|
276701
|
7.8 |
HIGH
Local
|
google
|
android
|
In TrustZone an integer overflow vulnerability leading to a buffer overflow could potentially occur in a DRM routine in all Android releases from CAF using the Linux kernel.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2014-9935
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276702
|
7.8 |
HIGH
Local
|
google
|
android
|
A PKCS#1 v1.5 signature verification routine in all Android releases from CAF using the Linux kernel may not check padding.
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2014-9934
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276703
|
7.8 |
HIGH
Local
|
google
|
android
|
Due to missing input validation in all Android releases from CAF using the Linux kernel, HLOS can write to fuses for which it should not have access.
|
CWE-20
Improper Input Validation
|
CVE-2014-9933
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276704
|
7.8 |
HIGH
Local
|
google
|
android
|
In TrustZone, an integer overflow vulnerability can potentially occur in all Android releases from CAF using the Linux kernel due to an improper address range computation.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2014-9932
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276705
|
7.8 |
HIGH
Local
|
google
|
android
|
A buffer overflow vulnerability in all Android releases from CAF using the Linux kernel can potentially occur if an OEM performs an app region size customization due to a hard-coded value.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9931
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276706
|
7.0 |
HIGH
Local
|
linux google
|
linux_kernel android
|
The regulator_ena_gpio_free function in drivers/regulator/core.c in the Linux kernel before 3.19 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted appl…
|
CWE-416
Use After Free
|
CVE-2014-9940
|
2024-11-21 11:22 |
2017-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276707
|
6.5 |
MEDIUM
Network
|
ibm
|
maximo_asset_management maximo_for_utilities maximo_for_nuclear_power tivoli_service_request_manager change_and_configuration_management_database tivoli_asset_management_for_it maxi…
|
IBM Tivoli IT Asset Management for IT, Tivoli Service Request Manager, and Change and Configuration Management Database 7.1 through 7.1.1.8 and 7.2 and Maximo Asset Management and Maximo Industry Sol…
|
CWE-22
Path Traversal
|
CVE-2015-0107
|
2024-11-21 11:22 |
2017-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276708
|
8.8 |
HIGH
Network
|
ibm
|
maximo_asset_management maximo_for_utilities maximo_for_nuclear_power tivoli_service_request_manager change_and_configuration_management_database tivoli_asset_management_for_it maxi…
|
IBM Tivoli IT Asset Management for IT, Tivoli Service Request Manager, and Change and Configuration Management Database 7.1 through 7.1.1.8 and 7.2 and Maximo Asset Management and Maximo Industry Sol…
|
CWE-284
Improper Access Control
|
CVE-2015-0104
|
2024-11-21 11:22 |
2017-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276709
|
9.8 |
CRITICAL
Network
|
gnu
|
binutils
|
ihex.c in GNU Binutils before 2.26 contains a stack buffer overflow when printing bad bytes in Intel Hex objects.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9939
|
2024-11-21 11:22 |
2017-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276710
|
8.8 |
HIGH
Network
|
git-scm
|
git
|
contrib/completion/git-prompt.sh in Git before 1.9.3 does not sanitize branch names in the PS1 variable, allowing a malicious repository to cause code execution.
|
CWE-116
Improper Encoding or Escaping of Output
|
CVE-2014-9938
|
2024-11-21 11:22 |
2017-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|