|
211601
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, a QTEE system call fails to validate a pointer.
|
CWE-20
Improper Input Validation
|
CVE-2015-9033
|
2024-11-21 11:39 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211602
|
3.3 |
LOW
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, a DRM key was exposed to QTEE applications.
|
CWE-200
Information Exposure
|
CVE-2015-9032
|
2024-11-21 11:39 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211603
|
3.3 |
LOW
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, a TZ memory address is exposed to HLOS by HDCP.
|
CWE-200
Information Exposure
|
CVE-2015-9031
|
2024-11-21 11:39 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211604
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, the Hypervisor API could be misused to bypass authentication.
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2015-9030
|
2024-11-21 11:39 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211605
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, a vulnerability exists in the access control settings of modem memory.
|
CWE-284
Improper Access Control
|
CVE-2015-9029
|
2024-11-21 11:39 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211606
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a cryptographic routine.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-9028
|
2024-11-21 11:39 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211607
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, an untrusted pointer dereference vulnerability exists in WideVine DRM.
|
CWE-476
NULL Pointer Dereference
|
CVE-2015-9027
|
2024-11-21 11:39 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211608
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, an untrusted pointer dereference vulnerability exists in WideVine DRM.
|
CWE-476
NULL Pointer Dereference
|
CVE-2015-9026
|
2024-11-21 11:39 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211609
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a QTEE application.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-9025
|
2024-11-21 11:39 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211610
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, some interfaces were improperly exposed to QTEE applications.
|
CWE-284
Improper Access Control
|
CVE-2015-9024
|
2024-11-21 11:39 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|