
CVE-2017-13298
https://notcve.org/view.php?id=CVE-2017-13298
04 Apr 2018 — A information disclosure vulnerability in the Android media framework (libhavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-72117051. Existe una vulnerabilidad de revelación de información en el media framework de Android (libhavc). • https://source.android.com/security/bulletin/pixel/2018-04-01 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2017-13299
https://notcve.org/view.php?id=CVE-2017-13299
04 Apr 2018 — A other vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-70897394. Vulnerabilidad no especificada en el media framework de Android (libhavc). • https://source.android.com/security/bulletin/pixel/2018-04-01 •

CVE-2017-13301
https://notcve.org/view.php?id=CVE-2017-13301
04 Apr 2018 — A denial of service vulnerability in the Android system (system ui). Product: Android. Versions: 8.0. Android ID: A-66498711. Vulnerabilidad de denegación de servicio (DoS) en el sistema Android (system ui). • https://source.android.com/security/bulletin/pixel/2018-04-01 • CWE-20: Improper Input Validation •

CVE-2017-13302
https://notcve.org/view.php?id=CVE-2017-13302
04 Apr 2018 — A denial of service vulnerability in the Android system (system ui). Product: Android. Versions: 8.0. Android ID: A-69969749. Vulnerabilidad de denegación de servicio (DoS) en el sistema Android (system ui). • https://source.android.com/security/bulletin/pixel/2018-04-01 • CWE-20: Improper Input Validation •

CVE-2017-13274
https://notcve.org/view.php?id=CVE-2017-13274
04 Apr 2018 — In the getHost() function of UriTest.java, there is the possibility of incorrect web origin determination. This could lead to incorrect security decisions with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. • https://source.android.com/security/bulletin/2018-04-01 • CWE-346: Origin Validation Error •

CVE-2017-13305 – kernel: Buffer over-read in keyring subsystem allows exposing potentially sensitive information to local attacker
https://notcve.org/view.php?id=CVE-2017-13305
04 Apr 2018 — A information disclosure vulnerability in the Upstream kernel encrypted-keys. Product: Android. Versions: Android kernel. Android ID: A-70526974. Vulnerabilidad de revelación de información en encrypted-keys del kernel Upstream. • https://access.redhat.com/errata/RHSA-2018:2165 • CWE-125: Out-of-bounds Read •

CVE-2017-13258 – Android Bluetooth - BNEP BNEP_SETUP_CONNECTION_REQUEST_MSG Out-of-Bounds Read
https://notcve.org/view.php?id=CVE-2017-13258
23 Mar 2018 — In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. • https://packetstorm.news/files/id/146883 • CWE-125: Out-of-bounds Read •

CVE-2017-13260 – Android Bluetooth - BNEP BNEP_SETUP_CONNECTION_REQUEST_MSG Out-of-Bounds Read
https://notcve.org/view.php?id=CVE-2017-13260
23 Mar 2018 — In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. • https://packetstorm.news/files/id/146883 • CWE-125: Out-of-bounds Read •

CVE-2017-13261 – Android Bluetooth - BNEP BNEP_SETUP_CONNECTION_REQUEST_MSG Out-of-Bounds Read
https://notcve.org/view.php?id=CVE-2017-13261
23 Mar 2018 — In bnep_process_control_packet of bnep_utils.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. • https://packetstorm.news/files/id/146883 • CWE-125: Out-of-bounds Read •

CVE-2017-13262 – Android Bluetooth - BNEP BNEP_SETUP_CONNECTION_REQUEST_MSG Out-of-Bounds Read
https://notcve.org/view.php?id=CVE-2017-13262
23 Mar 2018 — In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing length decrement operation. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. • https://packetstorm.news/files/id/146883 • CWE-125: Out-of-bounds Read •