
CVE-2016-8440
https://notcve.org/view.php?id=CVE-2016-8440
12 Jan 2017 — Possible buffer overflow in SMMU system call. Improper input validation in ADSP SID2CB system call may result in hypervisor memory overwrite. Product: Android. Versions: Kernel 3.18. Android ID: A-31625306. • http://www.securityfocus.com/bid/95227 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-8464
https://notcve.org/view.php?id=CVE-2016-8464
12 Jan 2017 — An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Moderate because it first requires compromising a privileged process and is mitigated by current platform configurations. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-29000183. • http://www.securityfocus.com/bid/95242 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-8428
https://notcve.org/view.php?id=CVE-2016-8428
12 Jan 2017 — An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions: Kernel-3.10. Android ID: A-31993456. • http://nvidia.custhelp.com/app/answers/detail/a_id/4561 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-8461
https://notcve.org/view.php?id=CVE-2016-8461
12 Jan 2017 — An information disclosure vulnerability in the bootloader could enable a local attacker to access data outside of its permission level. This issue is rated as High because it could be used to access sensitive data. Product: Android. Versions: Kernel-3.18. Android ID: A-32369621. • http://www.securityfocus.com/bid/95237 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2016-8398
https://notcve.org/view.php?id=CVE-2016-8398
12 Jan 2017 — Unauthenticated messages processed by the UE. Certain NAS messages are processed when no EPS security context exists in the UE. Product: Android. Versions: Kernel 3.18. Android ID: A-31548486. • http://www.securityfocus.com/bid/95227 • CWE-254: 7PK - Security Features •

CVE-2016-8425
https://notcve.org/view.php?id=CVE-2016-8425
12 Jan 2017 — An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions: Kernel-3.10. Android ID: A-31797770. • http://nvidia.custhelp.com/app/answers/detail/a_id/4561 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-8468
https://notcve.org/view.php?id=CVE-2016-8468
12 Jan 2017 — An elevation of privilege vulnerability in Binder could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as Moderate because it first requires compromising a privileged process and is mitigated by current platform configurations. Product: Android. Versions: Kernel-3.18. Android ID: A-32394425. • http://www.securityfocus.com/bid/95285 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-8469
https://notcve.org/view.php?id=CVE-2016-8469
12 Jan 2017 — An information disclosure vulnerability in the camera driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-31351206. • http://www.securityfocus.com/bid/95246 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2016-8449
https://notcve.org/view.php?id=CVE-2016-8449
12 Jan 2017 — An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-31798848. • http://nvidia.custhelp.com/app/answers/detail/a_id/4561 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-8452
https://notcve.org/view.php?id=CVE-2016-8452
12 Jan 2017 — An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32506396. • http://www.securityfocus.com/bid/95275 • CWE-264: Permissions, Privileges, and Access Controls •