Skip to main content

CWE archive

CWE-189 CVEs

Programmatic archive

1,247 CVEs tagged with CWE-189379 Critical, 275 High, 550 Medium, 43 Low, 0 Unrated.

CVE-2015-3864

Published Oct 1, 2015

Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android before 5.1.1 LMY48M allows remote attackers to execu…

CVSS 10.0 · Critical
evidence mentions
5
Buzz score
24.4
Vendor/product tagsBeta · best-effort

CVE-2015-3863

Published Oct 1, 2015

Multiple integer overflows in the Blob class in keystore/keystore.cpp in Keystore in Android before 5.1.1 LMY48M allow attackers to execute arbitrary code and read arbitrary Keyst…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-3861

Published Oct 1, 2015

Multiple integer overflows in the addVorbisCodecInfo function in matroska/MatroskaExtractor.cpp in libstagefright in mediaserver in Android before 5.1.1 LMY48M allow remote attack…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-3836

Published Oct 1, 2015

The Parse_wave function in arm-wt-22k/lib_src/eas_mdls.c in the Sonivox DLS-to-EAS converter in Android before 5.1.1 LMY48I does not reject a negative value for a certain size fie…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-3834

Published Oct 1, 2015

Multiple integer overflows in the BnHDCP::onTransact function in media/libmedia/IHDCP.cpp in libstagefright in Android before 5.1.1 LMY48I allow attackers to execute arbitrary cod…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-3829

Published Oct 1, 2015

Off-by-one error in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I allows remote attackers to execute arbitrary cod…

CVSS 10.0 · Critical
evidence mentions
3
Buzz score
20.4
Vendor/product tagsBeta · best-effort

CVE-2015-3828

Published Oct 1, 2015

The MPEG4Extractor::parse3GPPMetaData function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I does not enforce a minimum size for UTF-16 strings containing…

CVSS 10.0 · Critical
evidence mentions
3
Buzz score
20.4
Vendor/product tagsBeta · best-effort

CVE-2015-3827

Published Oct 1, 2015

The MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I does not validate the relationship between chunk sizes and skip size…

CVSS 9.3 · Critical
evidence mentions
3
Buzz score
20.4
Vendor/product tagsBeta · best-effort

CVE-2015-3826

Published Oct 1, 2015

The MPEG4Extractor::parse3GPPMetaData function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I does not enforce a minimum size for UTF-16 strings containing…

CVSS 5.0 · Medium
evidence mentions
3
Buzz score
20.4
Vendor/product tagsBeta · best-effort

CVE-2015-1539

Published Oct 1, 2015

Multiple integer underflows in the ESDS::parseESDescriptor function in ESDS.cpp in libstagefright in Android before 5.1.1 LMY48I allow remote attackers to execute arbitrary code v…

CVSS 10.0 · Critical
evidence mentions
3
Buzz score
20.4
Vendor/product tagsBeta · best-effort

CVE-2015-1538

Published Oct 1, 2015

Integer overflow in the SampleTable::setSampleToChunkParams function in SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I allows remote attackers to execute arbitra…

CVSS 10.0 · Critical
evidence mentions
7
Buzz score
28.8
Vendor/product tagsBeta · best-effort

CVE-2015-1536

Published Oct 1, 2015

Integer overflow in the Bitmap_createFromParcel function in core/jni/android/graphics/Bitmap.cpp in Android before 5.1.1 LMY48I allows attackers to cause a denial of service (syst…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-1528

Published Oct 1, 2015

Integer overflow in the native_handle_create function in libcutils/native_handle.c in Android before 5.1.1 LMY48M allows attackers to obtain a different application's privileges o…

CVSS 9.3 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2014-7917

Published Oct 1, 2015

Integer overflow in SampleTable.cpp in libstagefright in Android before 5.0.0 has unspecified impact and attack vectors, aka internal bug 15342615.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2014-7916

Published Oct 1, 2015

Integer overflow in SampleTable.cpp in libstagefright in Android before 5.0.0 has unspecified impact and attack vectors, aka internal bug 15342751.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2014-7915

Published Oct 1, 2015

Integer overflow in SampleTable.cpp in libstagefright in Android before 5.0.0 has unspecified impact and attack vectors, aka internal bug 15328708.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-0852

Published Sep 29, 2015

Multiple integer underflows in PluginPCX.cpp in FreeImage 3.17.0 and earlier allow remote attackers to cause a denial of service (heap memory corruption) via vectors related to th…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-6819

Published Sep 6, 2015

Multiple integer underflows in the ff_mjpeg_decode_frame function in libavcodec/mjpegdec.c in FFmpeg before 2.7.2 allow remote attackers to cause a denial of service (out-of-bound…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-3239

Published Aug 26, 2015

Off-by-one error in the dwarf_to_unw_regnum function in include/dwarf_i.h in libunwind 1.1 allows local users to have unspecified impact via invalid dwarf opcodes.

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2015-3768

Published Aug 16, 2015

Integer overflow in the kernel in Apple iOS before 8.4.1 and OS X before 10.10.5 allows attackers to execute arbitrary code in a privileged context via a crafted app that makes un…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-7422

Published Aug 16, 2015

Integer underflow in regcomp.c in Perl before 5.20, as used in Apple OS X before 10.10.5 and other products, allows context-dependent attackers to execute arbitrary code or cause…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-4496

Published Aug 16, 2015

Multiple integer overflows in libstagefright in Mozilla Firefox before 38.0 allow remote attackers to execute arbitrary code via crafted sample metadata in an MPEG-4 video file, a…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort
Showing 126-150 of 1,247 CVEsPage 6 of 50