CVE List

Id CVE No. Status Description Phase Votes Comments Actions
97226  CVE-2017-0407  Candidate  A remote code execution vulnerability in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as Critical due to the possibility of remote code execution within the context of the Mediaserver process. This affects the libhevc library. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-32873375.  Assigned (20161129)  None (candidate not yet proposed)    View
97227  CVE-2017-0408  Candidate  A remote code execution vulnerability in libgdx could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process. This issue is rated as High due to the possibility of remote code execution in an application that uses this library. Product: Android. Versions: 7.1.1. Android ID: A-32769670.  Assigned (20161129)  None (candidate not yet proposed)    View
97228  CVE-2017-0409  Candidate  A remote code execution vulnerability in libstagefright could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process. This issue is rated as High due to the possibility of remote code execution in an application that uses this library. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-31999646.  Assigned (20161129)  None (candidate not yet proposed)    View
97229  CVE-2017-0410  Candidate  An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-31929765.  Assigned (20161129)  None (candidate not yet proposed)    View
97230  CVE-2017-0411  Candidate  An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android. Versions: 7.0, 7.1.1. Android ID: A-33042690.  Assigned (20161129)  None (candidate not yet proposed)    View

Page 19446 of 20943, showing 5 records out of 104715 total, starting on record 97226, ending on 97230

Actions