe:2.3:o:googl…
|
|
|
|
|
2024-11-21 11:48
2016-06-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6583
|
8.4
7.5
|
HIGH
Local
|
Multiple integer overflows in the h264dec component in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 allow remote attack…
|
CWE-119 CWE-189
Incorrect Access of Indexable Resource ('Range Error') Numeric Errors
|
CVE-2016-2463
|
cpe:2.3:o:google:android:6.0:* cpe:2.3:o:google:android:6.0.1:* cpe:2.3:o:google:android:5.1:* cpe:2.3:o:googl…
|
|
|
|
|
2024-11-21 11:48
2016-06-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6584
|
7.8
4.4
|
HIGH
Local
|
wpa_supplicant 0.4.0 through 2.5 does not reject \n and \r characters in passphrase parameters, which allows local users to trigger arbitrary library loading and consequently gain privileges, or caus…
|
CWE-19
Data Processing Errors
|
CVE-2016-4477
|
cpe:2.3:o:google:android:6.0:* cpe:2.3:o:google:android:6.0.1:* cpe:2.3:o:google:android:5.1.1:* cpe:2.3:o:goo…
|
|
|
|
|
2024-11-21 11:52
2016-05-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6585
|
7.0
7.6
|
HIGH
Local
|
OpenSSLCipher.java in Conscrypt in Android 6.x before 2016-05-01 mishandles updates of the Additional Authenticated Data (AAD) array, which allows attackers to spoof message authentication via unspec…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2462
|
cpe:2.3:o:google:android:6.0:* cpe:2.3:o:google:android:6.0.1:*
|
|
|
|
|
2024-11-21 11:48
2016-05-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6586
|
7.0
7.6
|
HIGH
Local
|
OpenSSLCipher.java in Conscrypt in Android 6.x before 2016-05-01 mishandles resets of the Additional Authenticated Data (AAD) array, which allows attackers to spoof message authentication via unspeci…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2461
|
cpe:2.3:o:google:android:6.0:* cpe:2.3:o:google:android:6.0.1:*
|
|
|
|
|
2024-11-21 11:48
2016-05-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6587
|
5.5
4.3
|
MEDIUM
Local
|
mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not initialize certain data structures, which allows attackers to obtain sensitive info…
|
CWE-200
Information Exposure
|
CVE-2016-2460
|
cpe:2.3:o:google:android:6.0:* cpe:2.3:o:google:android:5.1.0:* cpe:2.3:o:google:android:5.0:* cpe:2.3:o:googl…
|
|
|
|
|
2024-11-21 11:48
2016-05-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6588
|
5.5
4.3
|
MEDIUM
Local
|
mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not initialize certain data structures, which allows attackers to obtain sensitive info…
|
CWE-200
Information Exposure
|
CVE-2016-2459
|
cpe:2.3:o:google:android:6.0:* cpe:2.3:o:google:android:6.0.1:* cpe:2.3:o:google:android:5.1:* cpe:2.3:o:googl…
|
|
|
|
|
2024-11-21 11:48
2016-05-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6589
|
5.5
4.3
|
MEDIUM
Local
|
The compose functionality in AOSP Mail in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not properly restrict attachments, which allows attackers to obtain sensitive …
|
CWE-200
Information Exposure
|
CVE-2016-2458
|
cpe:2.3:o:google:android:6.0:* cpe:2.3:o:google:android:6.0.1:* cpe:2.3:o:google:android:5.1:* cpe:2.3:o:googl…
|
|
|
|
|
2024-11-21 11:48
2016-05-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
6590
|
5.5
2.1
|
MEDIUM
Local
|
server/pm/UserManagerService.java in Wi-Fi in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 allows attackers to bypass intended restrictions on Wi-Fi configuration changes…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2457
|
cpe:2.3:o:google:android:6.0:* cpe:2.3:o:google:android:6.0.1:* cpe:2.3:o:google:android:5.1:* cpe:2.3:o:googl…
|
|
|
|
|
2024-11-21 11:48
2016-05-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|