C Exploits

3,550 exploits tracked across all sources.

Sort: Activity Stars
CVE-2017-0776 GITHUB MEDIUM c
Android <8.0 - Info Disclosure
A information disclosure vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-38496660.
by codecat007
8 stars
CVSS 5.5
CVE-2017-0764 GITHUB HIGH c
Android <8.0 - RCE
A remote code execution vulnerability in the Android media framework (libvorbis). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-62872015.
by codecat007
8 stars
CVSS 7.8
CVE-2017-0761 GITHUB HIGH c
Android <8.0 - RCE
A remote code execution vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-38448381.
by codecat007
8 stars
CVSS 7.8
CVE-2017-0760 GITHUB HIGH c
Android 6.0-7.1.2 - RCE
A remote code execution vulnerability in the Android media framework (libstagefright). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37237396.
by codecat007
8 stars
CVSS 7.8
CVE-2017-0758 GITHUB HIGH c
Android <7.1.2 - RCE
A remote code execution vulnerability in the Android media framework (libhevc). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-36492741.
by codecat007
8 stars
CVSS 7.8
CVE-2017-0745 GITHUB HIGH c
Android <7.1.2 - RCE
A remote code execution vulnerability in the Android media framework (avc decoder). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37079296.
by codecat007
8 stars
CVSS 7.8
CVE-2017-0725 GITHUB MEDIUM c
Android <7.1.2 - DoS
A denial of service vulnerability in the Android media framework (libskia). Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-37627194.
by codecat007
8 stars
CVSS 5.5
CVE-2017-0722 GITHUB HIGH c
Android <7.1.2 - RCE
A remote code execution vulnerability in the Android media framework (h263 decoder). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37660827.
by codecat007
8 stars
CVSS 7.8
CVE-2017-0720 GITHUB HIGH c
Android <7.1.2 - RCE
A remote code execution vulnerability in the Android media framework (libhevc). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37430213.
by codecat007
8 stars
CVSS 7.8
CVE-2017-0719 GITHUB HIGH c
Android <7.1.2 - RCE
A remote code execution vulnerability in the Android media framework (mpeg2 decoder). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37273673.
by codecat007
8 stars
CVSS 7.8
CVE-2017-0718 GITHUB HIGH c
Android <7.1.2 - RCE
A remote code execution vulnerability in the Android media framework (mpeg2 decoder). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37273547.
by codecat007
8 stars
CVSS 7.8
CVE-2017-0714 GITHUB HIGH c
Android <7.1.2 - RCE
A remote code execution vulnerability in the Android media framework (h263 decoder). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-36492637.
by codecat007
8 stars
CVSS 7.8
CVE-2017-0700 GITHUB HIGH c
Android <7.1.2 - RCE
A remote code execution vulnerability in the Android system ui. Product: Android. Versions: 7.1.1, 7.1.2. Android ID: A-35639138.
by codecat007
8 stars
CVSS 7.8
CVE-2017-0691 GITHUB MEDIUM c
Android <7.1.2 - DoS
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-36724453.
by codecat007
8 stars
CVSS 5.5
CVE-2017-0678 GITHUB HIGH c
Android <7.1.2 - RCE
A remote code execution vulnerability in the Android media framework. Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-36576151.
by codecat007
8 stars
CVSS 7.8
CVE-2017-0548 GITHUB MEDIUM c
Google Android - Memory Corruption
A remote denial of service vulnerability in libskia could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High severity due to the possibility of remote denial of service. Product: Android. Versions: 7.0, 7.1.1. Android ID: A-33251605.
by codecat007
8 stars
CVSS 5.5
CVE-2017-0497 GITHUB MEDIUM c
Google Android - Denial of Service
A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as Moderate because it requires an uncommon device configuration. Product: Android. Versions: 7.0, 7.1.1. Android ID: A-33300701.
by codecat007
8 stars
CVSS 4.7
CVE-2017-0475 GITHUB HIGH c
Google Android - Improper Input Validation
An elevation of privilege vulnerability in the recovery verifier could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-31914369.
by codecat007
8 stars
CVSS 7.8
CVE-2016-6762 GITHUB HIGH c
Google Android - Access Control
An elevation of privilege vulnerability in the libziparchive library could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0. Android ID: A-31251826.
by codecat007
8 stars
CVSS 7.8
CVE-2016-6702 GITHUB HIGH c
Google Android - Improper Access Control
A remote code execution vulnerability in libjpeg in Android 4.x before 4.4.4, 5.0.x before 5.0.2, and 5.1.x before 5.1.1 could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process. This issue is rated as High due to the possibility of remote code execution in an application that uses libjpeg. Android ID: A-30259087.
by codecat007
8 stars
CVSS 7.8
CVE-2016-6700 GITHUB HIGH c
Google Android - Access Control
An elevation of privilege vulnerability in libzipfile in Android 4.x before 4.4.4, 5.0.x before 5.0.2, and 5.1.x before 5.1.1 could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Android ID: A-30916186.
by codecat007
8 stars
CVSS 7.8
CVE-2016-5346 GITHUB MEDIUM c
Google Android < 7.0 - Information Disclosure
An Information Disclosure vulnerability exists in the Google Pixel/Pixel SL Qualcomm Avtimer Driver due to a NULL pointer dereference when processing an accept system call by the user process on AF_MSM_IPC sockets, which could let a local malicious user obtain sensitive information (Android Bug ID A-32551280).
by codecat007
8 stars
CVSS 5.5
CVE-2018-9381 GITHUB HIGH c
Google Android - Use of Uninitialized Resource
In gatts_process_read_by_type_req of gatt_sr.c, there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
by codecat007
8 stars
CVSS 7.5
CVE-2018-9365 GITHUB HIGH c
Google Android - Out-of-Bounds Read
In smp_data_received of smp_l2c.cc, there is a possible out of bounds read followed by code execution due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation.
by codecat007
8 stars
CVSS 8.8
CVE-2018-9361 GITHUB HIGH c
Google Android - Out-of-Bounds Read
In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-6.0 Android-6.0.1 Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android ID: A-74202041.
by codecat007
8 stars
CVSS 7.5