CVE-2017-0620
https://notcve.org/view.php?id=CVE-2017-0620
12 May 2017 — An elevation of privilege vulnerability in the Qualcomm Secure Channel Manager driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-35401052. • http://www.securityfocus.com/bid/98193 • CWE-20: Improper Input Validation CWE-131: Incorrect Calculation of Buffer Size •
CVE-2017-0630
https://notcve.org/view.php?id=CVE-2017-0630
12 May 2017 — An information disclosure vulnerability in the kernel trace subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-34277115. • http://www.securityfocus.com/bid/98213 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2016-10294
https://notcve.org/view.php?id=CVE-2016-10294
12 May 2017 — An information disclosure vulnerability in the Qualcomm power driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-33621829. • https://source.android.com/security/bulletin/2017-05-01 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2017-0614
https://notcve.org/view.php?id=CVE-2017-0614
12 May 2017 — An elevation of privilege vulnerability in the Qualcomm Secure Execution Environment Communicator driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-35399405. • http://www.securityfocus.com/bid/98187 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2016-10292
https://notcve.org/view.php?id=CVE-2016-10292
12 May 2017 — A denial of service vulnerability in the Qualcomm Wi-Fi driver could enable a proximate attacker to cause a denial of service in the Wi-Fi subsystem. This issue is rated as High due to the possibility of remote denial of service. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-34514463. • http://www.securityfocus.com/bid/98204 • CWE-399: Resource Management Errors •
CVE-2016-10287
https://notcve.org/view.php?id=CVE-2016-10287
12 May 2017 — An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-33784446. • http://www.securityfocus.com/bid/98167 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2016-10296
https://notcve.org/view.php?id=CVE-2016-10296
12 May 2017 — An information disclosure vulnerability in the Qualcomm shared memory driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-33845464. • https://source.android.com/security/bulletin/2017-05-01 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2016-10277 – Motorola Bootloader - Kernel Cmdline Injection Secure Boot and Device Locking Bypass
https://notcve.org/view.php?id=CVE-2016-10277
12 May 2017 — An elevation of privilege vulnerability in the Motorola bootloader could enable a local malicious application to execute arbitrary code within the context of the bootloader. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-33840490. • https://packetstorm.news/files/id/143988 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2016-10283
https://notcve.org/view.php?id=CVE-2016-10283
12 May 2017 — An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32094986. • http://www.securityfocus.com/bid/98160 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2016-10289
https://notcve.org/view.php?id=CVE-2016-10289
12 May 2017 — An elevation of privilege vulnerability in the Qualcomm crypto driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-33899710. • https://source.android.com/security/bulletin/2017-05-01 • CWE-264: Permissions, Privileges, and Access Controls •