NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 87460 | CVE-2015-3840 | The MessageStatusReceiver service in the AndroidManifest.XML in Android 5.1.1 and earlier allows local users to alter sent/received statuses of SMS and MMS messages without the associated "WRITE_SMS" permission. | 2017-06-28 | 2017-06-27 | View | ||||
| 25477 | CVE-2015-3842 | Multiple heap-based buffer overflows in libeffects in the Audio Policy Service in mediaserver in Android before 5.1.1 LMY48I allow attackers to execute arbitrary code via a crafted application, aka internal bug 21953516. | 2 | 9.3 | High | 2017-01-19 | 2015-10-01 | View | |
| 25478 | CVE-2015-3843 | The SIM Toolkit (STK) framework in Android before 5.1.1 LMY48I allows attackers to (1) intercept or (2) emulate unspecified Telephony STK SIM commands via an application that sends a crafted Intent, related to com/android/internal/telephony/cat/AppInterface.java, aka internal bug 21697171. | 2 | 9.3 | High | 2017-01-19 | 2015-10-01 | View | |
| 25479 | CVE-2015-3844 | The getProcessRecordLocked method in services/core/java/com/android/server/am/ActivityManagerService.java in ActivityManager in Android before 5.1.1 LMY48I allows attackers to trigger incorrect process loading via a crafted application, as demonstrated by interfering with use of the Settings application, aka internal bug 21669445. | 2 | 6.8 | Medium | 2017-01-19 | 2015-10-01 | View | |
| 25480 | CVE-2015-3845 | The Parcel::appendFrom function in libs/binder/Parcel.cpp in Binder in Android before 5.1.1 LMY48M does not consider parcel boundaries during identification of binder objects in an append operation, which allows attackers to obtain a different application"s privileges via a crafted application, aka internal bug 17312693. | 2 | 6.8 | Medium | 2017-01-19 | 2015-10-01 | View |
Page 14406 of 17672, showing 5 records out of 88360 total, starting on record 72026, ending on 72030