Vulnerability index

Browse CVEs

373 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
Android HIGH 7.0
CVE-2016-5868

drivers/net/ethernet/msm/rndis_ipa.c in the Qualcomm networking driver in Android allows remote attackers to execute arbitrary code via a crafted app…

Fix: after 8.0
Fix from $1,950 2017-09-25
Android HIGH 8.8
CVE-2016-5861

In a display driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, a variable controlled by userspace is used to …

Patch available
Fix from $1,950 2017-08-16
Android HIGH 7.8
CVE-2016-5863

In an ioctl handler in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, several sanity checks are missing which can le…

Patch available
Fix from $1,950 2017-08-16
Android HIGH 7.8
CVE-2016-5864

In an audio driver function in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, some parameters are from userspace, an…

Patch available
Fix from $1,950 2017-08-16
Android HIGH 7.0
CVE-2016-5853

In an audio driver in all Qualcomm products with Android releases from CAF using the Linux kernel, when a sanity check encounters a length value not …

Patch available
Fix from $1,950 2017-08-16
Android HIGH 7.0
CVE-2016-5859

In a sound driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, if a function is called with a very large length…

Patch available
Fix from $1,950 2017-08-16
Android HIGH 7.0
CVE-2016-5860

In an audio driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, if a function is called with a very large lengt…

Patch available
Fix from $1,950 2017-08-16
Android HIGH 7.0
CVE-2016-5862

When a control related to codec is issued from userspace in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, the type …

Patch available
Fix from $1,950 2017-08-16
Android HIGH 7.0
CVE-2016-5867

In a sound driver in Android for MSM, Firefox OS for MSM, QRD Android, some variables are from userspace and values can be chosen that could result i…

Patch available
Fix from $1,950 2017-08-16
Android MEDIUM 6.2
CVE-2016-10398

Android 6.0 has an authentication bypass for attackers with root and physical access. Cryptographic authentication tokens (AuthTokens) used by the Tr…

Mitigation only
Fix from $1,600 2017-07-17
Android HIGH 7.8
CVE-2016-10341

In all Android releases from CAF using the Linux kernel, 3rd party TEEs have more privilege than intended.

No fix yet
Fix from $1,950 2017-06-13
Android HIGH 7.8
CVE-2016-10238

In QSEE in all Android releases from CAF using the Linux kernel access control may potentially be bypassed due to a page alignment issue.

Patch available
Fix from $1,950 2017-05-16
Android HIGH 7.8
CVE-2016-10274

An elevation of privilege vulnerability in the MediaTek touchscreen driver could enable a local malicious application to execute arbitrary code withi…

Fix: after 7.1.2
Fix from $1,950 2017-05-12
Android HIGH 7.8
CVE-2016-10275

An elevation of privilege vulnerability in the Qualcomm bootloader could enable a local malicious application to execute arbitrary code within the co…

Fix: after 7.1.2
Fix from $1,950 2017-05-12
Android HIGH 7.8
CVE-2016-10276

An elevation of privilege vulnerability in the Qualcomm bootloader could enable a local malicious application to execute arbitrary code within the co…

Fix: after 7.1.2
Fix from $1,950 2017-05-12
Android HIGH 7.0
CVE-2016-10280

An elevation of privilege vulnerability in the MediaTek thermal driver could enable a local malicious application to execute arbitrary code within th…

Fix: after 7.1.2
Fix from $1,950 2017-05-12
Android HIGH 7.0
CVE-2016-10281

An elevation of privilege vulnerability in the MediaTek thermal driver could enable a local malicious application to execute arbitrary code within th…

Fix: after 7.1.2
Fix from $1,950 2017-05-12
Android HIGH 7.0
CVE-2016-10282

An elevation of privilege vulnerability in the MediaTek thermal driver could enable a local malicious application to execute arbitrary code within th…

Fix: after 7.1.2
Fix from $1,950 2017-05-12
Android CRITICAL 9.8
CVE-2016-6727

The Qualcomm GPS subsystem in Android on Android One devices allows remote attackers to execute arbitrary code.

Fix: after 7.1.1
Fix from $2,300 2017-04-17
Android CRITICAL 9.8
CVE-2014-7920

mediaserver in Android 2.2 through 5.x before 5.1 allows attackers to gain privileges. NOTE: This is a different vulnerability than CVE-2014-7921.

Mitigation only
Fix from $2,300 2017-04-13
Android CRITICAL 9.8
CVE-2014-7921

mediaserver in Android 4.0.3 through 5.x before 5.1 allows attackers to gain privileges. NOTE: This is a different vulnerability than CVE-2014-7920.

Mitigation only
Fix from $2,300 2017-04-13
Android HIGH 7.8
CVE-2016-5857

The Qualcomm SPCom driver in Android before 7.0 allows local users to execute arbitrary code within the context of the kernel via a crafted applicati…

Mitigation only
Fix from $1,950 2017-03-20
Android HIGH 7.0
CVE-2014-9909

An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the …

Fix: after 7.1.0
Fix from $1,950 2017-01-18
Android HIGH 7.0
CVE-2014-9910

An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the …

Fix: after 7.1.0
Fix from $1,950 2017-01-18
Android MEDIUM 5.5
CVE-2016-8467

An elevation of privilege vulnerability in the bootloader could enable a local attacker to execute arbitrary modem commands on the device. This issue…

Fix: after 7.1.0
Fix from $1,600 2017-01-13
Android HIGH 7.8
CVE-2016-6492

The MT6573FDVT_SetRegHW function in camera_fdvt.c in the MediaTek driver for Linux allows local users to gain privileges via a crafted application th…

Fix: after 7.1.0
Fix from $1,950 2017-01-12
Android HIGH 7.0
CVE-2016-8445

An elevation of privilege vulnerability in MediaTek components, including the thermal driver and video driver, could enable a local malicious applica…

Fix: after 7.1.0
Fix from $1,950 2017-01-12
Android HIGH 7.0
CVE-2016-8446

An elevation of privilege vulnerability in MediaTek components, including the thermal driver and video driver, could enable a local malicious applica…

Fix: after 7.1.0
Fix from $1,950 2017-01-12
Android HIGH 7.0
CVE-2016-8447

An elevation of privilege vulnerability in MediaTek components, including the thermal driver and video driver, could enable a local malicious applica…

Fix: after 7.1.0
Fix from $1,950 2017-01-12
Android HIGH 7.0
CVE-2016-8448

An elevation of privilege vulnerability in MediaTek components, including the thermal driver and video driver, could enable a local malicious applica…

Fix: after 7.1.0
Fix from $1,950 2017-01-12