Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 7.8

    HIGH
    CVE-2017-13213

    An elevation of privilege vulnerability in the Broadcom bcmdhd driver. Product: Android. Versions: Android kernel. Android ID: A-63374465. References: B-V2017081501.... Read more

    Affected Products : android
    • EPSS Score: %0.03
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2017-13212

    An elevation of privilege vulnerability in the Android system (systemui). Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-62187985.... Read more

    Affected Products : android
    • EPSS Score: %0.03
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2017-13211

    In bta_scan_results_cb_impl of btif_ble_scanner.cc, there is possible resource exhaustion if a large number of repeated BLE scan results are received. This could lead to a remote denial of service of a critical system process with no additional execution ... Read more

    Affected Products : android
    • EPSS Score: %3.68
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2017-13210

    In CameraDeviceClient::submitRequestList of CameraDeviceClient.cpp, there is an out-of-bounds write if metadataSize is too small. This could lead to a local elevation of privilege enabling code execution as a privileged process with no additional executio... Read more

    Affected Products : android
    • EPSS Score: %0.04
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2017-13209

    In the ServiceManager::add function in the hardware service manager, there is an insecure permissions check based on the PID of the caller which could allow an application or service to replace a HAL service with its own service. This could lead to a loca... Read more

    Affected Products : android
    • EPSS Score: %0.47
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2017-13208

    In receive_packet of libnetutils/packet.c, there is a possible out-of-bounds write due to a missing bounds check on the DHCP response. This could lead to remote code execution as a privileged process with no additional execution privileges needed. User in... Read more

    Affected Products : android
    • EPSS Score: %15.73
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2017-13207

    An information disclosure vulnerability in the Android media framework (stagefright mpeg4writer). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-37564426.... Read more

    Affected Products : android
    • EPSS Score: %0.09
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2017-13206

    An information disclosure vulnerability in the Android media framework (aacdec). Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-65025048.... Read more

    Affected Products : android
    • EPSS Score: %0.09
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 9.1

    CRITICAL
    CVE-2017-13205

    An information disclosure vulnerability in the Android media framework (libmpeg2). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-64550583.... Read more

    Affected Products : android
    • EPSS Score: %0.10
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 9.1

    CRITICAL
    CVE-2017-13204

    An information disclosure vulnerability in the Android media framework (libavc). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-64380237.... Read more

    Affected Products : android
    • EPSS Score: %0.10
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 9.1

    CRITICAL
    CVE-2017-13203

    An information disclosure vulnerability in the Android media framework (libavc). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-63122634.... Read more

    Affected Products : android
    • EPSS Score: %0.10
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2017-13202

    An information disclosure vulnerability in the Android media framework (libeffects). Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-67647856.... Read more

    Affected Products : android
    • EPSS Score: %0.09
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2017-13201

    An information disclosure vulnerability in the Android media framework (mediadrm). Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-63982768.... Read more

    Affected Products : android
    • EPSS Score: %0.11
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2017-13200

    An information disclosure vulnerability in the Android media framework (av) related to id3 unsynchronization. Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-63100526.... Read more

    Affected Products : android
    • EPSS Score: %0.12
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2017-13199

    In Bitmap.ccp if Bitmap.nativeCreate fails an out of memory exception is not thrown leading to a java.io.IOException later on. This could lead to a remote denial of service of a critical system process with no additional execution privileges needed. User ... Read more

    Affected Products : android
    • EPSS Score: %3.01
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2017-13198

    A vulnerability in the Android media framework (ex) related to composition of frames lacking a color map. Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-68399117.... Read more

    Affected Products : android
    • EPSS Score: %0.13
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2017-13197

    In the ihevcd_parse_slice.c function, slave threads are not joined if there is an error. This could lead to a remote denial of service of a critical system process with no additional execution privileges needed. User interaction is not needed for exploita... Read more

    Affected Products : android
    • EPSS Score: %4.33
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2017-13196

    In several places in ihevcd_decode.c, a dead loop could occur due to incomplete frames which could lead to memory leaks. This could lead to a remote denial of service of a critical system process with no additional execution privileges needed. User intera... Read more

    Affected Products : android
    • EPSS Score: %3.01
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2017-13195

    In the ihevcd_parse_sps function of ihevcd_parse_headers.c, several parameter values could be negative which could lead to negative indexes which could lead to an infinite loop. This could lead to a remote denial of service of a critical system process wi... Read more

    Affected Products : android
    • EPSS Score: %2.29
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2017-13194

    A vulnerability in the Android media framework (libvpx) related to odd frame width. Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-64710201.... Read more

    Affected Products : android debian_linux
    • EPSS Score: %0.95
    • Published: Jan. 12, 2018
    • Modified: Nov. 21, 2024
Showing 20 of 291617 Results