|
265251
|
7.8 |
HIGH
Local
|
google
|
android
|
The video driver in the kernel in Android before 2016-08-05 on Nexus 5 devices allows attackers to gain privileges via a crafted application, aka internal bug 28399876.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3845
|
2024-11-21 11:50 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265252
|
7.8 |
HIGH
Local
|
google
|
android
|
mediaserver in Android before 2016-08-05 on Nexus 9 and Pixel C devices allows attackers to gain privileges via a crafted application, aka internal bug 28299517.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3844
|
2024-11-21 11:50 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265253
|
7.8 |
HIGH
Local
|
google
|
android
|
Android before 2016-08-05 does not properly restrict code execution in a kernel context, which allows attackers to gain privileges via a crafted application, as demonstrated by the kernel performance…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3843
|
2024-11-21 11:50 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265254
|
7.8 |
HIGH
Local
|
google
|
android
|
The Qualcomm GPU driver in Android before 2016-08-05 on Nexus 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28377352 and Qualcomm inter…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3842
|
2024-11-21 11:50 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265255
|
9.8 |
CRITICAL
Network
|
google
|
android
|
Conscrypt in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-05 does not properly identify session reuse, which allows remote attackers to execute arbitrary c…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3840
|
2024-11-21 11:50 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265256
|
5.5 |
MEDIUM
Local
|
google
|
android
|
Bluetooth in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 allows attackers to cause a denial of service (loss of Bluetooth 911 functionality) via a craf…
|
CWE-284
Improper Access Control
|
CVE-2016-3839
|
2024-11-21 11:50 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265257
|
5.5 |
MEDIUM
Local
|
google
|
android
|
Android 6.x before 2016-08-01 allows attackers to cause a denial of service (loss of locked-screen 911 functionality) via a crafted application that uses the app-pinning feature, aka internal bug 287…
|
CWE-284
Improper Access Control
|
CVE-2016-3838
|
2024-11-21 11:50 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265258
|
5.5 |
MEDIUM
Local
|
google
|
android
|
service/jni/com_android_server_wifi_WifiNative.cpp in Wi-Fi in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 allows attackers to obtain sensitive information via a crafted…
|
CWE-200
Information Exposure
|
CVE-2016-3837
|
2024-11-21 11:50 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265259
|
5.5 |
MEDIUM
Local
|
google
|
android
|
The SurfaceFlinger service in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 allows attackers to obtain sensitive information via a crafted application, related to lack of …
|
CWE-200
Information Exposure
|
CVE-2016-3836
|
2024-11-21 11:50 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265260
|
5.5 |
MEDIUM
Local
|
google
|
android
|
The secure-session feature in the mm-video-v4l2 venc component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 mishandles heap pointers, …
|
CWE-200
Information Exposure
|
CVE-2016-3835
|
2024-11-21 11:50 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|