Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
google android 5.1.0 vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2015-6642
The kernel in Android prior to 5.1.1 LMY49F and 6.0 prior to 2016-01-01 allows malicious users to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, ak...
Google Android 6.0
Google Android 5.1.0
Google Android 6.0.1
6.1
CVSSv3
CVE-2016-2421
Setup Wizard in Android 5.1.x prior to 5.1.1 and 6.x prior to 2016-04-01 allows physically proximate malicious users to bypass the Factory Reset Protection protection mechanism and delete data via unspecified vectors, aka internal bug 26154410.
Google Android 5.1.0
Google Android 6.0
Google Android 5.1
Google Android 6.0.1
6.1
CVSSv3
CVE-2016-0812
The interceptKeyBeforeDispatching function in policy/src/com/android/internal/policy/impl/PhoneWindowManager.java in Setup Wizard in Android 5.1.x prior to 5.1.1 LMY49G and 6.0 prior to 2016-02-01 does not properly check for setup completion, which allows physically proximate mal...
Google Android 5.1
Google Android 6.0
Google Android 5.1.0
Google Android 6.0.1
Google Android 5.1.1
1 Article
6.1
CVSSv3
CVE-2016-0813
packages/SystemUI/src/com/android/systemui/recents/AlternateRecentsComponent.java in Setup Wizard in Android 5.1.x prior to 5.1.1 LMY49G and 6.x prior to 2016-02-01 does not properly check for device provisioning, which allows physically proximate malicious users to bypass the Fa...
Google Android 6.0.1
Google Android 6.0
Google Android 5.1.1
Google Android 5.1
Google Android 5.1.0
1 Article
8.8
CVSSv3
CVE-2016-6754
A remote code execution vulnerability in Webview in Android 5.0.x prior to 5.0.2, 5.1.x prior to 5.1.1, and 6.x prior to 2016-11-05 could enable a remote malicious user to execute arbitrary code when the user is navigating to a website. This issue is rated as High due to the poss...
Google Android 5.1.0
Google Android
Google Android 5.0
Google Android 5.0.1
Google Android 5.1
Google Android 6.0
1 EDB exploit
1 Github repository
7.8
CVSSv3
CVE-2016-3762
The sockets subsystem in Android 5.0.x prior to 5.0.2, 5.1.x prior to 5.1.1, and 6.x prior to 2016-07-01 allows malicious users to gain privileges via a crafted application that uses (1) the AF_MSM_IPC socket class or (2) another socket class that is unrecognized by SELinux, aka ...
Google Android 6.0
Google Android 5.1.0
Google Android 5.1
Google Android 5.0.1
Google Android 5.0
Google Android 6.0.1
5.5
CVSSv3
CVE-2016-3837
service/jni/com_android_server_wifi_WifiNative.cpp in Wi-Fi in Android 5.0.x prior to 5.0.2, 5.1.x prior to 5.1.1, and 6.x prior to 2016-08-01 allows malicious users to obtain sensitive information via a crafted application that provides a MAC address with too few characters, aka...
Google Android 6.0.1
Google Android 5.1
Google Android 5.0.1
Google Android 5.1.0
Google Android 6.0
Google Android 5.0
8.4
CVSSv3
CVE-2016-0847
The Telecom Component in Android 5.0.x prior to 5.0.2, 5.1.x prior to 5.1.1, and 6.x prior to 2016-04-01 allows malicious users to spoof the originating telephone number of a call via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka i...
Google Android 6.0.1
Google Android 5.1.0
Google Android 5.1
Google Android 5.0.1
Google Android 5.0
Google Android 6.0
1 Github repository
8.4
CVSSv3
CVE-2016-0849
Multiple integer overflows in minzip/SysUtil.c in the Recovery Procedure in Android 5.0.x prior to 5.0.2, 5.1.x prior to 5.1.1, and 6.x prior to 2016-04-01 allow malicious users to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSys...
Google Android 5.0
Google Android 5.1.0
Google Android 5.0.1
Google Android 6.0.1
Google Android 6.0
Google Android 5.1
7.5
CVSSv3
CVE-2015-3854
packages/SystemUI/src/com/android/systemui/power/PowerNotificationWarnings.java in Android 5.x allows malicious users to bypass a DEVICE_POWER permission requirement via a broadcast intent with the PNW.stopSaver action, aka internal bug 20918350.
Google Android 5.0
Google Android 5.1.1
Google Android 5.0.2
Google Android 5.1.0
Google Android 5.0.1
Google Android 5.1
3 Github repositories
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
deserialization
CVE-2024-4040
cross-site scripting
CVE-2023-25790
CVE-2024-2961
XML external entity
CVE-2024-26926
CVE-2024-32806
CVE-2024-32711
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »