|
277821
|
7.8 |
HIGH
Local
|
google
|
android
|
In WCDMA in all Android releases from CAF using the Linux kernel, a Use of Out-of-range Pointer Offset vulnerability could potentially exist.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9929
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277822
|
5.5 |
MEDIUM
Local
|
rarlab
|
rar
|
Directory Traversal exists in RAR 4.x and 5.x because an unpack operation follows any symlinks, including symlinks contained in the archive. This allows remote attackers to write to arbitrary files v…
|
CWE-22
Path Traversal
|
CVE-2014-9983
|
2024-11-21 11:22 |
2017-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277823
|
4.3 |
MEDIUM
Network
|
contao
|
contao_cms
|
Directory traversal vulnerability in Contao before 3.2.19, and 3.4.x before 3.4.4 allows remote authenticated "back end" users to view files outside their file mounts or the document root via unspeci…
|
CWE-22
Path Traversal
|
CVE-2015-0269
|
2024-11-21 11:22 |
2017-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277824
|
7.5 |
HIGH
Network
|
jasypt_project
|
jasypt
|
jasypt before 1.9.2 allows a timing attack against the password hash comparison.
|
CWE-200
Information Exposure
|
CVE-2014-9970
|
2024-11-21 11:22 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277825
|
7.8 |
HIGH
Local
|
google
|
android
|
In TrustZone a buffer overflow vulnerability can potentially occur in a DRM routine in all Android releases from CAF using the Linux kernel.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9937
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277826
|
7.0 |
HIGH
Local
|
google
|
android
|
In TrustZone a time-of-check time-of-use race condition could potentially exist in an authentication routine in all Android releases from CAF using the Linux kernel.
|
CWE-362
Race Condition
|
CVE-2014-9936
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277827
|
7.8 |
HIGH
Local
|
google
|
android
|
In TrustZone an integer overflow vulnerability leading to a buffer overflow could potentially occur in a DRM routine in all Android releases from CAF using the Linux kernel.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2014-9935
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277828
|
7.8 |
HIGH
Local
|
google
|
android
|
A PKCS#1 v1.5 signature verification routine in all Android releases from CAF using the Linux kernel may not check padding.
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2014-9934
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277829
|
7.8 |
HIGH
Local
|
google
|
android
|
Due to missing input validation in all Android releases from CAF using the Linux kernel, HLOS can write to fuses for which it should not have access.
|
CWE-20
Improper Input Validation
|
CVE-2014-9933
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277830
|
7.8 |
HIGH
Local
|
google
|
android
|
In TrustZone, an integer overflow vulnerability can potentially occur in all Android releases from CAF using the Linux kernel due to an improper address range computation.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2014-9932
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|