|
266331
|
5.5 |
MEDIUM
Local
|
google
|
android
|
internal/telephony/SMSDispatcher.java in Telephony in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 does not properly construct wa…
|
CWE-284
Improper Access Control
|
CVE-2016-3883
|
2024-11-21 11:50 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266332
|
5.5 |
MEDIUM
Local
|
google
|
android
|
The decoder_peek_si_internal function in vp9/vp9_dx_iface.c in libvpx in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3881
|
2024-11-21 11:50 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266333
|
5.5 |
MEDIUM
Local
|
google
|
android
|
Multiple buffer overflows in rtsp/ASessionDescription.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2…
|
CWE-284
Improper Access Control
|
CVE-2016-3880
|
2024-11-21 11:50 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266334
|
5.5 |
MEDIUM
Local
|
google
|
android
|
arm-wt-22k/lib_src/eas_mdls.c in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-09-01 allows remote attackers to cause a denial of service (NULL …
|
CWE-284
Improper Access Control
|
CVE-2016-3879
|
2024-11-21 11:50 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266335
|
5.5 |
MEDIUM
Local
|
google
|
android
|
decoder/ih264d_api.c in mediaserver in Android 6.x before 2016-09-01 mishandles the case of decoding zero MBs, which allows remote attackers to cause a denial of service (device hang or reboot) via a…
|
CWE-284
Improper Access Control
|
CVE-2016-3878
|
2024-11-21 11:50 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266336
|
9.8 |
CRITICAL
Network
|
google
|
android
|
Unspecified vulnerability in Android before 2016-09-01 has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2016-3877
|
2024-11-21 11:50 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266337
|
6.8 |
MEDIUM
Physics
|
google
|
android
|
providers/settings/SettingsProvider.java in Android 6.x before 2016-09-01 and 7.0 before 2016-09-01 allows physically proximate attackers to bypass the SAFE_BOOT_DISALLOWED protection mechanism and b…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3876
|
2024-11-21 11:50 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266338
|
6.8 |
MEDIUM
Physics
|
google
|
android
|
server/wm/WindowManagerService.java in Android 6.x before 2016-09-01 does not enforce the DISALLOW_SAFE_BOOT setting, which allows physically proximate attackers to bypass intended access restriction…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3875
|
2024-11-21 11:50 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266339
|
7.8 |
HIGH
Local
|
google
|
android
|
CORE/HDD/src/wlan_hdd_wext.c in the Qualcomm Wi-Fi driver in Android before 2016-09-05 on Nexus 5X devices does not properly validate the arguments array, which allows attackers to gain privileges vi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3874
|
2024-11-21 11:50 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266340
|
7.8 |
HIGH
Local
|
google
|
android
|
The NVIDIA kernel in Android before 2016-09-05 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 29518457.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3873
|
2024-11-21 11:50 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|