CVE-2016-8398
https://notcve.org/view.php?id=CVE-2016-8398
12 Jan 2017 — Unauthenticated messages processed by the UE. Certain NAS messages are processed when no EPS security context exists in the UE. Product: Android. Versions: Kernel 3.18. Android ID: A-31548486. • http://www.securityfocus.com/bid/95227 • CWE-254: 7PK - Security Features •
CVE-2016-8459
https://notcve.org/view.php?id=CVE-2016-8459
12 Jan 2017 — Possible buffer overflow in storage subsystem. Bad parameters as part of listener responses to RPMB commands could lead to buffer overflow. Product: Android. Versions: Kernel 3.18. Android ID: A-32577972. • http://www.securityfocus.com/bid/95227 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2016-8468
https://notcve.org/view.php?id=CVE-2016-8468
12 Jan 2017 — An elevation of privilege vulnerability in Binder could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as Moderate because it first requires compromising a privileged process and is mitigated by current platform configurations. Product: Android. Versions: Kernel-3.18. Android ID: A-32394425. • http://www.securityfocus.com/bid/95285 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2016-8455
https://notcve.org/view.php?id=CVE-2016-8455
12 Jan 2017 — An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-32219121. • http://www.securityfocus.com/bid/95240 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2016-8460
https://notcve.org/view.php?id=CVE-2016-8460
12 Jan 2017 — An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as High because it could be used to access sensitive data without explicit user permission. Product: Android. Versions: Kernel-3.10. Android ID: A-31668540. • http://www.securityfocus.com/bid/95249 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2016-8427
https://notcve.org/view.php?id=CVE-2016-8427
12 Jan 2017 — An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions: Kernel-3.10. Android ID: A-31799885. • http://nvidia.custhelp.com/app/answers/detail/a_id/4561 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2016-8428
https://notcve.org/view.php?id=CVE-2016-8428
12 Jan 2017 — An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions: Kernel-3.10. Android ID: A-31993456. • http://nvidia.custhelp.com/app/answers/detail/a_id/4561 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2016-8466
https://notcve.org/view.php?id=CVE-2016-8466
12 Jan 2017 — An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Moderate because it first requires compromising a privileged process and is mitigated by current platform configurations. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-31822524. • http://www.securityfocus.com/bid/95242 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2016-8412
https://notcve.org/view.php?id=CVE-2016-8412
12 Jan 2017 — An elevation of privilege vulnerability in the Qualcomm camera could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-31225246. • http://www.securityfocus.com/bid/95238 • CWE-284: Improper Access Control •
CVE-2016-8463
https://notcve.org/view.php?id=CVE-2016-8463
12 Jan 2017 — A denial of service vulnerability in the Qualcomm FUSE file system could enable a remote attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High due to the possibility of remote denial of service. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-30786860. • http://www.securityfocus.com/bid/95245 • CWE-399: Resource Management Errors •