Vulnerabilities > Google

DATE CVE VULNERABILITY TITLE RISK
2024-05-07 CVE-2024-23713 Unspecified vulnerability in Google Android
In migrateNotificationFilter of NotificationManagerService.java, there is a possible failure to persist notifications settings due to improper input validation.
local
low complexity
google
7.8
2024-05-07 CVE-2024-4558 Use After Free vulnerability in multiple products
Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject apple CWE-416
critical
9.6
2024-05-07 CVE-2024-4559 Out-of-bounds Write vulnerability in multiple products
Heap buffer overflow in WebAudio in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-787
6.5
2024-05-06 CVE-2023-32873 Out-of-bounds Write vulnerability in Google Android 12.0/13.0/14.0
In keyInstall, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2024-05-06 CVE-2024-20064 Out-of-bounds Write vulnerability in Google Android 13.0/14.0
In wlan service, there is a possible out of bounds write due to improper input validation.
local
low complexity
google CWE-787
7.8
2024-05-01 CVE-2024-4058 Type Confusion vulnerability in multiple products
Type confusion in ANGLE in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-843
8.8
2024-05-01 CVE-2024-4059 Out-of-bounds Read vulnerability in multiple products
Out of bounds read in V8 API in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to leak cross-site data via a crafted HTML page.
network
low complexity
google fedoraproject CWE-125
6.5
2024-05-01 CVE-2024-4060 Use After Free vulnerability in multiple products
Use after free in Dawn in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
6.5
2024-05-01 CVE-2024-4331 Use After Free vulnerability in multiple products
Use after free in Picture In Picture in Google Chrome prior to 124.0.6367.118 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8
2024-05-01 CVE-2024-4368 Use After Free vulnerability in multiple products
Use after free in Dawn in Google Chrome prior to 124.0.6367.118 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8