|
276341
|
7.8 |
HIGH
Local
|
google
|
android
|
Integer overflow in lib/heap/heap.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices allows attackers to gain privileges via a crafted application, aka Android …
|
CWE-264 CWE-189
Permissions, Privileges, and Access Controls Numeric Errors
|
CVE-2014-9800
|
2024-11-21 11:21 |
2016-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276342
|
7.8 |
HIGH
Local
|
google
|
android
|
The makefile in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices omits the -fno-strict-overflow option to gcc, which might allow attackers to gain privileges via a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-9799
|
2024-11-21 11:21 |
2016-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276343
|
5.5 |
MEDIUM
Local
|
google
|
android
|
platform/msm_shared/dev_tree.c in the Qualcomm bootloader in Android before 2016-07-05 on Nexus 5 devices does not check the relationship between tags addresses and aboot addresses, which allows atta…
|
CWE-284
Improper Access Control
|
CVE-2014-9798
|
2024-11-21 11:21 |
2016-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276344
|
7.8 |
HIGH
Local
|
google
|
android
|
app/aboot/aboot.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices does not validate the page size in the kernel header, which allows attackers to bypass intend…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-9796
|
2024-11-21 11:21 |
2016-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276345
|
7.8 |
HIGH
Local
|
google
|
android
|
app/aboot/aboot.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices does not properly check for an integer overflow, which allows attackers to bypass intended access restrict…
|
CWE-189
Numeric Errors
|
CVE-2014-9795
|
2024-11-21 11:21 |
2016-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276346
|
7.8 |
HIGH
Local
|
google
|
android
|
platform/msm_shared/mmc.c in the Qualcomm components in Android before 2016-07-05 on Nexus 7 (2013) devices mishandles the power-on write-protect feature, which allows attackers to gain privileges vi…
|
CWE-254
7PK - Security Features
|
CVE-2014-9793
|
2024-11-21 11:21 |
2016-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276347
|
7.8 |
HIGH
Local
|
google
|
android
|
arch/arm/mach-msm/ipc_router.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices uses an incorrect integer data type, which allows attackers to gain privileges via a crafted …
|
CWE-189
Numeric Errors
|
CVE-2014-9792
|
2024-11-21 11:21 |
2016-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276348
|
7.8 |
HIGH
Local
|
google
|
android
|
drivers/mmc/core/debugfs.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices does not validate pointers used in read and write operations, which allows attackers…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-9790
|
2024-11-21 11:21 |
2016-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276349
|
7.8 |
HIGH
Local
|
google
|
android
|
The (1) alloc and (2) free APIs in arch/arm/mach-msm/qdsp6v2/msm_audio_ion.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices do not validate parameters, which allows attack…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-9789
|
2024-11-21 11:21 |
2016-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276350
|
7.8 |
HIGH
Local
|
google
|
android
|
Multiple buffer overflows in the voice drivers in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices allow attackers to gain privileges via a crafted application, aka Android int…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9788
|
2024-11-21 11:21 |
2016-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|