CVE-2015-9031
published 2017-06-13CVE-2015-9031: In all Android releases from CAF using the Linux kernel, a TZ memory address is exposed to HLOS by HDCP.
PriorityP410low3.3CVSS 3.0
AVLACLPRNUIRSUCLINAN
EPSS
0.43%
34.8th percentile
In all Android releases from CAF using the Linux kernel, a TZ memory address is exposed to HLOS by HDCP.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| qualcomm_inc | all_qualcomm_products | — | — |
CVSS provenance
nvdv3.03.3LOWCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-ggpf-x42c-7r3x: In all Android releases from CAF using the Linux kernel, a TZ memory address is exposed to HLOS by HDCP
ghsa_unreviewed·2022-05-17
CVE-2015-9031 [MEDIUM] CWE-200 GHSA-ggpf-x42c-7r3x: In all Android releases from CAF using the Linux kernel, a TZ memory address is exposed to HLOS by HDCP
In all Android releases from CAF using the Linux kernel, a TZ memory address is exposed to HLOS by HDCP.
Android
CVE-2015-9031: Closed-source component
vendor_android·2017-06-01·CVSS 3.3
CVE-2015-9031 [LOW] CVE-2015-9031: Closed-source component
Android Security Bulletin 2017-06-01
CVE: CVE-2015-9031
Severity: HIGH
Type: N/A
Component: Closed-source component
References: A-37275889*
No detection rules found.
Exploit-DB
ManageEngine ServiceDesk Plus 9.0 < Build 9031 - User Privileges Management
exploitdb·2015-01-26
CVE-2015-1480 ManageEngine ServiceDesk Plus 9.0 < Build 9031 - User Privileges Management
ManageEngine ServiceDesk Plus 9.0 < Build 9031 - User Privileges Management
---
[REWTERZ-20140103] - Rewterz - Security Advisory
Title: ManageEngine ServiceDesk Plus User Privileges Management Vulnerability
Product: ServiceDesk Plus (http://www.manageengine.com/)
Affected Version: 9.0 (Other versions could also be affected)
Fixed Version: 9.0 Build 9031
Vulnerability Impact: Low
Advisory ID: REWTERZ-20140103
Published Date: 22-Jan-2015
Researcher: Muhammad Ahmed Siddiqui
Email: ahmed [at] rewterz.com
URL: http://www.rewterz.com/vulnerabilities/manageengine-servicedesk-plus-user-privileges-management-vulnerability
Product Introduction
ServiceDesk Plus is a help desk software with integrated asset and
project management built on the ITIL framework. It is available in 29
different lang
Exploit-DB
ManageEngine ServiceDesk Plus 9.0 - SQL Injection
exploitdb·2015-01-22
CVE-2015-1479 ManageEngine ServiceDesk Plus 9.0 - SQL Injection
ManageEngine ServiceDesk Plus 9.0 - SQL Injection
---
[REWTERZ-20140101] - Rewterz - Security Advisory
Title: ManageEngine ServiceDesk SQL Injection Vulnerability
Product: ServiceDesk Plus (http://www.manageengine.com/)
Affected Version: 9.0 (Other versions could also be affected)
Fixed Version: 9.0 Build 9031
Vulnerability Impact: High
Advisory ID: REWTERZ-20140101
Published Date: 22-Jan-2015
Researcher: Muhammad Ahmed Siddiqui
Email: ahmed [at] rewterz.com
URL: http://www.rewterz.com/vulnerabilities/manageengine-servicedesk-sql-injection-vulnerability
Product Introduction
ServiceDesk Plus is a help desk software with integrated asset and
project management built on the ITIL framework. It is available in 29
different languages and is used by more than 85,000 companies, across
186
No writeups or analysis indexed.
2017-06-13
Published