Vulnerabilities > Google

DATE CVE VULNERABILITY TITLE RISK
2024-08-15 CVE-2024-34738 Unspecified vulnerability in Google Android 13.0/14.0
In multiple functions of AppOpsService.java, there is a possible way for unprivileged apps to read their own restrictRead app-op states due to a logic error in the code.
local
low complexity
google
7.8
2024-08-15 CVE-2024-34739 Unspecified vulnerability in Google Android
In shouldRestrictOverlayActivities of UsbProfileGroupSettingsManager.java, there is a possible escape from SUW due to a logic error in the code.
local
low complexity
google
7.8
2024-08-15 CVE-2024-34740 Integer Overflow or Wraparound vulnerability in Google Android
In attributeBytesBase64 and attributeBytesHex of BinaryXmlSerializer.java, there is a possible arbitrary XML injection due to an integer overflow.
local
low complexity
google CWE-190
7.8
2024-08-15 CVE-2024-34741 Unspecified vulnerability in Google Android
In setForceHideNonSystemOverlayWindowIfNeeded of WindowState.java, there is a possible way for message content to be visible on the screensaver while lock screen visibility settings are restricted by the user due to a logic error in the code.
local
low complexity
google
7.8
2024-08-15 CVE-2024-34742 Unspecified vulnerability in Google Android 14.0
In shouldWrite of OwnersData.java, there is a possible edge case that prevents MDM policies from being persisted due to a logic error in the code.
local
low complexity
google
5.5
2024-08-15 CVE-2024-34743 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Android 14.0
In setTransactionState of SurfaceFlinger.cpp, there is a possible way to perform tapjacking due to a logic error in the code.
local
low complexity
google CWE-1021
7.8
2024-08-06 CVE-2024-7532 Out-of-bounds Write vulnerability in Google Chrome
Out of bounds memory access in ANGLE in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8
2024-08-06 CVE-2024-7533 Use After Free vulnerability in Google Chrome
Use after free in Sharing in Google Chrome on iOS prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2024-08-06 CVE-2024-7534 Out-of-bounds Write vulnerability in Google Chrome
Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8
2024-08-06 CVE-2024-7535 Out-of-bounds Write vulnerability in Google Chrome
Inappropriate implementation in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8