Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
google android 6.0 vulnerabilities and exploits
(subscribe to this query)
5.5
CVSSv3
CVE-2016-3908
The Lock Settings Service in Android 6.x prior to 2016-10-01 and 7.0 prior to 2016-10-01 allows malicious users to remove a device's PIN or password, and consequently gain privileges, via a crafted application, aka internal bug 30003944.
Google Android 6.0
Google Android 6.0.1
Google Android 7.0
7.8
CVSSv3
CVE-2016-3922
libril/RilSapSocket.cpp in Telephony in Android 6.x prior to 2016-10-01 and 7.0 prior to 2016-10-01 relies on variable-length arrays, which allows malicious users to gain privileges via a crafted application, aka internal bug 30202619.
Google Android 6.0
Google Android 7.0
Google Android 6.0.1
5.5
CVSSv3
CVE-2016-3925
server/wifi/anqp/ANQPFactory.java in Android 6.x prior to 2016-10-01 and 7.0 prior to 2016-10-01 allows malicious users to cause a denial of service (blocked Wi-Fi usage) via a crafted application, aka internal bug 30230534.
Google Android 6.0.1
Google Android 7.0
Google Android 6.0
8.1
CVSSv3
CVE-2017-18647
An issue exists on Samsung mobile devices with M(6,x) and N(7.0) software. The TA Scrypto v1.0 implementation in Secure Driver has a race condition with a resultant buffer overflow. The Samsung IDs are SVE-2017-8973, SVE-2017-8974, and SVE-2017-8975 (November 2017).
Google Android 6.0
Google Android 6.0.1
Google Android 7.0
NA
CVE-2015-6621
SystemUI in Android 5.x prior to 5.1.1 LMY48Z and 6.0 prior to 2015-12-01 allows malicious users to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 23909438.
Google Android 6.0
Google Android 5.1
Google Android 5.0
9.8
CVSSv3
CVE-2015-6642
The kernel in Android prior to 5.1.1 LMY49F and 6.0 prior to 2016-01-01 allows malicious users to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, ak...
Google Android 6.0
Google Android 5.1.0
Google Android 6.0.1
6.5
CVSSv3
CVE-2016-3882
Off-by-one error in server/wifi/anqp/VenueNameElement.java in Wi-Fi in Android 6.x prior to 2016-10-01 and 7.0 prior to 2016-10-01 allows remote malicious users to cause a denial of service (reboot) via an access point that provides a crafted (1) Venue Group or (2) Venue Type val...
Google Android 6.0
Google Android 7.0
Google Android 6.0.1
6.8
CVSSv3
CVE-2016-3889
Android 6.x prior to 2016-09-01 and 7.0 prior to 2016-09-01 allows physically proximate malicious users to bypass the Factory Reset Protection protection mechanism by accessing (1) an external tile from a system application, (2) the help feature, or (3) the Settings application d...
Google Android 6.0.1
Google Android 6.0
Google Android 7.0
5.3
CVSSv3
CVE-2016-6771
An elevation of privilege vulnerability in Telephony could enable a local malicious application to access system functions beyond its access level. This issue is rated as Moderate because it is a local bypass of restrictions on a constrained process. Product: Android. Versions: 6...
Google Android 7.0
Google Android 6.0.1
Google Android 6.0
5.5
CVSSv3
CVE-2016-6773
An information disclosure vulnerability in the ih264d decoder in Mediaserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Product: ...
Google Android 6.0
Google Android 6.0.1
Google Android 7.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
SSRF
CVE-2023-52162
CVE-2024-23670
CVE-2024-5404
man-in-the-middle
CVE-2024-5214
CVE-2024-4358
CVE-2024-20696
hard-coded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »