
CVE-2016-2483
https://notcve.org/view.php?id=CVE-2016-2483
13 Jun 2016 — The mm-video-v4l2 venc component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles a buffer count, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27662502. El componente mm-video-v4l2 venc en mediaserver en Android 4.x en versiones anteriores a 4.4.4, 5.0.x en versiones anteriores a 5.0.2, 5.1.x en versiones anteriores a 5.1.1 y 6.x... • http://source.android.com/security/bulletin/2016-06-01.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-2499
https://notcve.org/view.php?id=CVE-2016-2499
13 Jun 2016 — AudioSource.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 does not initialize certain data, which allows attackers to obtain sensitive information via a crafted application, aka internal bug 27855172. AudioSource.cpp en libstagefright en mediaserver en Android 4.x en versiones anteriores a 4.4.4, 5.0.x en versiones anteriores a 5.0.2, 5.1.x en versiones anteriores a 5.1.1 y 6.x en versiones anteriores a 2016-06-01 no inici... • http://source.android.com/security/bulletin/2016-06-01.html • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2016-2485
https://notcve.org/view.php?id=CVE-2016-2485
13 Jun 2016 — libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 does not validate OMX buffer sizes for the GSM and G711 codecs, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27793367. libstagefright en mediaserver en Android 4.x en versiones anteriores a 4.4.4, 5.0.x en versiones anteriores a 5.0.2, 5.1.x en versiones anteriores a 5.1.1 y 6.... • http://source.android.com/security/bulletin/2016-06-01.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-2479
https://notcve.org/view.php?id=CVE-2016-2479
13 Jun 2016 — The mm-video-v4l2 vdec component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles a buffer count, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27532282. El componente mm-video-v4l2 vdec en mediaserver en Android 4.x en versiones anteriores a 4.4.4, 5.0.x en versiones anteriores a 5.0.2, 5.1.x en versiones anteriores a 5.1.1, y 6.... • http://source.android.com/security/bulletin/2016-06-01.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-2482
https://notcve.org/view.php?id=CVE-2016-2482
13 Jun 2016 — The mm-video-v4l2 vdec component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 mishandles a buffer count, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27661749. El componente mm-video-v4l2 vdec en mediaserver en Android 4.x en versiones anteriores a 4.4.4, 5.0.x en versiones anteriores a 5.0.2, 5.1.x en versiones anteriores a 5.1.1 y 6.x... • http://source.android.com/security/bulletin/2016-06-01.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-2474
https://notcve.org/view.php?id=CVE-2016-2474
13 Jun 2016 — The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 5X devices allows attackers to gain privileges via a crafted application, aka internal bug 27424603. El controlador Wi-Fi Qualcomm en Android en versiones anteriores a 2016-06-01 en dispositivos Nexus 5X permite a atacantes obtener privilegios a través de una aplicación manipulada, también conocido como error interno 27424603. • http://source.android.com/security/bulletin/2016-06-01.html •

CVE-2016-2498
https://notcve.org/view.php?id=CVE-2016-2498
13 Jun 2016 — The Qualcomm Wi-Fi driver in Android before 2016-06-01 on Nexus 7 (2013) devices allows attackers to bypass intended data-access restrictions via a crafted application, aka internal bug 27777162. El controlador Wi-Fi Qualcomm en Android en versiones anteriores a 2016-06-01 en dispositivos Nexus 7 (2013) permite a atacantes eludir las restricciones destinadas al acceso de datos a través de una aplicación manipulada, también conocida como error interno 27777162. • http://source.android.com/security/bulletin/2016-06-01.html • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2016-2469
https://notcve.org/view.php?id=CVE-2016-2469
13 Jun 2016 — The Qualcomm sound driver in Android before 2016-06-01 on Nexus 5, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 27531992. El controlador de sonido Qualcomm en Android en versiones anteriores a 2016-06-01 en dispositivos Nexus 5, 6 y 6P permite a atacantes obtener privilegios a través de una aplicación manipulada, también conocido como error interno 27531992. • http://source.android.com/security/bulletin/2016-06-01.html •

CVE-2016-2495
https://notcve.org/view.php?id=CVE-2016-2495
13 Jun 2016 — SampleTable.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 allows remote attackers to cause a denial of service (device hang or reboot) via a crafted file, aka internal bug 28076789. SampleTable.cpp en libstagefright en mediaserver en Android 4.x en versiones anteriores a 4.4.4, 5.0.x en versiones anteriores a 5.0.2, 5.1.x en versiones anteriores a 5.1.1 y 6.x en versiones anteriores a 2016-06-01 permite a atacantes remotos... • http://source.android.com/security/bulletin/2016-06-01.html • CWE-20: Improper Input Validation •

CVE-2016-2492
https://notcve.org/view.php?id=CVE-2016-2492
13 Jun 2016 — The MediaTek power-management driver in Android before 2016-06-01 on Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 28085410. El controlador power-management MediaTek en Android en versiones anteriores a 2016-06-01 en dispositivos Android One permite a atacantes obtener privilegios a través de una aplicación manipulada, también conocido como error interno 28085410. • http://source.android.com/security/bulletin/2016-06-01.html • CWE-264: Permissions, Privileges, and Access Controls •