|
276691
|
7.8 |
HIGH
Local
|
google
|
android
|
In Core Kernel in all Android releases from CAF using the Linux kernel, a Null Pointer Dereference vulnerability could potentially exist.
|
CWE-476
NULL Pointer Dereference
|
CVE-2014-9943
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276692
|
7.8 |
HIGH
Local
|
google
|
android
|
In Boot in all Android releases from CAF using the Linux kernel, a Use of Uninitialized Variable vulnerability could potentially exist.
|
CWE-665
Improper Initialization
|
CVE-2014-9942
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276693
|
7.0 |
HIGH
Local
|
google
|
android
|
In the Embedded File System in all Android releases from CAF using the Linux kernel, a Time-of-Check Time-of-Use Race Condition vulnerability could potentially exist.
|
CWE-362
Race Condition
|
CVE-2014-9941
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276694
|
7.8 |
HIGH
Local
|
google
|
android
|
In WCDMA in all Android releases from CAF using the Linux kernel, a Use After Free vulnerability could potentially exist.
|
CWE-416
Use After Free
|
CVE-2014-9930
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276695
|
7.8 |
HIGH
Local
|
google
|
android
|
In WCDMA in all Android releases from CAF using the Linux kernel, a Use of Out-of-range Pointer Offset vulnerability could potentially exist.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9929
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276696
|
5.5 |
MEDIUM
Local
|
rarlab
|
rar
|
Directory Traversal exists in RAR 4.x and 5.x because an unpack operation follows any symlinks, including symlinks contained in the archive. This allows remote attackers to write to arbitrary files v…
|
CWE-22
Path Traversal
|
CVE-2014-9983
|
2024-11-21 11:22 |
2017-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276697
|
4.3 |
MEDIUM
Network
|
contao
|
contao_cms
|
Directory traversal vulnerability in Contao before 3.2.19, and 3.4.x before 3.4.4 allows remote authenticated "back end" users to view files outside their file mounts or the document root via unspeci…
|
CWE-22
Path Traversal
|
CVE-2015-0269
|
2024-11-21 11:22 |
2017-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276698
|
7.5 |
HIGH
Network
|
jasypt_project
|
jasypt
|
jasypt before 1.9.2 allows a timing attack against the password hash comparison.
|
CWE-200
Information Exposure
|
CVE-2014-9970
|
2024-11-21 11:22 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276699
|
7.8 |
HIGH
Local
|
google
|
android
|
In TrustZone a buffer overflow vulnerability can potentially occur in a DRM routine in all Android releases from CAF using the Linux kernel.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9937
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276700
|
7.0 |
HIGH
Local
|
google
|
android
|
In TrustZone a time-of-check time-of-use race condition could potentially exist in an authentication routine in all Android releases from CAF using the Linux kernel.
|
CWE-362
Race Condition
|
CVE-2014-9936
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|