|
198401
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while flashing UBI image, size is not validated for being smaller than minimum header s…
|
CWE-20
Improper Input Validation
|
CVE-2017-11027
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198402
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while flashing FRP partition using reference FRP unlock, authentication method can be c…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2017-11026
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198403
|
7.0 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, due to a race condition in the function audio_effects_shared_ioctl(), memory corruption…
|
CWE-362
Race Condition
|
CVE-2017-11025
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198404
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a race condition in the rmnet USB control driver can potentially lead to a Use After Fr…
|
CWE-416
Use After Free
|
CVE-2017-11024
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198405
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, there is a possibility of out-of-bound buffer accesses due to no synchronization in acc…
|
NVD-CWE-noinfo
|
CVE-2017-11023
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198406
|
5.3 |
MEDIUM
Network
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, the probe requests originated from user's phone contains the information elements which…
|
CWE-200
Information Exposure
|
CVE-2017-11022
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198407
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, array access out of bounds may occur in the camera driver in the kernel
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11018
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198408
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while flashing a specially crafted UBI image, it is possible to corrupt memory, or acce…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11017
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198409
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, currently, the value of SIR_MAC_AUTH_CHALLENGE_LENGTH is set to 128 which may result in…
|
CWE-120
Classic Buffer Overflow
|
CVE-2017-11015
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198410
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while parsing a Measurement Request IE in a Roam Neighbor Action Report, a buffer overf…
|
CWE-120
Classic Buffer Overflow
|
CVE-2017-11014
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|