|
267451
|
7.0 |
HIGH
Local
|
google
|
android
|
OpenSSLCipher.java in Conscrypt in Android 6.x before 2016-05-01 mishandles updates of the Additional Authenticated Data (AAD) array, which allows attackers to spoof message authentication via unspec…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2462
|
2024-11-21 11:48 |
2016-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267452
|
7.0 |
HIGH
Local
|
google
|
android
|
OpenSSLCipher.java in Conscrypt in Android 6.x before 2016-05-01 mishandles resets of the Additional Authenticated Data (AAD) array, which allows attackers to spoof message authentication via unspeci…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2461
|
2024-11-21 11:48 |
2016-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267453
|
5.5 |
MEDIUM
Local
|
google
|
android
|
mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not initialize certain data structures, which allows attackers to obtain sensitive info…
|
CWE-200
Information Exposure
|
CVE-2016-2460
|
2024-11-21 11:48 |
2016-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267454
|
5.5 |
MEDIUM
Local
|
google
|
android
|
mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not initialize certain data structures, which allows attackers to obtain sensitive info…
|
CWE-200
Information Exposure
|
CVE-2016-2459
|
2024-11-21 11:48 |
2016-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267455
|
5.5 |
MEDIUM
Local
|
google
|
android
|
The compose functionality in AOSP Mail in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not properly restrict attachments, which allows attackers to obtain sensitive …
|
CWE-200
Information Exposure
|
CVE-2016-2458
|
2024-11-21 11:48 |
2016-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267456
|
5.5 |
MEDIUM
Local
|
google
|
android
|
server/pm/UserManagerService.java in Wi-Fi in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 allows attackers to bypass intended restrictions on Wi-Fi configuration changes…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2457
|
2024-11-21 11:48 |
2016-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267457
|
7.0 |
HIGH
Local
|
google
|
android
|
The MediaTek Wi-Fi driver in Android before 2016-05-01 on Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 27275187.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2456
|
2024-11-21 11:48 |
2016-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267458
|
5.5 |
MEDIUM
Local
|
google
|
android
|
The Qualcomm hardware video codec in Android before 2016-05-01 on Nexus 5 devices allows remote attackers to cause a denial of service (reboot) via a crafted file, aka internal bug 26221024.
|
CWE-20
Improper Input Validation
|
CVE-2016-2454
|
2024-11-21 11:48 |
2016-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267459
|
7.0 |
HIGH
Local
|
google
|
android_one
|
The MediaTek Wi-Fi driver in Android before 2016-05-01 on Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 27549705.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2453
|
2024-11-21 11:48 |
2016-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267460
|
7.8 |
HIGH
Local
|
google
|
android
|
codecs/amrnb/dec/SoftAMR.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate buffer sizes, which allo…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2452
|
2024-11-21 11:48 |
2016-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|