Filtered by vendor Google
                         Subscriptions
                    
                    
                
                        Filtered by product Android
                         Subscriptions
                    
                    
                
                    Total
                    8741 CVE
                
            | CVE | Vendors | Products | Updated | CVSS v3.1 | 
|---|---|---|---|---|
| CVE-2017-11015 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, currently, the value of SIR_MAC_AUTH_CHALLENGE_LENGTH is set to 128 which may result in buffer overflow since the frame parser allows challenge text of length up to 253 bytes, but the driver can not handle challenge text larger than 128 bytes. | ||||
| CVE-2017-0877 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| A remote code execution vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0. Android ID A-66372937. | ||||
| CVE-2017-0878 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| A remote code execution vulnerability in the Android media framework (libhevc). Product: Android. Versions: 8.0. Android ID A-65186291. | ||||
| CVE-2017-0566 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| An elevation of privilege vulnerability in the MediaTek camera driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: N/A. Android ID: A-28470975. References: M-ALPS02696367. | ||||
| CVE-2017-11073 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, the qcacld pktlog allows mapping memory via /proc/ath_pktlog/cld to user space. | ||||
| CVE-2017-8265 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in a video driver which can lead to a double free. | ||||
| CVE-2017-0880 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| A denial of service vulnerability in the Android media framework (libskia). Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID A-65646012. | ||||
| CVE-2015-1537 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| Integer overflow in IHDCP.cpp in the media_server component in Android allows remote attackers to execute arbitrary code via a crafted application. | ||||
| CVE-2017-10999 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| In all Qualcomm products with Android releases from CAF using the Linux kernel, concurrent calls into ioctl RMNET_IOCTL_ADD_MUX_CHANNEL in ipa wan driver may lead to memory corruption due to missing locks. | ||||
| CVE-2017-7369 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| In all Android releases from CAF using the Linux kernel, an array index in an ALSA routine is not properly validating potentially leading to kernel stack corruption. | ||||
| CVE-2017-9710 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, IOCTL interface to send QMI NOTIFY REQ messages can be called from multiple contexts which can result in buffer overflow of msg cache. | ||||
| CVE-2017-8256 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| In all Qualcomm products with Android releases from CAF using the Linux kernel, array out of bounds access can occur if userspace sends more than 16 multicast addresses. | ||||
| CVE-2017-8281 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition can allow access to already freed memory while querying event status via DCI. | ||||
| CVE-2017-9676 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| In all Qualcomm products with Android releases from CAF using the Linux kernel, potential use after free scenarios and race conditions can occur when accessing global static variables without using a lock. | ||||
| CVE-2017-9715 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing a vendor command, a buffer over-read can occur. | ||||
| CVE-2017-0870 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| An elevation of privilege vulnerability in the Android framework (libminikin). Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-62134807. | ||||
| CVE-2017-0871 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| An elevation of privilege vulnerability in the Android framework (framework base). Product: Android. Versions: 8.0. Android ID A-65281159. | ||||
| CVE-2017-8245 | 1 Google | 1 Android | 2025-04-20 | 7.8 High | 
| In all Android releases from CAF using the Linux kernel, while processing a voice SVC request which is nonstandard by specifying a payload size that will overflow its own declared size, an out of bounds memory copy occurs. | ||||
| CVE-2016-8446 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| An elevation of privilege vulnerability in MediaTek components, including the thermal driver and video driver, could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: N/A. Android ID: A-31747749. References: MT-ALPS02968909. | ||||
| CVE-2017-0864 | 1 Google | 1 Android | 2025-04-20 | N/A | 
| An elevation of privilege vulnerability in the MediaTek ioctl (flashlight). Product: Android. Versions: Android kernel. Android ID: A-37277147. References: M-ALPS03394571. | ||||