|
266151
|
7.0 |
HIGH
Local
|
google
|
android
|
The MediaTek connectivity kernel driver in Android 6.0.1 before 2016-03-01 allows attackers to gain privileges via a crafted application that leverages conn_launcher access, aka internal bug 25873324.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0822
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266152
|
5.5 |
MEDIUM
Local
|
linux google
|
linux_kernel android
|
The LIST_POISON feature in include/linux/poison.h in the Linux kernel before 4.3, as used in Android 6.0.1 before 2016-03-01, does not properly consider the relationship to the mmap_min_addr value, w…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2016-0821
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266153
|
7.8 |
HIGH
Local
|
google
|
android
|
The MediaTek Wi-Fi kernel driver in Android 6.0.1 before 2016-03-01 allows attackers to gain privileges via a crafted application, aka internal bug 26267358.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0820
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266154
|
7.8 |
HIGH
Local
|
google
|
android
|
The Qualcomm performance component in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 allows attackers to gain privileges via a crafted application, aka internal bug 2536…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0819
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266155
|
5.9 |
MEDIUM
Network
|
google
|
android
|
The caching functionality in the TrustManagerImpl class in TrustManagerImpl.java in Conscrypt in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 mishandles the distinctio…
|
CWE-254 CWE-345
7PK - Security Features Insufficient Verification of Data Authenticity
|
CVE-2016-0818
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266156
|
9.8 |
CRITICAL
Network
|
google
|
android
|
mediaserver in Android 6.x before 2016-03-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, related to decoder/ih264d_par…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0816
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266157
|
9.8 |
CRITICAL
Network
|
google
|
android
|
The MPEG4Source::fragmentedRead function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 allows remote attackers…
|
CWE-20
Improper Input Validation
|
CVE-2016-0815
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266158
|
8.8 |
HIGH
Network
|
adobe samsung
|
flash_player air air_sdk x14j_firmware flash_player_desktop_runtime air_desktop_runtime air_sdk_\&_compiler
|
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe A…
|
CWE-416
Use After Free
|
CVE-2016-0999
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266159
|
8.8 |
HIGH
Network
|
adobe samsung
|
flash_player air air_sdk x14j_firmware flash_player_desktop_runtime air_desktop_runtime air_sdk_\&_compiler
|
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe A…
|
CWE-416
Use After Free
|
CVE-2016-0998
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266160
|
8.8 |
HIGH
Network
|
adobe samsung
|
flash_player air air_sdk x14j_firmware flash_player_desktop_runtime air_desktop_runtime air_sdk_\&_compiler
|
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe A…
|
CWE-416
Use After Free
|
CVE-2016-0997
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|