Vulnerability index

Browse CVEs

4,008 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
Android HIGH 7.8
CVE-2016-3769

The NVIDIA video driver in Android before 2016-07-05 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka Android in…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2016-3768

The Qualcomm performance component in Android before 2016-07-05 on Nexus 5, 6, 5X, 6P, and 7 (2013) devices allows attackers to gain privileges via a…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2016-3762

The sockets subsystem in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-07-01 allows attackers to gain privileges via a crafted …

Mitigation only
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2016-3758

Multiple buffer overflows in libdex/OptInvocation.cpp in DexClassLoader in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x …

Mitigation only
Fix from $1,950 2016-07-11
Android HIGH 8.4
CVE-2016-3748

The sockets subsystem in Android 6.x before 2016-07-01 allows attackers to bypass intended system-call restrictions via a crafted application that ma…

Mitigation only
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2016-2503

The Qualcomm GPU driver in Android before 2016-07-05 on Nexus 5X and 6P devices allows attackers to gain privileges via a crafted application, aka An…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2016-2502

drivers/usb/gadget/f_serial.c in the Qualcomm USB driver in Android before 2016-07-05 on Nexus 5X and 6P devices allows attackers to gain privileges …

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2016-2501

The Qualcomm camera driver in Android before 2016-07-05 on Nexus 5X, 6, 6P, and 7 (2013) devices allows attackers to gain privileges via a crafted ap…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2015-8892

platform/msm_shared/boot_verifier.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5X and 6P devices allows attackers to bypass int…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2015-8890

platform/msm_shared/partition_parser.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices does not validate cert…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2015-8889

The aboot implementation in the Qualcomm components in Android before 2016-07-05 on Nexus 6P devices omits the recovery PIN feature, which has unspec…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2015-8888

Integer overflow in app/aboot/aboot.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices allows attackers to bypass intended …

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2014-9802

Multiple integer overflows in lib/libfdt/fdt.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices allow attacker…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2014-9800

Integer overflow in lib/heap/heap.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices allows attackers to gain …

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2014-9799

The makefile in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices omits the -fno-strict-overflow option to gcc, wh…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2014-9796

app/aboot/aboot.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices does not validate the page size in the kern…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2014-9790

drivers/mmc/core/debugfs.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices does not validate pointers used in…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2014-9789

The (1) alloc and (2) free APIs in arch/arm/mach-msm/qdsp6v2/msm_audio_ion.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devic…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2014-9785

drivers/misc/qseecom.c in the Qualcomm components in Android before 2016-07-05 on Nexus 7 (2013) devices does not validate addresses before copying d…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2014-9783

drivers/media/platform/msm/camera_v2/sensor/cci/msm_cci.c in the Qualcomm components in Android before 2016-07-05 on Nexus 7 (2013) devices does not …

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2014-9782

drivers/media/platform/msm/camera_v2/sensor/actuator/msm_actuator.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) d…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2014-9780

drivers/video/msm/mdss/mdp3_ctrl.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5, 5X, and 6P devices does not validate start and…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2014-9779

arch/arm/mach-msm/qdsp6v2/msm_audio_ion.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices allows attackers to obtain sensi…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Websphere Application Server HIGH 7.5
CVE-2016-2945

The API Discovery implementation in IBM WebSphere Application Server (WAS) 8.5.5.8 through 8.5.5.9 Liberty before Liberty Fix Pack 16.0.0.2 allows re…

Mitigation only
Fix from $1,950 2016-07-08
Urbancode Deploy HIGH 8.2
CVE-2016-0271

The agents in IBM UrbanCode Deploy 6.x before 6.0.1.14, 6.1.x before 6.1.3.3, and 6.2.x before 6.2.1.1 do not verify a server's identity in a JMS ses…

Mitigation only
Fix from $1,950 2016-07-08
Hardware Management Console MEDIUM 6.8
CVE-2016-0230

IBM Power Hardware Management Console (HMC) 7.3 through 7.3.0 SP7, 7.9 through 7.9.0 SP3, 8.1 through 8.1.0 SP3, 8.2 through 8.2.0 SP2, 8.3 through 8…

Patch available
Fix from $1,600 2016-07-07
Linux Kernel HIGH 7.8
CVE-2016-4997EPSS 6%

The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux kernel before 4.6.3 allow lo…

Fix: 3.2.80 / 3.10.103+
Fix from $1,950 2016-07-03
Epc3928 Firmware HIGH 8.1
CVE-2016-1337

Cisco EPC3928 devices allow remote attackers to obtain sensitive configuration and credential information by making requests during the early part of…

No fix yet
Fix from $1,950 2016-07-03
Ntp Server Firmware HIGH 8.1
CVE-2016-3989EPSS 5%

The NTP time-server interface on Meinberg IMS-LANTIME M3000, IMS-LANTIME M1000, IMS-LANTIME M500, LANTIME M900, LANTIME M600, LANTIME M400, LANTIME M…

Fix: after 6.0
Fix from $1,950 2016-07-03
Firesight System Software HIGH 8.6
CVE-2016-1394

Cisco Firepower System Software 6.0.0 through 6.1.0 has a hardcoded account, which allows remote attackers to obtain CLI access by leveraging knowled…

Mitigation only
Fix from $1,950 2016-07-03