Vulnerability index

Browse CVEs

4,645 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Android MEDIUM 5.5
CVE-2015-9021

In all Android releases from CAF using the Linux kernel, access control to SMEM memory was not enabled.

Mitigation only
Fix from $1,600 2017-06-13
Android MEDIUM 5.5
CVE-2015-9024

In all Android releases from CAF using the Linux kernel, some interfaces were improperly exposed to QTEE applications.

Mitigation only
Fix from $1,600 2017-06-13
Android MEDIUM 5.5
CVE-2016-10332

In all Android releases from CAF using the Linux kernel, stack protection was not enabled for secure applications.

Mitigation only
Fix from $1,600 2017-06-13
Android MEDIUM 5.5
CVE-2016-10333

In all Android releases from CAF using the Linux kernel, a sensitive system call was allowed to be called by HLOS.

No fix yet
Fix from $1,600 2017-06-13
Android MEDIUM 5.5
CVE-2016-10334

In all Android releases from CAF using the Linux kernel, a dynamically-protected DDR region could potentially get overwritten.

No fix yet
Fix from $1,600 2017-06-13
Android HIGH 7.5
CVE-2014-7919

b/libs/gui/ISurfaceComposer.cpp in Android allows attackers to trigger a denial of service (null pointer dereference and process crash).

Mitigation only
Fix from $1,950 2017-06-08
Chrome MEDIUM 6.5
CVE-2015-1207

Double-free vulnerability in libavformat/mov.c in FFMPEG in Google Chrome 41.0.2251.0 allows remote attackers to cause a denial of service (memory co…

Mitigation only
Fix from $1,600 2017-06-06
Android MEDIUM 6.5
CVE-2015-3830

The stock Android browser address bar in all Android operating systems suffers from Address Bar Spoofing, which allows remote attackers to trick a vi…

No fix yet
Fix from $1,600 2017-06-06
Android HIGH 7.8
CVE-2017-8245

In all Android releases from CAF using the Linux kernel, while processing a voice SVC request which is nonstandard by specifying a payload size that …

Mitigation only
Fix from $1,950 2017-05-12
Android HIGH 7.8
CVE-2017-8246

In function msm_pcm_playback_close() in all Android releases from CAF using the Linux kernel, prtd is assigned substream->runtime->private_data. Late…

Mitigation only
Fix from $1,950 2017-05-12
Android HIGH 7.0
CVE-2017-8244

In core_info_read and inst_info_read in all Android releases from CAF using the Linux kernel, variable "dbg_buf", "dbg_buf->curr" and "dbg_buf->fille…

Mitigation only
Fix from $1,950 2017-05-12
Android HIGH 7.5
CVE-2016-0833

Android allows users to cause a denial of service.

No fix yet
Fix from $1,950 2017-04-21
Android CRITICAL 9.8
CVE-2016-1155

HTTP header injection vulnerability in the URLConnection class in Android OS 2.2 through 6.0 allows remote attackers to execute arbitrary scripts or …

Mitigation only
Fix from $2,300 2017-04-13
Android CRITICAL 9.8
CVE-2014-7920

mediaserver in Android 2.2 through 5.x before 5.1 allows attackers to gain privileges. NOTE: This is a different vulnerability than CVE-2014-7921.

Mitigation only
Fix from $2,300 2017-04-13
Android CRITICAL 9.8
CVE-2014-7921

mediaserver in Android 4.0.3 through 5.x before 5.1 allows attackers to gain privileges. NOTE: This is a different vulnerability than CVE-2014-7920.

Mitigation only
Fix from $2,300 2017-04-13
Chrome CRITICAL 9.8
CVE-2013-6647

A use-after-free in AnimationController::endAnimationUpdate in Google Chrome.

Mitigation only
Fix from $2,300 2017-04-11
Android HIGH 7.8
CVE-2017-0544

An elevation of privilege vulnerability in CameraBase could enable a local malicious application to execute arbitrary code. This issue is rated as Hi…

Mitigation only
Fix from $1,950 2017-04-07
Android HIGH 7.8
CVE-2017-0545

An elevation of privilege vulnerability in Audioserver could enable a local malicious application to execute arbitrary code within the context of a p…

Mitigation only
Fix from $1,950 2017-04-07
Android HIGH 7.8
CVE-2017-0546

An elevation of privilege vulnerability in SurfaceFlinger could enable a local malicious application to execute arbitrary code within the context of …

Mitigation only
Fix from $1,950 2017-04-07
Android HIGH 7.8
CVE-2017-0554

An elevation of privilege vulnerability in the Telephony component could enable a local malicious application to access capabilities outside of its p…

Mitigation only
Fix from $1,950 2017-04-07
Android HIGH 7.0
CVE-2017-0553

An elevation of privilege vulnerability in libnl could enable a local malicious application to execute arbitrary code within the context of the Wi-Fi…

Mitigation only
Fix from $1,950 2017-04-07
Android MEDIUM 5.5
CVE-2017-0548

A remote denial of service vulnerability in libskia could enable an attacker to use a specially crafted file to cause a device hang or reboot. This i…

Mitigation only
Fix from $1,600 2017-04-07
Android MEDIUM 5.5
CVE-2017-0555

An information disclosure vulnerability in libavc in Mediaserver could enable a local malicious application to access data outside of its permission …

Mitigation only
Fix from $1,600 2017-04-07
Android MEDIUM 5.5
CVE-2017-0559

An information disclosure vulnerability in libskia could enable a local malicious application to access data outside of its permission levels. This i…

Mitigation only
Fix from $1,600 2017-04-07
Android MEDIUM 5.5
CVE-2017-0560

An information disclosure vulnerability in the factory reset process could enable a local malicious attacker to access data from the previous owner. …

Mitigation only
Fix from $1,600 2017-04-07
Android HIGH 7.8
CVE-2016-5857

The Qualcomm SPCom driver in Android before 7.0 allows local users to execute arbitrary code within the context of the kernel via a crafted applicati…

Mitigation only
Fix from $1,950 2017-03-20
Android MEDIUM 5.5
CVE-2017-0498

A denial of service vulnerability in Setup Wizard could allow a local attacker to require Google account sign-in after a factory reset. This issue is…

Mitigation only
Fix from $1,600 2017-03-08
Android MEDIUM 5.5
CVE-2017-0499

A denial of service vulnerability in Audioserver could enable a local malicious application to cause a device hang or reboot. This issue is rated as …

Mitigation only
Fix from $1,600 2017-03-08
Android HIGH 7.8
CVE-2017-0466

A remote code execution vulnerability in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media …

Mitigation only
Fix from $1,950 2017-03-08
Android HIGH 7.8
CVE-2017-0467

A remote code execution vulnerability in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media …

Mitigation only
Fix from $1,950 2017-03-08