Show filters
269 Total Results
Displaying 261-269 of 269
Sort by:
Attacker Value
Unknown
CVE-2016-0804
Disclosure Date: February 07, 2016 (last updated November 25, 2024)
The NuPlayer::GenericSource::notifyPreparedAndCleanup function in media/libmediaplayerservice/nuplayer/GenericSource.cpp in mediaserver in Android 5.x before 5.1.1 LMY49G and 6.x before 2016-02-01 improperly manages mDrmManagerClient objects, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 25070434.
0
Attacker Value
Unknown
CVE-2016-0812
Disclosure Date: February 07, 2016 (last updated November 25, 2024)
The interceptKeyBeforeDispatching function in policy/src/com/android/internal/policy/impl/PhoneWindowManager.java in Setup Wizard in Android 5.1.x before 5.1.1 LMY49G and 6.0 before 2016-02-01 does not properly check for setup completion, which allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism and delete data via unspecified vectors, aka internal bug 25229538.
0
Attacker Value
Unknown
CVE-2016-0805
Disclosure Date: February 07, 2016 (last updated November 25, 2024)
The performance event manager for Qualcomm ARM processors in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49G, and 6.x before 2016-02-01 allows attackers to gain privileges via a crafted application, aka internal bug 25773204.
0
Attacker Value
Unknown
CVE-2016-0803
Disclosure Date: February 07, 2016 (last updated November 25, 2024)
libstagefright in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49G, and 6.x before 2016-02-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file that triggers a large memory allocation in the (1) SoftMPEG4Encoder or (2) SoftVPXEncoder component, aka internal bug 25812794.
0
Attacker Value
Unknown
CVE-2015-6644
Disclosure Date: January 06, 2016 (last updated November 25, 2024)
Bouncy Castle in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to obtain sensitive information via a crafted application, aka internal bug 24106146.
0
Attacker Value
Unknown
CVE-2015-6642
Disclosure Date: January 06, 2016 (last updated November 25, 2024)
The kernel in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24157888.
0
Attacker Value
Unknown
CVE-2015-6645
Disclosure Date: January 06, 2016 (last updated November 25, 2024)
SyncManager in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to cause a denial of service (continuous rebooting) via a crafted application, aka internal bug 23591205.
0
Attacker Value
Unknown
CVE-2015-6647
Disclosure Date: January 06, 2016 (last updated November 25, 2024)
The Widevine QSEE TrustZone application in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to gain privileges via a crafted application that leverages QSEECOM access, aka internal bug 24441554.
0
Attacker Value
Unknown
CVE-2014-6060
Disclosure Date: September 04, 2014 (last updated October 05, 2023)
The get_option function in dhcpcd 4.0.0 through 6.x before 6.4.3 allows remote DHCP servers to cause a denial of service by resetting the DHO_OPTIONSOVERLOADED option in the (1) bootfile or (2) servername section, which triggers the option to be processed again.
0