|
268161
|
7.0 |
HIGH
Local
|
google
|
android
|
In a sound driver in Android for MSM, Firefox OS for MSM, QRD Android, some variables are from userspace and values can be chosen that could result in stack overflow.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-5867
|
2024-11-21 11:55 |
2017-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268162
|
7.8 |
HIGH
Local
|
google
|
android
|
In an audio driver function in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, some parameters are from userspace, and if they are set to a large value, integer overfl…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-5864
|
2024-11-21 11:55 |
2017-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268163
|
7.8 |
HIGH
Local
|
google
|
android
|
In an ioctl handler in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, several sanity checks are missing which can lead to out-of-bounds accesses.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-5863
|
2024-11-21 11:55 |
2017-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268164
|
7.0 |
HIGH
Local
|
google
|
android
|
When a control related to codec is issued from userspace in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, the type casting is done to the container structure instead…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-5862
|
2024-11-21 11:55 |
2017-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268165
|
8.8 |
HIGH
Adjacent
|
google
|
android
|
In a display driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, a variable controlled by userspace is used to calculate offsets and sizes for copy operations, w…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-5861
|
2024-11-21 11:55 |
2017-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268166
|
7.0 |
HIGH
Local
|
google
|
android
|
In an audio driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, if a function is called with a very large length, an integer overflow could occur followed by a h…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-5860
|
2024-11-21 11:55 |
2017-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268167
|
7.0 |
HIGH
Local
|
google
|
android
|
In a sound driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, if a function is called with a very large length, an integer overflow could occur followed by a bu…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-5859
|
2024-11-21 11:55 |
2017-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268168
|
4.7 |
MEDIUM
Local
|
google
|
android
|
In an ioctl handler in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, if a user supplies a value too large, then an out-of-bounds read occurs.
|
CWE-200
Information Exposure
|
CVE-2016-5858
|
2024-11-21 11:55 |
2017-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268169
|
4.7 |
MEDIUM
Local
|
google
|
android
|
In a driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, a user-supplied buffer is casted to a structure without checking if the source buffer is large enough.
|
CWE-200
Information Exposure
|
CVE-2016-5855
|
2024-11-21 11:55 |
2017-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268170
|
4.7 |
MEDIUM
Local
|
google
|
android
|
In a driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, kernel heap memory can be exposed to userspace.
|
CWE-200
Information Exposure
|
CVE-2016-5854
|
2024-11-21 11:55 |
2017-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|