|
253341
|
7.0 |
HIGH
Local
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in an IOCTL handler potentially leading to an integer overflow and then an out-of-bounds write.
|
CWE-362 CWE-190
Race Condition Integer Overflow or Wraparound
|
CVE-2017-8267
|
2024-11-21 12:33 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253342
|
7.0 |
HIGH
Local
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in a video driver potentially leading to a use-after-free condition.
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2017-8266
|
2024-11-21 12:33 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253343
|
7.0 |
HIGH
Local
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in a video driver which can lead to a double free.
|
CWE-362 CWE-415
Race Condition Double Free
|
CVE-2017-8265
|
2024-11-21 12:33 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253344
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a kernel fault can occur when doing certain operations on a read-only virtual address in userspace.
|
NVD-CWE-noinfo
|
CVE-2017-8263
|
2024-11-21 12:33 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253345
|
7.0 |
HIGH
Local
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, in some memory allocation and free functions, a race condition can potentially occur leading to a Use After Free condit…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2017-8262
|
2024-11-21 12:33 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253346
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, in a camera driver ioctl, a kernel overwrite can potentially occur.
|
NVD-CWE-noinfo
|
CVE-2017-8261
|
2024-11-21 12:33 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253347
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, due to a type downcast, a value may improperly pass validation and cause an out of bounds write later.
|
CWE-20 CWE-787
Improper Input Validation Out-of-bounds Write
|
CVE-2017-8260
|
2024-11-21 12:33 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253348
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, when accessing the sde_rotator debug interface for register reading with multiple processes, one process can free the d…
|
CWE-362
Race Condition
|
CVE-2017-8257
|
2024-11-21 12:33 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253349
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, array out of bounds access can occur if userspace sends more than 16 multicast addresses.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-8256
|
2024-11-21 12:33 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253350
|
7.8 |
HIGH
Local
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow vulnerability exists in boot.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-8255
|
2024-11-21 12:33 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|