Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
google android 6.0 vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2018-14066
The content://wappush content provider in com.android.provider.telephony, as found in some custom ROMs for Android phones, allows SQL injection. One consequence is that an application without the READ_SMS permission can read SMS messages. This affects Infinix X571 phones, as well...
Google Android 7.0
Google Android 6.0
8.1
CVSSv3
CVE-2017-18692
An issue exists on Samsung mobile devices with M(6.0) and N(7.0) (MSM8939, MSM8996, MSM8998, Exynos7580, Exynos8890, or Exynos8895 chipsets) software. There is a race condition, with a resultant buffer overflow, in the sec_ts touchscreen sysfs interface. The Samsung ID is SVE-201...
Google Android 6.0
Google Android 7.0
7.7
CVSSv3
CVE-2016-3765
decoder/impeg2d_bitstream.c in mediaserver in Android 6.x prior to 2016-07-01 allows malicious users to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read) via a crafted application, aka internal bug 28168413.
Google Android 6.0.1
Google Android 6.0
5.5
CVSSv3
CVE-2016-3878
decoder/ih264d_api.c in mediaserver in Android 6.x prior to 2016-09-01 mishandles the case of decoding zero MBs, which allows remote malicious users to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 29493002.
Google Android 6.0
Google Android 6.0.1
7.4
CVSSv3
CVE-2016-2410
A Qualcomm video kernel driver in Android 6.x prior to 2016-04-01 allows malicious users to gain privileges via a crafted application that leverages control over a service that can call this driver, aka internal bug 26291677.
Google Android 6.0.1
Google Android 6.0
6.5
CVSSv3
CVE-2016-2411
A Qualcomm Power Management kernel driver in Android 6.x prior to 2016-04-01 allows malicious users to gain privileges via a crafted application that leverages root access, aka internal bug 26866053.
Google Android 6.0.1
Google Android 6.0
9.8
CVSSv3
CVE-2016-2418
media/libmedia/IOMX.cpp in mediaserver in Android 6.x prior to 2016-04-01 does not initialize certain metadata buffer pointers, which allows malicious users to obtain sensitive information from process memory, and consequently bypass an unspecified protection mechanism, via unspe...
Google Android 6.0
Google Android 6.0.1
7
CVSSv3
CVE-2016-2462
OpenSSLCipher.java in Conscrypt in Android 6.x prior to 2016-05-01 mishandles updates of the Additional Authenticated Data (AAD) array, which allows malicious users to spoof message authentication via unspecified vectors, aka internal bug 27371173.
Google Android 6.0.1
Google Android 6.0
9.8
CVSSv3
CVE-2016-2496
The Framework UI permission-dialog implementation in Android 6.x prior to 2016-06-01 allows malicious users to conduct tapjacking attacks and access arbitrary private-storage files by creating a partially overlapping window, aka internal bug 26677796.
Google Android 6.0.1
Google Android 6.0
5.5
CVSSv3
CVE-2016-2498
The Qualcomm Wi-Fi driver in Android prior to 2016-06-01 on Nexus 7 (2013) devices allows malicious users to bypass intended data-access restrictions via a crafted application, aka internal bug 27777162.
Google Android 6.0
Google Android 6.0.1
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-22120
CVE-2024-35921
CVE-2024-35874
brute force
CVE-2024-36080
unprivileged
CVE-2024-35917
IDOR
CVE-2024-4947
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »