|
252401
|
5.3 |
MEDIUM
Network
|
google
|
android
|
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch level 2018-04-05, while processing PTT commands, ptt_s…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-15853
|
2024-11-21 12:15 |
2018-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252402
|
5.3 |
MEDIUM
Network
|
google
|
android
|
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch level 2018-04-05, a policy for the packet pattern attr…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-15837
|
2024-11-21 12:15 |
2018-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252403
|
7.3 |
HIGH
Network
|
google
|
android
|
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch level 2018-04-05, if the firmware sends a service read…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-15836
|
2024-11-21 12:15 |
2018-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252404
|
8.8 |
HIGH
Adjacent
|
google
|
android
|
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch level 2018-04-05, while processing a 802.11 management…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-15822
|
2024-11-21 12:15 |
2018-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252405
|
7.5 |
HIGH
Network
|
google
|
android
|
While processing the QCA_NL80211_VENDOR_SUBCMD_SET_TXPOWER_SCALE_DECR_DB vendor command, in which attribute QCA_WLAN_VENDOR_ATTR_TXPOWER_SCALE_DECR_DB contains fewer than 1 byte, in Android for MSM, …
|
CWE-787
Out-of-bounds Write
|
CVE-2017-15859
|
2024-11-21 12:15 |
2018-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252406
|
7.8 |
HIGH
Local
|
google
|
android
|
Information leak of the ISPIF base address in Android for MSM, Firefox OS for MSM, and QRD Android can occur in the camera driver.
|
CWE-200
Information Exposure
|
CVE-2017-15852
|
2024-11-21 12:15 |
2018-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252407
|
7.8 |
HIGH
Local
|
google
|
android
|
In the video_ioctl2() function in the camera driver in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-09-16, an untrusted pointer dereference may potentially occur.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-15846
|
2024-11-21 12:15 |
2018-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252408
|
7.8 |
HIGH
Local
|
google
|
android
|
Due to a race condition in MDSS rotator in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-10-20, a double free vulnerability may potentially exist when two threads free the same per…
|
CWE-362 CWE-415
Race Condition Double Free
|
CVE-2017-15826
|
2024-11-21 12:15 |
2018-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252409
|
7.8 |
HIGH
Local
|
google
|
android
|
In spectral_create_samp_msg() in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-10-11, some values from firmware are not properly validated potentially leading to a buffer overflow.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-15823
|
2024-11-21 12:15 |
2018-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252410
|
8.1 |
HIGH
Network
|
apache debian canonical netapp redhat
|
http_server debian_linux ubuntu_linux santricity_cloud_connector storage_automation_store storagegrid clustered_data_ontap enterprise_linux
|
In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could…
|
CWE-20
Improper Input Validation
|
CVE-2017-15715
|
2024-11-21 12:15 |
2018-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|