|
278581
|
5.5 |
MEDIUM
Local
|
linux google
|
linux_kernel android
|
The ethtool_get_wol function in net/core/ethtool.c in the Linux kernel through 4.7, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not initialize a certain data structure,…
|
CWE-200
Information Exposure
|
CVE-2014-9900
|
2024-11-21 11:21 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278582
|
5.5 |
MEDIUM
Local
|
google
|
android
|
drivers/usb/host/ehci-msm2.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices omits certain minimum calculations before copying data, which allows attackers to obtain sensit…
|
CWE-200
Information Exposure
|
CVE-2014-9899
|
2024-11-21 11:21 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278583
|
5.5 |
MEDIUM
Local
|
google
|
android
|
arch/arm/mach-msm/qdsp6v2/ultrasound/usf.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices does not properly validate input parameters, which allows attackers …
|
CWE-200
Information Exposure
|
CVE-2014-9898
|
2024-11-21 11:21 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278584
|
5.5 |
MEDIUM
Local
|
google
|
android
|
sound/soc/msm/qdsp6v2/msm-lsm-client.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not validate certain user-space data, which allows attackers to obtain sensitive…
|
CWE-200
Information Exposure
|
CVE-2014-9897
|
2024-11-21 11:21 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278585
|
5.5 |
MEDIUM
Local
|
google
|
android
|
drivers/char/adsprpc.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices does not properly validate parameters and return values, which allows attackers to obtai…
|
CWE-200
Information Exposure
|
CVE-2014-9896
|
2024-11-21 11:21 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278586
|
5.5 |
MEDIUM
Local
|
linux google
|
linux_kernel android
|
drivers/media/media-device.c in the Linux kernel before 3.11, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly initialize certain data structures, which allows …
|
CWE-200
Information Exposure
|
CVE-2014-9895
|
2024-11-21 11:21 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278587
|
5.5 |
MEDIUM
Local
|
google
|
android
|
drivers/misc/qseecom.c in the Qualcomm components in Android before 2016-08-05 on Nexus 7 (2013) devices does not ensure that certain name strings end in a '\0' character, which allows attackers to o…
|
CWE-200
Information Exposure
|
CVE-2014-9894
|
2024-11-21 11:21 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278588
|
5.5 |
MEDIUM
Local
|
google
|
android
|
drivers/video/msm/mdss/mdss_mdp_pp.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not properly determine the size of Gamut LUT data, which allows attackers to obtai…
|
CWE-200
Information Exposure
|
CVE-2014-9893
|
2024-11-21 11:21 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278589
|
5.5 |
MEDIUM
Local
|
linux google
|
linux_kernel android
|
The snd_compr_tstamp function in sound/core/compress_offload.c in the Linux kernel through 4.7, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly initialize a ti…
|
CWE-200
Information Exposure
|
CVE-2014-9892
|
2024-11-21 11:21 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278590
|
7.8 |
HIGH
Local
|
google
|
android
|
drivers/misc/qseecom.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not validate certain buffer addresses, which allows attackers to gain privileges via a crafted a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-9891
|
2024-11-21 11:21 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|