Vulnerabilities > Google > Earth

DATE CVE VULNERABILITY TITLE RISK
2020-05-04 CVE-2020-8896 Classic Buffer Overflow vulnerability in Google Earth
A Buffer Overflow vulnerability in the khcrypt implementation in Google Earth Pro versions up to and including 7.3.2 allows an attacker to perform a Man-in-the-Middle attack using a specially crafted key to read data past the end of the buffer used to hold it.
network
google CWE-120
4.3
2020-04-21 CVE-2020-8895 Untrusted Search Path vulnerability in Google Earth
Untrusted Search Path vulnerability in the windows installer of Google Earth Pro versions prior to 7.3.3 allows an attacker to insert malicious local files to execute unauthenticated remote code on the targeted system.
local
low complexity
google CWE-426
7.8
2010-08-26 CVE-2010-3134 Unspecified vulnerability in Google Earth 5.1.3535.3218
Untrusted search path vulnerability in Google Earth 5.1.3535.3218 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse quserex.dll that is located in the same folder as a .kmz file.
network
google
critical
9.3
2007-03-07 CVE-2006-7157 Buffer Errors vulnerability in Google Earth 4.0.2091
Buffer overflow in Google Earth v4.0.2091 (beta) allows remote user-assisted attackers to cause a denial of service (crash) via a KML or KMZ file with a long href element.
network
google CWE-119
7.1