Google Inc Android vulnerabilities

959 known vulnerabilities affecting google_inc/android.

Total CVEs
959
CISA KEV
0
Public exploits
21
Exploited in wild
0
Severity breakdown
CRITICAL70HIGH618MEDIUM267LOW4

Vulnerabilities

Page 38 of 48
CVE-2017-0439HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-02-08
CVE-2017-0439 [HIGH] CWE-120 CVE-2017-0439: An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32450647. References: QC-CR
nvd
CVE-2016-8421HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-02-08
CVE-2016-8421 [HIGH] CWE-264 CVE-2016-8421: An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32451104. References: QC-CR
nvd
CVE-2017-0437HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-02-08
CVE-2017-0437 [HIGH] CWE-120 CVE-2017-0437: An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32402310. References: QC-CR
nvd
CVE-2016-8476HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-02-08
CVE-2016-8476 [HIGH] CWE-264 CVE-2016-8476: An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32879283. References: QC-CR
nvd
CVE-2017-0444HIGHCVSS 7.0vKernel-3.102017-02-08
CVE-2017-0444 [HIGH] CVE-2017-0444: An elevation of privilege vulnerability in the Realtek sound driver could enable a local malicious a An elevation of privilege vulnerability in the Realtek sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-32705232.
nvd
CVE-2017-0415HIGHCVSS 7.8vAndroid-6.0vAndroid-6.0.1+2 more2017-02-08
CVE-2017-0415 [HIGH] CVE-2017-0415: An elevation of privilege vulnerability in Mediaserver could enable a local malicious application to An elevation of privilege vulnerability in Mediaserver could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android. Versions: 6.0
nvd
CVE-2017-0406HIGHCVSS 7.8vAndroid-6.0vAndroid-6.0.1+2 more2017-02-08
CVE-2017-0406 [HIGH] CWE-119 CVE-2017-0406: A remote code execution vulnerability in Mediaserver could enable an attacker using a specially craf A remote code execution vulnerability in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as Critical due to the possibility of remote code execution within the context of the Mediaserver process. This affects the libhevc library. Product: Android. V
nvd
CVE-2016-8419HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-02-08
CVE-2016-8419 [HIGH] CWE-264 CVE-2016-8419: An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32454494. References: QC-CR
nvd
CVE-2017-0442HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-02-08
CVE-2017-0442 [HIGH] CWE-120 CVE-2017-0442: An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32871330. References: QC-CR
nvd
CVE-2017-0429HIGHCVSS 7.8vKernel-3.102017-02-08
CVE-2017-0429 [HIGH] CWE-787 CVE-2017-0429: An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious appl An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Ve
nvd
CVE-2017-0405HIGHCVSS 7.8vAndroid-7.0vAndroid-7.1.12017-02-08
CVE-2017-0405 [HIGH] CWE-119 CVE-2017-0405: A remote code execution vulnerability in Surfaceflinger could enable an attacker using a specially c A remote code execution vulnerability in Surfaceflinger could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as Critical due to the possibility of remote code execution within the context of the Surfaceflinger process. Product: Android. Versions: 7.0, 7.1.1. Android
nvd
CVE-2017-0419HIGHCVSS 7.8vAndroid-4.4.4vAndroid-5.0.2+5 more2017-02-08
CVE-2017-0419 [HIGH] CVE-2017-0419: An elevation of privilege vulnerability in Audioserver could enable a local malicious application to An elevation of privilege vulnerability in Audioserver could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android. Versions: 4.4
nvd
CVE-2016-8481HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-02-08
CVE-2016-8481 [HIGH] CWE-264 CVE-2016-8481: An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-31906415. References: QC-CR
nvd
CVE-2017-0436HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-02-08
CVE-2017-0436 [HIGH] CVE-2017-0436: An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32624661. References: QC-CR#1078000
nvd
CVE-2017-0410HIGHCVSS 7.8vAndroid-5.0.2vAndroid-5.1.1+4 more2017-02-08
CVE-2017-0410 [HIGH] CWE-190 CVE-2017-0410: An elevation of privilege vulnerability in the Framework APIs could enable a local malicious applica An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android
nvd
CVE-2017-0434HIGHCVSS 7.0vKernel-3.182017-02-08
CVE-2017-0434 [HIGH] CVE-2017-0434: An elevation of privilege vulnerability in the Synaptics touchscreen driver could enable a local mal An elevation of privilege vulnerability in the Synaptics touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the touchscreen chipset. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.18. Android ID: A-33001936.
nvd
CVE-2017-0408HIGHCVSS 7.8vAndroid-7.1.12017-02-08
CVE-2017-0408 [HIGH] CVE-2017-0408: A remote code execution vulnerability in libgdx could enable an attacker using a specially crafted f A remote code execution vulnerability in libgdx could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process. This issue is rated as High due to the possibility of remote code execution in an application that uses this library. Product: Android. Versions: 7.1.1. Android ID: A-32769670.
nvd
CVE-2017-0447HIGHCVSS 7.0vKernel-3.182017-02-08
CVE-2017-0447 [HIGH] CVE-2017-0447: An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.18. Android ID: A-32919560.
nvd
CVE-2017-0433HIGHCVSS 7.0vKernel-3.102017-02-08
CVE-2017-0433 [HIGH] CVE-2017-0433: An elevation of privilege vulnerability in the Synaptics touchscreen driver could enable a local mal An elevation of privilege vulnerability in the Synaptics touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the touchscreen chipset. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-31913571.
nvd
CVE-2016-8480HIGHCVSS 7.0vKernel-3.10vKernel-3.182017-02-08
CVE-2016-8480 [HIGH] CWE-264 CVE-2016-8480: An elevation of privilege vulnerability in the Qualcomm Secure Execution Environment Communicator dr An elevation of privilege vulnerability in the Qualcomm Secure Execution Environment Communicator driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Andr
nvd