Filtered by vendor Google
Subscriptions
Filtered by product Android
Subscriptions
Total
8701 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2015-5524 | 1 Google | 1 Android | 2024-11-21 | 9.8 Critical |
An issue was discovered on Samsung mobile devices with KK(4.4) and later software through 2015-05-13. There is a buffer overflow in datablock_write because the amount of received data is not validated. The Samsung ID is SVE-2015-4018 (December 2015). | ||||
CVE-2015-1530 | 1 Google | 1 Android | 2024-11-21 | 7.8 High |
media/libmedia/IAudioPolicyService.cpp in Android before 5.1 allows attackers to execute arbitrary code with media_server privileges or cause a denial of service (integer overflow) via a crafted application that provides an invalid array size. | ||||
CVE-2015-1525 | 1 Google | 1 Android | 2024-11-21 | 5.5 Medium |
audio/AudioPolicyManagerBase.cpp in Android before 5.1 allows attackers to cause a denial of service (audio_policy application outage) via a crafted application that provides a NULL device address. | ||||
CVE-2014-9959 | 1 Google | 1 Android | 2024-11-21 | N/A |
An elevation of privilege vulnerability in Qualcomm closed source components. Product: Android. Versions: Android kernel. Android ID: A-36383694. | ||||
CVE-2014-9958 | 1 Google | 1 Android | 2024-11-21 | N/A |
An elevation of privilege vulnerability in Qualcomm closed source components. Product: Android. Versions: Android kernel. Android ID: A-36384774. | ||||
CVE-2014-9957 | 1 Google | 1 Android | 2024-11-21 | N/A |
An elevation of privilege vulnerability in Qualcomm closed source components. Product: Android. Versions: Android kernel. Android ID: A-36387564. | ||||
CVE-2014-9956 | 1 Google | 1 Android | 2024-11-21 | N/A |
An elevation of privilege vulnerability in Qualcomm closed source components. Product: Android. Versions: Android kernel. Android ID: A-36389611. | ||||
CVE-2014-9955 | 1 Google | 1 Android | 2024-11-21 | N/A |
An elevation of privilege vulnerability in Qualcomm closed source components. Product: Android. Versions: Android kernel. Android ID: A-36384686. | ||||
CVE-2014-9954 | 1 Google | 1 Android | 2024-11-21 | N/A |
An elevation of privilege vulnerability in Qualcomm closed source components. Product: Android. Versions: Android kernel. Android ID: A-36388559. | ||||
CVE-2014-9953 | 1 Google | 1 Android | 2024-11-21 | N/A |
An elevation of privilege vulnerability in Qualcomm closed source components. Product: Android. Versions: Android kernel. Android ID: A-36714770. | ||||
CVE-2014-9908 | 1 Google | 1 Android | 2024-11-21 | 6.5 Medium |
A Denial of Service vulnerability exists in Google Android 4.4.4, 5.0.2, and 5.1.1, which allows malicious users to block Bluetooh access (Android Bug ID A-28672558). | ||||
CVE-2014-7952 | 1 Google | 1 Android | 2024-11-21 | N/A |
The backup mechanism in the adb tool in Android might allow attackers to inject additional applications (APKs) and execute arbitrary code by leveraging failure to filter application data streams. | ||||
CVE-2014-7951 | 1 Google | 1 Android | 2024-11-21 | 4.6 Medium |
Directory traversal vulnerability in the Android debug bridge (aka adb) in Android 4.0.4 allows physically proximate attackers with a direct connection to the target Android device to write to arbitrary files owned by system via a .. (dot dot) in the tar archive headers. | ||||
CVE-2014-7914 | 1 Google | 1 Android | 2024-11-21 | 8.1 High |
btif/src/btif_dm.c in Android before 5.1 does not properly enforce the temporary nature of a Bluetooth pairing, which allows user-assisted remote attackers to bypass intended access restrictions via crafted Bluetooth packets after the tapping of a crafted NFC tag. | ||||
CVE-2014-7224 | 1 Google | 1 Android | 2024-11-21 | 8.8 High |
A Code Execution vulnerability exists in Android prior to 4.4.0 related to the addJavascriptInterface method and the accessibility and accessibilityTraversal objects, which could let a remote malicious user execute arbitrary code. | ||||
CVE-2014-4959 | 1 Google | 1 Android | 2024-11-21 | N/A |
**DISPUTED** SQL injection vulnerability in SQLiteDatabase.java in the SQLi Api in Android allows remote attackers to execute arbitrary SQL commands via the delete method. | ||||
CVE-2014-0900 | 1 Google | 1 Android | 2024-11-21 | N/A |
The Device Administrator code in Android before 4.4.1_r1 might allow attackers to spoof device administrators and consequently bypass MDM restrictions by leveraging failure to update the mAdminMap data structure. | ||||
CVE-2013-6792 | 1 Google | 1 Android | 2024-11-21 | 9.8 Critical |
Google Android prior to 4.4 has an APK Signature Security Bypass Vulnerability | ||||
CVE-2013-6272 | 1 Google | 1 Android | 2024-11-21 | N/A |
The NotificationBroadcastReceiver class in the com.android.phone process in Google Android 4.1.1 through 4.4.2 allows attackers to bypass intended access restrictions and consequently make phone calls to arbitrary numbers, send mmi or ussd codes, or hangup ongoing calls via a crafted application. | ||||
CVE-2011-3901 | 1 Google | 1 Android | 2024-11-21 | 7.5 High |
Android SQLite Journal before 4.0.1 has an information disclosure vulnerability. |