Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 7.8

    HIGH
    CVE-2014-9888

    arch/arm/mm/dma-mapping.c in the Linux kernel before 3.13 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not prevent executable DMA mappings, which might allow local users to gain privileges via a crafted appl... Read more

    Affected Products : linux_kernel nexus_7 nexus_5
    • EPSS Score: %0.04
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 9.3

    HIGH
    CVE-2014-9887

    drivers/misc/qseecom.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices does not validate certain length values, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28804057 ... Read more

    Affected Products : android
    • EPSS Score: %0.06
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9886

    arch/arm/mach-msm/qdsp6v2/ultrasound/usf.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices does not properly validate input parameters, which allows attackers to gain privileges via a crafted application, aka Androi... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9885

    Format string vulnerability in drivers/thermal/qpnp-adc-tm.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices allows attackers to gain privileges via a crafted application that provides format string specifiers in a name, aka And... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9884

    drivers/misc/qseecom.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices does not validate certain pointers, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28769920 and Q... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9883

    Integer overflow in drivers/char/diag/diag_dci.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices allows attackers to gain privileges or obtain sensitive information via a crafted application, aka Android internal bu... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9882

    Buffer overflow in drivers/media/radio/radio-iris.c in the Qualcomm components in Android before 2016-08-05 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28769546 and Qualcomm internal bu... Read more

    Affected Products : android
    • EPSS Score: %0.09
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9881

    drivers/media/radio/radio-iris.c in the Qualcomm components in Android before 2016-08-05 on Nexus 7 (2013) devices uses an incorrect integer data type, which allows attackers to gain privileges or cause a denial of service (buffer overflow) via a crafted ... Read more

    Affected Products : android
    • EPSS Score: %0.07
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9880

    drivers/video/msm/vidc/common/enc/venc.c in the Qualcomm components in Android before 2016-08-05 on Nexus 7 (2013) devices does not validate VEN_IOCTL_GET_SEQUENCE_HDR ioctl calls, which allows attackers to gain privileges via a crafted application, aka A... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9879

    The mdss mdp3 driver in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not validate user-space data, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28769221 and Qualcomm internal... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9878

    drivers/mmc/card/mmc_block_test.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not reject kernel-space buffer addresses, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28769... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9877

    drivers/media/platform/msm/camera_v2/sensor/actuator/msm_actuator.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices mishandles a user-space pointer, which allows attackers to gain privileges via a crafted applicatio... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9876

    drivers/char/diag/diagfwd.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5, 5X, 6, 6P, and 7 (2013) devices mishandles certain integer values, which allows attackers to gain privileges via a crafted application, aka Android internal bu... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9875

    drivers/char/diag/diag_dci.c in the Qualcomm components in Android before 2016-08-05 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application that sends short DCI request packets, aka Android internal bug 28767589 and Qualco... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9874

    Buffer overflow in the Qualcomm components in Android before 2016-08-05 on Nexus 5, 5X, 6P, and 7 (2013) devices allows attackers to gain privileges via a crafted application, related to arch/arm/mach-msm/qdsp6v2/audio_utils.c and sound/soc/msm/qdsp6v2/q6... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9873

    Integer underflow in drivers/char/diag/diag_dci.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices allows attackers to gain privileges or obtain sensitive information via a crafted application, aka Android internal b... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2014-9872

    The diag driver in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not ensure unique identifiers in a DCI client table, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28750155 and... Read more

    Affected Products : android
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 9.3

    HIGH
    CVE-2014-9871

    Multiple buffer overflows in drivers/media/platform/msm/camera_v2/isp/msm_isp_util.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices allow attackers to gain privileges via a crafted application, aka Android internal... Read more

    Affected Products : android
    • EPSS Score: %0.06
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 9.3

    HIGH
    CVE-2014-9870

    The Linux kernel before 3.11 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly consider user-space access to the TPIDRURW register, which allows local users to gain privileges via a crafted applicati... Read more

    Affected Products : android linux_kernel
    • EPSS Score: %0.08
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
  • 9.3

    HIGH
    CVE-2014-9869

    drivers/media/platform/msm/camera_v2/isp/msm_isp_stats_util.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices does not validate certain index values, which allows attackers to gain privileges via a crafted applicati... Read more

    Affected Products : android
    • EPSS Score: %0.06
    • Published: Aug. 06, 2016
    • Modified: Apr. 12, 2025
Showing 20 of 291358 Results