CVE-2016-8460
https://notcve.org/view.php?id=CVE-2016-8460
12 Jan 2017 — An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as High because it could be used to access sensitive data without explicit user permission. Product: Android. Versions: Kernel-3.10. Android ID: A-31668540. • http://www.securityfocus.com/bid/95249 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2016-8412
https://notcve.org/view.php?id=CVE-2016-8412
12 Jan 2017 — An elevation of privilege vulnerability in the Qualcomm camera could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-31225246. • http://www.securityfocus.com/bid/95238 • CWE-284: Improper Access Control •
CVE-2016-8432
https://notcve.org/view.php?id=CVE-2016-8432
12 Jan 2017 — An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions: Kernel-3.18. Android ID: A-32447738. • http://www.securityfocus.com/bid/95236 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2016-8442
https://notcve.org/view.php?id=CVE-2016-8442
12 Jan 2017 — Possible unauthorized memory access in the hypervisor. Lack of input validation could allow hypervisor memory to be accessed by the HLOS. Product: Android. Versions: Kernel 3.18. Android ID: A-31625910. • http://www.securityfocus.com/bid/95227 • CWE-20: Improper Input Validation •
CVE-2016-8457
https://notcve.org/view.php?id=CVE-2016-8457
12 Jan 2017 — An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32219453. • http://www.securityfocus.com/bid/95240 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2016-8438
https://notcve.org/view.php?id=CVE-2016-8438
12 Jan 2017 — Integer overflow leading to a TOCTOU condition in hypervisor PIL. An integer overflow exposes a race condition that may be used to bypass (Peripheral Image Loader) PIL authentication. Product: Android. Versions: Kernel 3.18. Android ID: A-31624565. • http://www.securityfocus.com/bid/95227 • CWE-190: Integer Overflow or Wraparound •
CVE-2016-8454
https://notcve.org/view.php?id=CVE-2016-8454
12 Jan 2017 — An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32174590. • http://www.securityfocus.com/bid/95240 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2016-8424
https://notcve.org/view.php?id=CVE-2016-8424
12 Jan 2017 — An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions: Kernel-3.10. Android ID: A-31606947. • http://nvidia.custhelp.com/app/answers/detail/a_id/4561 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2016-8441
https://notcve.org/view.php?id=CVE-2016-8441
12 Jan 2017 — Possible buffer overflow in the hypervisor. Inappropriate usage of a static array could lead to a buffer overrun. Product: Android. Versions: Kernel 3.18. Android ID: A-31625904. • http://www.securityfocus.com/bid/95227 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2016-8469
https://notcve.org/view.php?id=CVE-2016-8469
12 Jan 2017 — An information disclosure vulnerability in the camera driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-31351206. • http://www.securityfocus.com/bid/95246 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •