Vulnerabilities > Google

DATE CVE VULNERABILITY TITLE RISK
2017-02-08 CVE-2017-0414 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in AOSP Messaging could enable a local malicious application to bypass operating system protections that isolate application data from other applications.
network
google CWE-200
4.3
2017-02-08 CVE-2017-0413 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in AOSP Messaging could enable a local malicious application to bypass operating system protections that isolate application data from other applications.
network
google CWE-200
4.3
2017-02-08 CVE-2017-0412 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Google Android 7.0/7.1.0/7.1.1
An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to execute arbitrary code within the context of a privileged process.
network
google CWE-367
critical
9.3
2017-02-08 CVE-2017-0411 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Google Android 7.0/7.1.0/7.1.1
An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to execute arbitrary code within the context of a privileged process.
network
google CWE-367
critical
9.3
2017-02-08 CVE-2017-0410 Integer Overflow or Wraparound vulnerability in Google Android
An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to execute arbitrary code within the context of a privileged process.
network
google CWE-190
critical
9.3
2017-02-08 CVE-2017-0409 Arbitrary Code Execution vulnerability in Google Android libstagefright
A remote code execution vulnerability in libstagefright could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process.
network
google
6.8
2017-02-08 CVE-2017-0408 Remote Code Execution vulnerability in Google Android 7.1.1
A remote code execution vulnerability in libgdx could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process.
network
google
6.8
2017-02-08 CVE-2017-0407 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
network
google CWE-119
critical
9.3
2017-02-08 CVE-2017-0406 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
network
google CWE-119
critical
9.3
2017-02-08 CVE-2017-0405 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 7.0/7.1.0/7.1.1
A remote code execution vulnerability in Surfaceflinger could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing.
network
google CWE-119
critical
9.3