Vulnerabilities > Google

DATE CVE VULNERABILITY TITLE RISK
2024-01-02 CVE-2023-32883 Out-of-bounds Write vulnerability in Google Android 12.0/13.0
In Engineer Mode, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2024-01-02 CVE-2023-32884 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 12.0/13.0
In netdagent, there is a possible information disclosure due to an incorrect bounds check.
local
low complexity
google CWE-119
6.7
2024-01-02 CVE-2023-32885 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 12.0/13.0
In display drm, there is a possible memory corruption due to a missing bounds check.
local
low complexity
google CWE-119
6.7
2024-01-02 CVE-2023-32889 Out-of-bounds Write vulnerability in Google Android 11.0/12.0/13.0
In Modem IMS Call UA, there is a possible out of bounds write due to a missing bounds check.
network
low complexity
google CWE-787
7.5
2024-01-02 CVE-2023-32891 Out-of-bounds Write vulnerability in multiple products
In bluetooth service, there is a possible out of bounds write due to improper input validation.
local
low complexity
google mediatek CWE-787
6.7
2023-12-21 CVE-2023-7024 Out-of-bounds Write vulnerability in multiple products
Heap buffer overflow in WebRTC in Google Chrome prior to 120.0.6099.129 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian fedoraproject CWE-787
8.8
2023-12-20 CVE-2023-3742 Unspecified vulnerability in Google Chrome
Insufficient policy enforcement in ADB in Google Chrome on ChromeOS prior to 114.0.5735.90 allowed a local attacker to bypass device policy restrictions via physical access to the device.
low complexity
google
6.8
2023-12-14 CVE-2023-6702 Type Confusion vulnerability in multiple products
Type confusion in V8 in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject microsoft CWE-843
8.8
2023-12-14 CVE-2023-6703 Use After Free vulnerability in Google Chrome
Use after free in Blink in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2023-12-14 CVE-2023-6704 Use After Free vulnerability in Google Chrome
Use after free in libavif in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted image file.
network
low complexity
google CWE-416
8.8