Vulnerabilities > Google

DATE CVE VULNERABILITY TITLE RISK
2017-03-08 CVE-2017-0498 Denial of Service vulnerability in Google Android Setup Wizard
A denial of service vulnerability in Setup Wizard could allow a local attacker to require Google account sign-in after a factory reset.
local
low complexity
google
2.1
2017-03-08 CVE-2017-0497 Denial of Service vulnerability in Google Android 7.0/7.1.0/7.1.1
A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
high complexity
google
5.4
2017-03-08 CVE-2017-0496 Denial of Service vulnerability in Google Android Setup Wizard
A denial of service vulnerability in Setup Wizard could allow a local malicious application to temporarily block access to an affected device.
network
google
4.3
2017-03-08 CVE-2017-0495 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in Mediaserver could enable a local malicious application to access data outside of its permission levels.
network
google CWE-200
4.3
2017-03-08 CVE-2017-0494 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in AOSP Messaging could enable a remote attacker using a special crafted file to access data outside of its permission levels.
network
google CWE-200
4.3
2017-03-08 CVE-2017-0492 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Android 7.0/7.1.0/7.1.1
An elevation of privilege vulnerability in the System UI could enable a local malicious application to create a UI overlay covering the entire screen.
network
google CWE-1021
4.3
2017-03-08 CVE-2017-0491 Privilege Escalation vulnerability in Google Android Package Manager
An elevation of privilege vulnerability in Package Manager could enable a local malicious application to prevent users from uninstalling applications or removing permissions from applications.
network
google
4.3
2017-03-08 CVE-2017-0490 Privilege Escalation vulnerability in Google Android Wi-Fi
An elevation of privilege vulnerability in Wi-Fi could enable a local malicious application to delete user data.
network
google
4.3
2017-03-08 CVE-2017-0489 Remote Privilege Escalation vulnerability in Google Android Location Manager
An elevation of privilege vulnerability in Location Manager could enable a local malicious application to bypass operating system protections for location data.
network
google
4.3
2017-03-08 CVE-2017-0488 Improper Input Validation vulnerability in Google Android
A denial of service vulnerability in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot.
network
google CWE-20
7.1