|
270971
|
9.8 |
CRITICAL
Network
|
google
|
android
|
An elevation of privilege vulnerability in Qualcomm closed source components. Product: Android. Versions: Android kernel. Android ID: A-36384689.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-9008
|
2024-11-21 11:39 |
2018-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270972
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, an untrusted pointer dereference can occur in a TrustZone syscall.
|
CWE-476
NULL Pointer Dereference
|
CVE-2015-9073
|
2024-11-21 11:39 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270973
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, an untrusted pointer dereference can occur in a TrustZone syscall.
|
CWE-476
NULL Pointer Dereference
|
CVE-2015-9072
|
2024-11-21 11:39 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270974
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer over-read vulnerability exists in a TrustZone syscall.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-9071
|
2024-11-21 11:39 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270975
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer over-read vulnerability exists in a TrustZone syscall.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-9070
|
2024-11-21 11:39 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270976
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, the Secure File System can become corrupted.
|
CWE-20
Improper Input Validation
|
CVE-2015-9069
|
2024-11-21 11:39 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270977
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, an argument to a mink syscall is not properly validated.
|
CWE-20
Improper Input Validation
|
CVE-2015-9068
|
2024-11-21 11:39 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270978
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a potential compiler optimization of memset() is addressed.
|
NVD-CWE-noinfo
|
CVE-2015-9067
|
2024-11-21 11:39 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270979
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in an Inter-RAT procedure.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-9066
|
2024-11-21 11:39 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270980
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a UE can respond to a UEInformationRequest before Access Stratum security is established.
|
CWE-254
7PK - Security Features
|
CVE-2015-9065
|
2024-11-21 11:39 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|