|
266821
|
4.0 |
MEDIUM
Local
|
google linux
|
android linux_kernel
|
The pagemap_open function in fs/proc/task_mmu.c in the Linux kernel before 3.19.3, as used in Android 6.0.1 before 2016-03-01, allows local users to obtain sensitive physical-address information by r…
|
CWE-200
Information Exposure
|
CVE-2016-0823
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266822
|
7.0 |
HIGH
Local
|
google
|
android
|
The MediaTek connectivity kernel driver in Android 6.0.1 before 2016-03-01 allows attackers to gain privileges via a crafted application that leverages conn_launcher access, aka internal bug 25873324.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0822
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266823
|
5.5 |
MEDIUM
Local
|
linux google
|
linux_kernel android
|
The LIST_POISON feature in include/linux/poison.h in the Linux kernel before 4.3, as used in Android 6.0.1 before 2016-03-01, does not properly consider the relationship to the mmap_min_addr value, w…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2016-0821
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266824
|
7.8 |
HIGH
Local
|
google
|
android
|
The MediaTek Wi-Fi kernel driver in Android 6.0.1 before 2016-03-01 allows attackers to gain privileges via a crafted application, aka internal bug 26267358.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0820
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266825
|
7.8 |
HIGH
Local
|
google
|
android
|
The Qualcomm performance component in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 allows attackers to gain privileges via a crafted application, aka internal bug 2536…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0819
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266826
|
5.9 |
MEDIUM
Network
|
google
|
android
|
The caching functionality in the TrustManagerImpl class in TrustManagerImpl.java in Conscrypt in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 mishandles the distinctio…
|
CWE-254 CWE-345
7PK - Security Features Insufficient Verification of Data Authenticity
|
CVE-2016-0818
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266827
|
9.8 |
CRITICAL
Network
|
google
|
android
|
mediaserver in Android 6.x before 2016-03-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, related to decoder/ih264d_par…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0816
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266828
|
9.8 |
CRITICAL
Network
|
google
|
android
|
The MPEG4Source::fragmentedRead function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 allows remote attackers…
|
CWE-20
Improper Input Validation
|
CVE-2016-0815
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266829
|
8.8 |
HIGH
Network
|
adobe samsung
|
flash_player air air_sdk x14j_firmware flash_player_desktop_runtime air_desktop_runtime air_sdk_\&_compiler
|
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe A…
|
CWE-416
Use After Free
|
CVE-2016-0999
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266830
|
8.8 |
HIGH
Network
|
adobe samsung
|
flash_player air air_sdk x14j_firmware flash_player_desktop_runtime air_desktop_runtime air_sdk_\&_compiler
|
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe A…
|
CWE-416
Use After Free
|
CVE-2016-0998
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|