|
280241
|
7.0 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability exists in Secure Display.
|
CWE-362
Race Condition
|
CVE-2014-9966
|
2024-11-21 11:22 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280242
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, a vulnerability exists in the parsing of an SCM call.
|
CWE-20
Improper Input Validation
|
CVE-2014-9965
|
2024-11-21 11:22 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280243
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, an integer overflow vulnerability exists in debug functionality.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2014-9964
|
2024-11-21 11:22 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280244
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in WideVine DRM.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9963
|
2024-11-21 11:22 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280245
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, a vulnerability exists in the parsing of a DRM provisioning command.
|
CWE-20
Improper Input Validation
|
CVE-2014-9962
|
2024-11-21 11:22 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280246
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, a vulnerability in eMMC write protection exists that can be used to bypass power-on write protection.
|
CWE-284
Improper Access Control
|
CVE-2014-9961
|
2024-11-21 11:22 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280247
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in the PlayReady API.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9960
|
2024-11-21 11:22 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280248
|
9.8 |
CRITICAL
Network
|
gnu
|
glibc
|
nscd in the GNU C Library (aka glibc or libc6) before version 2.20 does not correctly compute the size of an internal buffer when processing netgroup requests, possibly leading to an nscd daemon cras…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9984
|
2024-11-21 11:22 |
2017-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280249
|
7.8 |
HIGH
Local
|
google
|
android
|
In the Secure File System in all Android releases from CAF using the Linux kernel, a capture-replay vulnerability could potentially exist.
|
CWE-287
Improper Authentication
|
CVE-2014-9952
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280250
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In TrustZone in all Android releases from CAF using the Linux kernel, an Information Exposure Through Timing Discrepancy vulnerability could potentially exist.
|
CWE-200
Information Exposure
|
CVE-2014-9951
|
2024-11-21 11:22 |
2017-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|