|
265701
|
9.8 |
CRITICAL
Network
|
google
|
android
|
Unspecified vulnerability in a Qualcomm component in Android before 2016-10-05 on Nexus 5X and 6P devices has unknown impact and attack vectors, aka internal bug 28823244.
|
NVD-CWE-noinfo
|
CVE-2016-3927
|
2024-11-21 11:50 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265702
|
9.8 |
CRITICAL
Network
|
google
|
android
|
Unspecified vulnerability in a Qualcomm component in Android before 2016-10-05 on Nexus 5, 5X, 6, and 6P devices has unknown impact and attack vectors, aka internal bug 28823953.
|
NVD-CWE-noinfo
|
CVE-2016-3926
|
2024-11-21 11:50 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265703
|
5.5 |
MEDIUM
Local
|
google
|
android
|
server/wifi/anqp/ANQPFactory.java in Android 6.x before 2016-10-01 and 7.0 before 2016-10-01 allows attackers to cause a denial of service (blocked Wi-Fi usage) via a crafted application, aka interna…
|
CWE-284
Improper Access Control
|
CVE-2016-3925
|
2024-11-21 11:50 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265704
|
5.5 |
MEDIUM
Local
|
google
|
android
|
services/audioflinger/Effects.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-10-01, and 7.0 before 2016-10-01 does not validate EFFECT_CMD_SET…
|
CWE-200
Information Exposure
|
CVE-2016-3924
|
2024-11-21 11:50 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265705
|
5.5 |
MEDIUM
Local
|
google
|
android
|
The Accessibility services in Android 7.0 before 2016-10-01 mishandle motion events, which allows attackers to conduct touchjacking attacks and consequently gain privileges via a crafted application,…
|
CWE-284
Improper Access Control
|
CVE-2016-3923
|
2024-11-21 11:50 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265706
|
7.8 |
HIGH
Local
|
google
|
android
|
libril/RilSapSocket.cpp in Telephony in Android 6.x before 2016-10-01 and 7.0 before 2016-10-01 relies on variable-length arrays, which allows attackers to gain privileges via a crafted application, …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3922
|
2024-11-21 11:50 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265707
|
7.8 |
HIGH
Local
|
google
|
android
|
libsysutils/src/FrameworkListener.cpp in Framework Listener in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-10-01, and 7.0 before 2016-10-01 allows attackers to g…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3921
|
2024-11-21 11:50 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265708
|
5.5 |
MEDIUM
Local
|
google
|
android
|
id3/ID3.cpp in libstagefright in mediaserver in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-10-01, and 7.0 before 2016-10-01 allows remote attackers to cause a denial of service (…
|
CWE-20
Improper Input Validation
|
CVE-2016-3920
|
2024-11-21 11:50 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265709
|
5.5 |
MEDIUM
Local
|
google
|
android
|
email/provider/AttachmentProvider.java in AOSP Mail in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-10-01, and 7.0 before 2016-10-01 does not ensure that certain …
|
CWE-200
Information Exposure
|
CVE-2016-3918
|
2024-11-21 11:50 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265710
|
7.8 |
HIGH
Local
|
google
|
android
|
The fingerprint login feature in Android 6.0.1 before 2016-10-01 and 7.0 before 2016-10-01 does not track the user account during the authentication process, which allows physically proximate attacke…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3917
|
2024-11-21 11:50 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|