Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
google android 6.0.1 vulnerabilities and exploits
(subscribe to this query)
5.5
CVSSv3
CVE-2016-3878
decoder/ih264d_api.c in mediaserver in Android 6.x prior to 2016-09-01 mishandles the case of decoding zero MBs, which allows remote malicious users to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 29493002.
Google Android 6.0
Google Android 6.0.1
7.8
CVSSv3
CVE-2016-3917
The fingerprint login feature in Android 6.0.1 prior to 2016-10-01 and 7.0 prior to 2016-10-01 does not track the user account during the authentication process, which allows physically proximate malicious users to authenticate as an arbitrary user by leveraging lockscreen access...
Google Android 6.0.1
Google Android 7.0
7.8
CVSSv3
CVE-2016-0836
Stack-based buffer overflow in decoder/impeg2d_vld.c in mediaserver in Android 6.x prior to 2016-04-01 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 25812590.
Google Android 6.0.1
Google Android 6.0
9.8
CVSSv3
CVE-2016-0839
post_proc/volume_listener.c in mediaserver in Android 6.x prior to 2016-04-01 mishandles deleted effect context, which allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 25753245.
Google Android 6.0
Google Android 6.0.1
8.4
CVSSv3
CVE-2016-0840
Multiple stack-based buffer underflows in decoder/ih264d_parse_cavlc.c in mediaserver in Android 6.x prior to 2016-04-01 allow remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 26399350.
Google Android 6.0
Google Android 6.0.1
8.1
CVSSv3
CVE-2016-2409
A Texas Instruments (TI) haptic kernel driver in Android 6.x prior to 2016-04-01 allows malicious users to gain privileges via a crafted application that leverages control over a service that can call this driver, aka internal bug 25981545.
Google Android 6.0
Google Android 6.0.1
7.4
CVSSv3
CVE-2016-2410
A Qualcomm video kernel driver in Android 6.x prior to 2016-04-01 allows malicious users to gain privileges via a crafted application that leverages control over a service that can call this driver, aka internal bug 26291677.
Google Android 6.0.1
Google Android 6.0
6.5
CVSSv3
CVE-2016-2411
A Qualcomm Power Management kernel driver in Android 6.x prior to 2016-04-01 allows malicious users to gain privileges via a crafted application that leverages root access, aka internal bug 26866053.
Google Android 6.0.1
Google Android 6.0
7
CVSSv3
CVE-2016-2461
OpenSSLCipher.java in Conscrypt in Android 6.x prior to 2016-05-01 mishandles resets of the Additional Authenticated Data (AAD) array, which allows malicious users to spoof message authentication via unspecified vectors, aka internal bugs 27324690 and 27696681.
Google Android 6.0.1
Google Android 6.0
7
CVSSv3
CVE-2016-2462
OpenSSLCipher.java in Conscrypt in Android 6.x prior to 2016-05-01 mishandles updates of the Additional Authenticated Data (AAD) array, which allows malicious users to spoof message authentication via unspecified vectors, aka internal bug 27371173.
Google Android 6.0.1
Google Android 6.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-3581
reflected XSS
CVE-2024-26925
CVE-2024-27956
LFI
CVE-2024-3607
CVE-2024-3107
CVE-2024-3295
SQL
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »