Latest CVE Feed
-
5.5
MEDIUMCVE-2016-6719
An elevation of privilege vulnerability in the Bluetooth component in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious application to pair with any Bluetooth ... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-6718
An elevation of privilege vulnerability in the Account Manager Service in Android 7.0 before 2016-11-01 could enable a local malicious application to retrieve sensitive information without user interaction. This issue is rated as Moderate because it is a ... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
7.6
HIGHCVE-2016-6717
An elevation of privilege vulnerability in Mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious application to execute arbitrary code within the co... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-6716
An elevation of privilege vulnerability in the AOSP Launcher in Android 7.0 before 2016-11-01 could allow a local malicious application to create shortcuts that have elevated privileges without the user's consent. This issue is rated as Moderate because i... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-6715
An elevation of privilege vulnerability in the Framework APIs in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could allow a local malicious application to record audio without the user'... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
7.1
HIGHCVE-2016-6714
A remote denial of service vulnerability in Mediaserver in Android 6.x before 2016-11-01 and 7.0 before 2016-11-01 could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High due to the possibilit... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
7.1
HIGHCVE-2016-6713
A remote denial of service vulnerability in Mediaserver in Android 6.x before 2016-11-01 and 7.0 before 2016-11-01 could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High due to the possibilit... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-6710
An information disclosure vulnerability in the download manager in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious application to bypass operating system protections that isol... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
5.9
MEDIUMCVE-2016-6709
An information disclosure vulnerability in Conscrypt and BoringSSL in Android 6.x before 2016-11-01 and 7.0 before 2016-11-01 could enable a man-in-the-middle attacker to gain access to sensitive information if a non-standard cipher suite is used by an ap... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-6708
An elevation of privilege in the System UI in Android 7.0 before 2016-11-01 could enable a local malicious user to bypass the security prompt of your work profile in Multi-Window mode. This issue is rated as High because it is a local bypass of user inter... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-6707
An elevation of privilege vulnerability in System Server in Android 6.x before 2016-11-01 and 7.0 before 2016-11-01 could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as Hig... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-6705
An elevation of privilege vulnerability in Mediaserver in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious application to execute arbitrary code within the context of a privile... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-6704
An elevation of privilege vulnerability in Mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious application to execute arbitrary code within the co... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-6703
A remote code execution vulnerability in an Android runtime library in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-11-01 could enable an attacker using a specially crafted payload to execute arbitrary code in the ... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-6702
A remote code execution vulnerability in libjpeg in Android 4.x before 4.4.4, 5.0.x before 5.0.2, and 5.1.x before 5.1.1 could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process. This issu... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-6701
A remote code execution vulnerability in libskia in Android 7.0 before 2016-11-01 could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as High due to the possibility ... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-6700
An elevation of privilege vulnerability in libzipfile in Android 4.x before 4.4.4, 5.0.x before 5.0.2, and 5.1.x before 5.1.1 could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is ra... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-6698
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Point driver, and sound driver in Android before 2016-11-05 could enable a local malicious application to access data outside of its permi... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-3907
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Point driver, and sound driver in Android before 2016-11-05 could enable a local malicious application to access data outside of its permi... Read more
Affected Products : android- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-3906
An information disclosure vulnerability in Qualcomm components including the GPU driver, power driver, SMSM Point-to-Point driver, and sound driver in Android before 2016-11-05 could enable a local malicious application to access data outside of its permi... Read more
- Published: Nov. 25, 2016
- Modified: Apr. 12, 2025