|
277901
|
7.8 |
HIGH
Local
|
google
|
android
|
In Core Kernel in all Android releases from CAF using the Linux kernel, a Use After Free vulnerability could potentially exist.
|
CWE-416
Use After Free
|
CVE-2014-9946
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277902
|
7.8 |
HIGH
Local
|
google
|
android
|
In TrustZone in all Android releases from CAF using the Linux kernel, an Improper Authorization vulnerability could potentially exist.
|
CWE-285
Improper Authorization
|
CVE-2014-9945
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277903
|
7.8 |
HIGH
Local
|
google
|
android
|
In the Secure File System in all Android releases from CAF using the Linux kernel, an Integer Overflow to Buffer Overflow vulnerability could potentially exist.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2014-9944
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277904
|
7.8 |
HIGH
Local
|
google
|
android
|
In Core Kernel in all Android releases from CAF using the Linux kernel, a Null Pointer Dereference vulnerability could potentially exist.
|
CWE-476
NULL Pointer Dereference
|
CVE-2014-9943
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277905
|
7.8 |
HIGH
Local
|
google
|
android
|
In Boot in all Android releases from CAF using the Linux kernel, a Use of Uninitialized Variable vulnerability could potentially exist.
|
CWE-665
Improper Initialization
|
CVE-2014-9942
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277906
|
7.0 |
HIGH
Local
|
google
|
android
|
In the Embedded File System in all Android releases from CAF using the Linux kernel, a Time-of-Check Time-of-Use Race Condition vulnerability could potentially exist.
|
CWE-362
Race Condition
|
CVE-2014-9941
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277907
|
7.8 |
HIGH
Local
|
google
|
android
|
In WCDMA in all Android releases from CAF using the Linux kernel, a Use After Free vulnerability could potentially exist.
|
CWE-416
Use After Free
|
CVE-2014-9930
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277908
|
7.8 |
HIGH
Local
|
google
|
android
|
In WCDMA in all Android releases from CAF using the Linux kernel, a Use of Out-of-range Pointer Offset vulnerability could potentially exist.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9929
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277909
|
5.5 |
MEDIUM
Local
|
rarlab
|
rar
|
Directory Traversal exists in RAR 4.x and 5.x because an unpack operation follows any symlinks, including symlinks contained in the archive. This allows remote attackers to write to arbitrary files v…
|
CWE-22
Path Traversal
|
CVE-2014-9983
|
2024-11-21 11:22 |
2017-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277910
|
4.3 |
MEDIUM
Network
|
contao
|
contao_cms
|
Directory traversal vulnerability in Contao before 3.2.19, and 3.4.x before 3.4.4 allows remote authenticated "back end" users to view files outside their file mounts or the document root via unspeci…
|
CWE-22
Path Traversal
|
CVE-2015-0269
|
2024-11-21 11:22 |
2017-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|