Show filters
119 Total Results
Displaying 101-110 of 119
Sort by:
Attacker Value
Unknown
CVE-2016-6765
Disclosure Date: January 12, 2017 (last updated November 25, 2024)
A denial of service vulnerability in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High due to the possibility of remote denial of service. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 7.0. Android ID: A-31449945.
0
Attacker Value
Unknown
CVE-2016-6766
Disclosure Date: January 12, 2017 (last updated November 25, 2024)
A denial of service vulnerability in libmedia and libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High due to the possibility of remote denial of service. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0. Android ID: A-31318219.
0
Attacker Value
Unknown
CVE-2016-6763
Disclosure Date: January 12, 2017 (last updated November 25, 2024)
A denial of service vulnerability in Telephony could enable a local malicious application to use a specially crafted file to cause a device hang or reboot. This issue is rated as High due to the possibility of local permanent denial of service. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0. Android ID: A-31530456.
0
Attacker Value
Unknown
CVE-2016-6767
Disclosure Date: January 12, 2017 (last updated November 25, 2024)
A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High due to the possibility of remote denial of service. Product: Android. Versions: 4.4.4. Android ID: A-31833604.
0
Attacker Value
Unknown
CVE-2016-7991
Disclosure Date: October 31, 2016 (last updated November 25, 2024)
On Samsung Galaxy S4 through S7 devices, the "omacp" app ignores security information embedded in the OMACP messages resulting in remote unsolicited WAP Push SMS messages being accepted, parsed, and handled by the device, leading to unauthorized configuration changes, a subset of SVE-2016-6542.
0
Attacker Value
Unknown
CVE-2016-7989
Disclosure Date: October 31, 2016 (last updated November 25, 2024)
On Samsung Galaxy S4 through S7 devices, a malformed OTA WAP PUSH SMS containing an OMACP message sent remotely triggers an unhandled ArrayIndexOutOfBoundsException in Samsung's implementation of the WifiServiceImpl class within wifi-service.jar. This causes the Android runtime to continually crash, rendering the device unusable until a factory reset is performed, a subset of SVE-2016-6542.
0
Attacker Value
Unknown
CVE-2016-7988
Disclosure Date: October 31, 2016 (last updated November 25, 2024)
On Samsung Galaxy S4 through S7 devices, absence of permissions on the BroadcastReceiver responsible for handling the com.[Samsung].android.intent.action.SET_WIFI intent leads to unsolicited configuration messages being handled by wifi-service.jar within the Android Framework, a subset of SVE-2016-6542.
0
Attacker Value
Unknown
CVE-2016-7990
Disclosure Date: October 31, 2016 (last updated November 25, 2024)
On Samsung Galaxy S4 through S7 devices, an integer overflow condition exists within libomacp.so when parsing OMACP messages (within WAP Push SMS messages) leading to a heap corruption that can result in Denial of Service and potentially remote code execution, a subset of SVE-2016-6542.
0
Attacker Value
Unknown
CVE-2012-6702
Disclosure Date: June 16, 2016 (last updated November 08, 2023)
Expat, when used in a parser that has not called XML_SetHashSalt or passed it a seed of 0, makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms via vectors involving use of the srand function.
0
Attacker Value
Unknown
CVE-2016-5300
Disclosure Date: June 16, 2016 (last updated November 08, 2023)
The XML parser in Expat does not use sufficient entropy for hash initialization, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted identifiers in an XML document. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0876.
0