Vulnerability index

Browse CVEs

1,003 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Android CRITICAL 9.8
CVE-2015-9014

An elevation of privilege vulnerability in Qualcomm closed source components. Product: Android. Versions: Android kernel. Android ID: A-36393750.

No fix yet
Fix from $2,300 2018-04-04
Android CRITICAL 9.8
CVE-2017-13266

In avrc_pars_vendor_cmd of avrc_pars_tg.cc, there is a possible stack corruption due to a missing bounds check. This could lead to remote code execut…

Mitigation only
Fix from $2,300 2018-04-04
Android CRITICAL 9.8
CVE-2017-13272

In alarm_ready_generic of alarm.cc, there is a possible out of bounds write due to a use after free. This could lead to remote escalation of privileg…

Mitigation only
Fix from $2,300 2018-04-04
Android CRITICAL 9.8
CVE-2017-13292

In wl_get_assoc_ies of wl_cfg80211.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execut…

Mitigation only
Fix from $2,300 2018-04-04
Android CRITICAL 9.8
CVE-2017-13267

In avrc_pars_vendor_cmd of avrc_pars_tg.cc, there is a possible stack corruption due to a missing bounds check. This could lead to remote escalation …

Mitigation only
Fix from $2,300 2018-04-04
Android CRITICAL 9.8
CVE-2017-13274

In the getHost() function of UriTest.java, there is the possibility of incorrect web origin determination. This could lead to incorrect security deci…

Mitigation only
Fix from $2,300 2018-04-04
Android CRITICAL 9.8
CVE-2017-13281

In avrc_pars_browsing_cmd of avrc_pars_tg.cc, there is a possible stack buffer overflow due to an incorrect bounds check. This could lead to remote c…

Mitigation only
Fix from $2,300 2018-04-04
Android CRITICAL 9.8
CVE-2017-13282

In avrc_ctrl_pars_vendor_rsp of avrc_pars_ct.cc, there is a possible stack buffer overflow due to a missing bounds check. This could lead to remote c…

Mitigation only
Fix from $2,300 2018-04-04
Android CRITICAL 9.8
CVE-2017-13283

In avrc_ctrl_pars_vendor_rsp of bluetooth avrcp_ctrl, there is a possible out of bounds write on the stack due to a missing bounds check. This could …

Mitigation only
Fix from $2,300 2018-04-04
Android CRITICAL 9.8
CVE-2017-13284

In config_set_string of config.cc, it is possible to pair a second BT keyboard without user approval due to improper input validation. This could lea…

Mitigation only
Fix from $2,300 2018-04-04
Android CRITICAL 9.8
CVE-2017-13285

In SvoxSsmlParser and startElement of svox_ssml_parser.cpp, there is a possible out of bounds write due to an uninitialized buffer. This could lead t…

Mitigation only
Fix from $2,300 2018-04-04
Android CRITICAL 9.8
CVE-2018-3599

In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch leve…

Mitigation only
Fix from $2,300 2018-04-03
Android CRITICAL 9.8
CVE-2017-18147

In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch leve…

No fix yet
Fix from $2,300 2018-04-03
Android CRITICAL 9.8
CVE-2018-3596

In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch leve…

No fix yet
Fix from $2,300 2018-04-03
Android CRITICAL 9.8
CVE-2017-17766

In wma_peer_info_event_handler() in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-10-03, the value of num_peers received from firm…

Patch available
Fix from $2,300 2018-03-30
Android CRITICAL 9.8
CVE-2017-14876

In msm_ispif_config_stereo() in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-06-21, the parameter params->entries[i].vfe_intf com…

Patch available
Fix from $2,300 2018-03-30
Android CRITICAL 9.8
CVE-2017-14877

While the IPA driver in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-08-31 is processing IOCTL commands there is no mutex lock of…

Patch available
Fix from $2,300 2018-03-30
Android CRITICAL 9.8
CVE-2017-14881

While calling the IPA IOCTL handler for IPA_IOC_ADD_HDR_PROC_CTX in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-10-13, a use-aft…

Patch available
Fix from $2,300 2018-03-30
Android CRITICAL 9.8
CVE-2017-14883

In the function wma_unified_power_debug_stats_event_handler() in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-10-18, if the value…

Patch available
Fix from $2,300 2018-03-30
Android CRITICAL 9.8
CVE-2017-11010

In Android before 2018-01-05 on Qualcomm Snapdragon IoT, Snapdragon Mobile MDM9206, MDM9650, SD 210/SD 212/SD 205, SD 625, SD 650/52, SD 835, access …

No fix yet
Fix from $2,300 2018-03-30
Android CRITICAL 9.8
CVE-2017-14906

In Android before 2018-01-05 on Qualcomm Snapdragon IoT, Snapdragon Mobile MDM9206, MDM9607, MSM8909W, SD 210/SD 212/SD 205, SD 410/12, PKCS7 padding…

Mitigation only
Fix from $2,300 2018-03-30
Android CRITICAL 9.8
CVE-2014-4959

**DISPUTED** SQL injection vulnerability in SQLiteDatabase.java in the SQLi Api in Android allows remote attackers to execute arbitrary SQL commands …

No fix yet
Fix from $2,300 2018-03-27
Android CRITICAL 9.8
CVE-2016-10393

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when processing a clip with large siz…

Mitigation only
Fix from $2,300 2018-03-15
Android CRITICAL 9.8
CVE-2017-15815

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a potential buffer overflow can happe…

Patch available
Fix from $2,300 2018-03-15
Android CRITICAL 9.8
CVE-2017-18067

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation while proce…

Patch available
Fix from $2,300 2018-03-15
Chrome Os CRITICAL 9.8
CVE-2016-5179

Chrome OS before 53.0.2785.144 allows remote attackers to execute arbitrary commands at boot.

Fix: 53.0.2785.144+
Fix from $2,300 2018-03-07
Android CRITICAL 9.8
CVE-2017-13229

A remote code execution vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. ID: A-68160703.

Mitigation only
Fix from $2,300 2018-02-12
Android CRITICAL 9.8
CVE-2017-13208EPSS 8%

In receive_packet of libnetutils/packet.c, there is a possible out-of-bounds write due to a missing bounds check on the DHCP response. This could lea…

Patch available
Fix from $2,300 2018-01-12
Android CRITICAL 9.1
CVE-2017-13203

An information disclosure vulnerability in the Android media framework (libavc). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID:…

Mitigation only
Fix from $2,300 2018-01-12
Android CRITICAL 9.1
CVE-2017-13204

An information disclosure vulnerability in the Android media framework (libavc). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID:…

Mitigation only
Fix from $2,300 2018-01-12