
CVE-2016-5856
https://notcve.org/view.php?id=CVE-2016-5856
12 Apr 2017 — Drivers/soc/qcom/spcom.c in the Qualcomm SPCom driver in the Android kernel 2017-03-05 allows local users to gain privileges, a different vulnerability than CVE-2016-5857. Drivers/soc/qcom/spcom.c en el driver Qualcom SPCom en el kernel de Android 2017-03-05 permite a usuarios locales obtener privilegios, una vulnerabilidad diferente a CVE-2016-5857. • http://www.securitytracker.com/id/1037968 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2017-0566
https://notcve.org/view.php?id=CVE-2017-0566
07 Apr 2017 — An elevation of privilege vulnerability in the MediaTek camera driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: N/A. Android ID: A-28470975. • http://www.securityfocus.com/bid/97351 •

CVE-2017-0541
https://notcve.org/view.php?id=CVE-2017-0541
07 Apr 2017 — A remote code execution vulnerability in sonivox in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as Critical due to the possibility of remote code execution within the context of the Mediaserver process. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-34031018. • https://github.com/likescam/CVE-2017-0541 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-0553 – libnl: Integer overflow in nlmsg_reserve()
https://notcve.org/view.php?id=CVE-2017-0553
07 Apr 2017 — An elevation of privilege vulnerability in libnl could enable a local malicious application to execute arbitrary code within the context of the Wi-Fi service. This issue is rated as Moderate because it first requires compromising a privileged process and is mitigated by current platform configurations. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-32342065. • http://git.infradead.org/users/tgr/libnl.git/commit/3e18948f17148e6a3c4255bdeaaf01ef6081ceeb • CWE-190: Integer Overflow or Wraparound •

CVE-2017-0544
https://notcve.org/view.php?id=CVE-2017-0544
07 Apr 2017 — An elevation of privilege vulnerability in CameraBase could enable a local malicious application to execute arbitrary code. This issue is rated as High because it is a local arbitrary code execution in a privileged process. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-31992879. • http://www.securityfocus.com/bid/97337 • CWE-672: Operation on a Resource after Expiration or Release •

CVE-2017-0560
https://notcve.org/view.php?id=CVE-2017-0560
07 Apr 2017 — An information disclosure vulnerability in the factory reset process could enable a local malicious attacker to access data from the previous owner. This issue is rated as Moderate due to the possibility of bypassing device protection. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-30681079. • http://www.securityfocus.com/bid/97360 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2017-0549
https://notcve.org/view.php?id=CVE-2017-0549
07 Apr 2017 — A remote denial of service vulnerability in libavc in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High severity due to the possibility of remote denial of service. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-33818508. • http://www.securityfocus.com/bid/97336 •

CVE-2017-0565
https://notcve.org/view.php?id=CVE-2017-0565
07 Apr 2017 — An elevation of privilege vulnerability in the MediaTek thermal driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: N/A. Android ID: A-28175904. • http://www.securityfocus.com/bid/97349 •

CVE-2017-0548
https://notcve.org/view.php?id=CVE-2017-0548
07 Apr 2017 — A remote denial of service vulnerability in libskia could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High severity due to the possibility of remote denial of service. Product: Android. Versions: 7.0, 7.1.1. Android ID: A-33251605. • http://www.securityfocus.com/bid/97398 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-0546
https://notcve.org/view.php?id=CVE-2017-0546
07 Apr 2017 — An elevation of privilege vulnerability in SurfaceFlinger could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-32628763. • http://www.securityfocus.com/bid/97341 • CWE-476: NULL Pointer Dereference •