|
257571
|
7.8 |
HIGH
Local
|
google
|
android
|
A remote code execution vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-36006815.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-0757
|
2024-11-21 12:03 |
2017-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257572
|
7.8 |
HIGH
Local
|
google
|
android
|
A remote code execution vulnerability in the Android media framework (libstagefright). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-34621073.
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2017-0756
|
2024-11-21 12:03 |
2017-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257573
|
7.8 |
HIGH
Local
|
google
|
android
|
A elevation of privilege vulnerability in the Android libraries (libminikin). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-32178311.
|
NVD-CWE-noinfo
|
CVE-2017-0755
|
2024-11-21 12:03 |
2017-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257574
|
7.8 |
HIGH
Local
|
google
|
android
|
A remote code execution vulnerability in the Android libraries (libgdx). Product: Android. Versions: 7.1.1, 7.1.2, 8.0. Android ID: A-62218744.
|
NVD-CWE-noinfo
|
CVE-2017-0753
|
2024-11-21 12:03 |
2017-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257575
|
7.8 |
HIGH
Local
|
google
|
android
|
A elevation of privilege vulnerability in the Android framework (windowmanager). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-62196835.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2017-0752
|
2024-11-21 12:03 |
2017-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257576
|
8.1 |
HIGH
Network
|
rubygems debian canonical redhat
|
rubygems debian_linux ubuntu_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterp…
|
RubyGems version 2.6.12 and earlier is vulnerable to a DNS hijacking vulnerability that allows a MITM attacker to force the RubyGems client to download and install gems from a server that the attacke…
|
CWE-346
Origin Validation Error
|
CVE-2017-0902
|
2024-11-21 12:03 |
2017-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257577
|
7.5 |
HIGH
Network
|
rubygems debian canonical redhat
|
rubygems debian_linux ubuntu_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterp…
|
RubyGems version 2.6.12 and earlier fails to validate specification names, allowing a maliciously crafted gem to potentially overwrite any file on the filesystem.
|
CWE-20
Improper Input Validation
|
CVE-2017-0901
|
2024-11-21 12:03 |
2017-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257578
|
7.5 |
HIGH
Network
|
rubygems debian redhat
|
rubygems debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterprise_linux_serve…
|
RubyGems version 2.6.12 and earlier is vulnerable to maliciously crafted gem specifications to cause a denial of service attack against RubyGems clients who have issued a `query` command.
|
CWE-20
Improper Input Validation
|
CVE-2017-0900
|
2024-11-21 12:03 |
2017-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257579
|
9.8 |
CRITICAL
Network
|
rubygems debian redhat
|
rubygems debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterprise_linux_serve…
|
RubyGems version 2.6.12 and earlier is vulnerable to maliciously crafted gem specifications that include terminal escape characters. Printing the gem specification would execute terminal escape seque…
|
CWE-94
Code Injection
|
CVE-2017-0899
|
2024-11-21 12:03 |
2017-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257580
|
7.8 |
HIGH
Local
|
google
|
android
|
A elevation of privilege vulnerability in the Android media framework (libstagefright). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37237701.
|
CWE-129
Improper Validation of Array Index
|
CVE-2017-0805
|
2024-11-21 12:03 |
2017-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|