Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android CRITICAL 9.8
CVE-2017-13177

In several functions of libhevc, NEON registers are not preserved. This could lead to remote code execution as a privileged process with no additiona…

No fix yet
Fix from $2,300 2018-01-12
Android CRITICAL 9.8
CVE-2017-13178

In the initDecoder function of SoftAVCDec, there is a possible out-of-bounds write to mCodecCtx due to a use after free when buffer allocation fails.…

Patch available
Fix from $2,300 2018-01-12
Android CRITICAL 9.8
CVE-2017-13179

In the ihevcd_allocate_static_bufs and ihevcd_create functions of SoftHEVC, there is a possible out-of-bounds write due to a use after free. Both ps_…

Patch available
Fix from $2,300 2018-01-12
Android CRITICAL 9.1
CVE-2017-13185

An information disclosure vulnerability in the Android media framework (libhevc). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-6…

Patch available
Fix from $2,300 2018-01-12
Android CRITICAL 9.1
CVE-2017-13187

An information disclosure vulnerability in the Android media framework (libhevc). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID…

Mitigation only
Fix from $2,300 2018-01-12
Android CRITICAL 9.1
CVE-2017-13188

An information disclosure vulnerability in the Android media framework (aac). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-…

Patch available
Fix from $2,300 2018-01-12
Android HIGH 8.8
CVE-2017-13176

In the parseURL function of URLStreamHandler, there is improper input validation of the host field. This could lead to a remote elevation of privileg…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.8
CVE-2017-13180

In the onQueueFilled function of SoftAVCDec, there is a possible out-of-bounds write due to a use after free if a bad header causes the decoder to ge…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.8
CVE-2017-13181

In the doGetThumb and getThumbnail functions of MtpServer, there is a possible double free due to not NULLing out a freed pointer. This could lead to…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.8
CVE-2017-13182

In the sendFormatChange function of ACodec, there is a possible integer overflow which could lead to an out-of-bounds write. This could lead to a loc…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.8
CVE-2017-13184

In the enableVSyncInjections function of SurfaceFlinger, there is a possible use after free of mVSyncInjector. This could lead to a local elevation o…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.5
CVE-2017-0846

An information disclosure vulnerability in the Android framework (clipboardservice). Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.5
CVE-2017-0855

In MPEG4Extractor.cpp, there are several places where functions return early without cleaning up internal buffers which could lead to memory leaks. T…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.5
CVE-2017-13186

A vulnerability in the Android media framework (libavc) related to incorrect use of mmco parameters. Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.5
CVE-2017-13189

A vulnerability in the Android media framework (libavc) related to handling dec_hdl memory allocation failures. Product: Android. Versions: 7.0, 7.1.…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.5
CVE-2017-13190

A vulnerability in the Android media framework (libhevc) related to handling ps_codec_obj memory allocation failures. Product: Android. Versions: 7.0…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.5
CVE-2017-13191

In the ihevcd_decode function of ihevcd_decode.c, there is an infinite loop due to an incomplete frame error. This could lead to a remote denial of s…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.5
CVE-2017-13192

In the ihevcd_parse_slice_header function of ihevcd_parse_slice_header.c a slice address of zero after the first slice could result in an infinite lo…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.5
CVE-2017-13193

In ihevcd_decode.c there is a possible infinite loop due to bytes for an sps of unsupported resolution resulting in the same sps being fed in over an…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.0
CVE-2017-13183

In the OMXNodeInstance::useBuffer and IOMX::freeBuffer functions, there is a possible use after free due to a race condition if the user frees the bu…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.8
CVE-2014-7952

The backup mechanism in the adb tool in Android might allow attackers to inject additional applications (APKs) and execute arbitrary code by leveragi…

No fix yet
Fix from $1,950 2018-01-12
Android HIGH 7.8
CVE-2017-0869

NVIDIA driver contains an integer overflow vulnerability which could cause a use after free and possibly lead to an elevation of privilege enabling c…

Patch available
Fix from $1,950 2018-01-12
Android CRITICAL 9.8
CVE-2017-11079

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing sparse image, uninit…

Patch available
Fix from $2,300 2018-01-10
Android HIGH 8.8
CVE-2017-14879

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, by calling an IPA ioctl and searching…

Patch available
Fix from $1,950 2018-01-10
Android HIGH 7.8
CVE-2017-11003

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while updating a firmware image, data…

Patch available
Fix from $1,950 2018-01-10
Android HIGH 7.8
CVE-2017-11080

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing a user supplied spar…

Patch available
Fix from $1,950 2018-01-10
Android HIGH 7.8
CVE-2017-11081

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, there is a potential buffer overflow …

Patch available
Fix from $1,950 2018-01-10
Android HIGH 7.8
CVE-2017-14873

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the pp_pgc_get_config() graphics d…

Patch available
Fix from $1,950 2018-01-10
Android HIGH 7.8
CVE-2017-15845

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, an invalid input of firmware size (ne…

Patch available
Fix from $1,950 2018-01-10
Android HIGH 7.8
CVE-2017-15848

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the fastrpc kernel driver, a buffe…

Patch available
Fix from $1,950 2018-01-10