|
211071
|
6.5 |
MEDIUM
Network
|
google
|
android
|
In AAC Codec, there is a possible resource exhaustion due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is…
|
CWE-20
Improper Input Validation
|
CVE-2019-9283
|
2024-11-21 13:51 |
2019-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211072
|
6.5 |
MEDIUM
Network
|
google
|
android
|
In skia, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is nee…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-9282
|
2024-11-21 13:51 |
2019-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211073
|
7.5 |
HIGH
Network
|
google
|
android
|
In GoogleContactsSyncAdapter, there is a possible path traversal due to improper input sanitization. This could lead to a bypass of user interaction requirements with no additional execution privileg…
|
CWE-22
Path Traversal
|
CVE-2019-9281
|
2024-11-21 13:51 |
2019-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211074
|
3.3 |
LOW
Local
|
google
|
android
|
In keyguard, there is a possible escalation of privilege due to improper permission checks. This could lead to a local bypass of the keyguard under limited circumstances, with User execution privileg…
|
NVD-CWE-noinfo
|
CVE-2019-9280
|
2024-11-21 13:51 |
2019-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211075
|
7.5 |
HIGH
Network
|
google
|
android
|
In the wifi hotspot service, there is a possible denial of service due to a null pointer dereference. This could lead to remote denial of service with no additional execution privileges needed. User …
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-9279
|
2024-11-21 13:51 |
2019-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211076
|
8.8 |
HIGH
Network
|
google opensuse fedoraproject debian canonical
|
android leap fedora debian_linux ubuntu_linux
|
In libexif, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege in the media content provider with no additional execution privileges…
|
CWE-787 CWE-190
Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2019-9278
|
2024-11-21 13:51 |
2019-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211077
|
3.3 |
LOW
Local
|
google
|
android
|
In the proc filesystem, there is a possible information disclosure due to log information disclosure. This could lead to local disclosure of app and browser activity with User execution privileges ne…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2019-9277
|
2024-11-21 13:51 |
2019-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211078
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In WiFi, there is a possible leak of WiFi state due to a permissions bypass. This could lead to a local information disclosure which could be used to determine device location with no additional exec…
|
CWE-863
Incorrect Authorization
|
CVE-2019-9272
|
2024-11-21 13:51 |
2019-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211079
|
7.3 |
HIGH
Local
|
google
|
android
|
In System Settings, there is a possible permissions bypass due to a cached Linux user ID. This could lead to a local permissions bypass with no additional execution privileges needed. User interactio…
|
CWE-613
Insufficient Session Expiration
|
CVE-2019-9269
|
2024-11-21 13:51 |
2019-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211080
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In libstagefright, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the media server with no additional execution privileges needed. Use…
|
CWE-416 CWE-667
Use After Free Improper Locking
|
CVE-2019-9268
|
2024-11-21 13:51 |
2019-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|