CVE-2017-0627
https://notcve.org/view.php?id=CVE-2017-0627
An information disclosure vulnerability in the kernel UVC driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-33300353. • http://www.securityfocus.com/bid/98205 https://source.android.com/security/bulletin/2017-05-01 https://usn.ubuntu.com/3674-1 https://usn.ubuntu.com/3674-2 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2017-0606
https://notcve.org/view.php?id=CVE-2017-0606
An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-34088848. • http://www.securityfocus.com/bid/98168 https://source.android.com/security/bulletin/2017-05-01 •
CVE-2017-0465
https://notcve.org/view.php?id=CVE-2017-0465
An elevation of privilege vulnerability in the Qualcomm ADSPRPC driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-34112914. • http://www.securityfocus.com/bid/98184 https://source.android.com/security/bulletin/2017-05-01 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2017-0608
https://notcve.org/view.php?id=CVE-2017-0608
An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-35400458. • http://www.securityfocus.com/bid/98172 https://source.android.com/security/bulletin/2017-05-01 • CWE-787: Out-of-bounds Write •
CVE-2017-0613
https://notcve.org/view.php?id=CVE-2017-0613
An elevation of privilege vulnerability in the Qualcomm Secure Execution Environment Communicator driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-35400457. • http://www.securityfocus.com/bid/98186 https://source.android.com/security/bulletin/2017-05-01 • CWE-20: Improper Input Validation •