Show filters
14 Total Results
Displaying 11-14 of 14
Sort by:
Attacker Value
Unknown

CVE-2011-1001

Disclosure Date: July 08, 2011 (last updated October 04, 2023)
dexdump in Android SDK before 2.3 does not properly perform structural verification, which allows user-assisted remote attackers to cause a denial of service (dexdump crash) and possibly execute arbitrary code via a malformed APK or dex file that calls a method using more arguments than the number of register that have been declared for that method.
0
Attacker Value
Unknown

CVE-2010-4804

Disclosure Date: June 09, 2011 (last updated October 04, 2023)
The Android browser in Android before 2.3.4 allows remote attackers to obtain SD card contents via crafted content:// URIs, related to (1) BrowserActivity.java and (2) BrowserSettings.java in com/android/browser/.
0
Attacker Value
Unknown

CVE-2011-1149

Disclosure Date: April 21, 2011 (last updated October 04, 2023)
Android before 2.3 does not properly restrict access to the system property space, which allows local applications to bypass the application sandbox and gain privileges, as demonstrated by psneuter and KillingInTheNameOf, related to the use of Android shared memory (ashmem) and ASHMEM_SET_PROT_MASK.
0
Attacker Value
Unknown

CVE-2011-0680

Disclosure Date: January 31, 2011 (last updated October 04, 2023)
data/WorkingMessage.java in the Mms application in Android before 2.2.2 and 2.3.x before 2.3.2 does not properly manage the draft cache, which allows remote attackers to read SMS messages intended for other recipients in opportunistic circumstances via a standard text messaging service.
0