Vulnerabilities > Google > Android > Critical

DATE CVE VULNERABILITY TITLE RISK
2019-09-27 CVE-2019-9365 Deserialization of Untrusted Data vulnerability in Google Android 10.0
In Bluetooth, there is a possible deserialization error due to missing string validation.
network
low complexity
google CWE-502
critical
9.8
2019-09-27 CVE-2019-9459 Out-of-bounds Write vulnerability in Google Android 10.0
In libttspico, there is a possible OOB write due to a heap buffer overflow.
network
low complexity
google CWE-787
critical
9.8
2019-08-20 CVE-2019-2130 Type Confusion vulnerability in Google Android
In CompilationJob::FinalizeJob of compiler.cc, there is a possible remote code execution due to type confusion.
network
low complexity
google CWE-843
critical
9.8
2019-07-08 CVE-2019-2111 Use After Free vulnerability in Google Android 9.0
In loop of DnsTlsSocket.cpp, there is a possible heap memory corruption due to a use after free.
network
low complexity
google CWE-416
critical
9.8
2019-06-19 CVE-2019-2006 Use After Free vulnerability in Google Android 9.0
In serviceDied of HalDeathHandlerHidl.cpp, there is a possible memory corruption due to a use after free.
network
low complexity
google CWE-416
critical
9.8
2019-06-19 CVE-2019-2007 Integer Overflow or Wraparound vulnerability in Google Android 8.1/9.0
In getReadIndex and getWriteIndex of FifoControllerBase.cpp, there is a possible out-of-bounds write due to an integer overflow.
network
low complexity
google CWE-190
critical
9.8
2019-06-07 CVE-2019-2097 Type Confusion vulnerability in Google Android
In HAliasAnalyzer.Query of hydrogen-alias-analysis.h, there is possible memory corruption due to type confusion.
network
low complexity
google CWE-843
critical
9.8
2019-05-08 CVE-2019-2045 Out-of-bounds Write vulnerability in Google Android
In JSCallTyper of typer.cc, there is an out of bounds write due to an incorrect bounds check.
network
low complexity
google CWE-787
critical
9.8
2019-05-08 CVE-2019-2046 Integer Overflow or Wraparound vulnerability in Google Android
In CalculateInstanceSizeForDerivedClass of objects.cc, there is possible memory corruption due to an integer overflow.
network
low complexity
google CWE-190
critical
9.8
2019-05-08 CVE-2019-2047 Type Confusion vulnerability in Google Android
In UpdateLoadElement of ic.cc, there is a possible out-of-bounds write due to type confusion.
network
low complexity
google CWE-843
critical
9.8