Vulnerabilities > Google

DATE CVE VULNERABILITY TITLE RISK
2015-10-14 CVE-2015-7625 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe products
Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and before 11.2.202.535 on Linux, Adobe AIR before 19.0.0.213, Adobe AIR SDK before 19.0.0.213, and Adobe AIR SDK & Compiler before 19.0.0.213 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-7626, CVE-2015-7627, CVE-2015-7630, CVE-2015-7633, and CVE-2015-7634.
network
low complexity
adobe apple microsoft google linux CWE-119
critical
10.0
2015-10-14 CVE-2015-5569 Security vulnerability in Adobe Flash Player and AIR
Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and before 11.2.202.535 on Linux, Adobe AIR before 19.0.0.213, Adobe AIR SDK before 19.0.0.213, and Adobe AIR SDK & Compiler before 19.0.0.213 improperly implement the Flash broker API, which has unspecified impact and attack vectors.
network
low complexity
adobe linux google apple microsoft
critical
10.0
2015-10-06 CVE-2015-7718 Unspecified vulnerability in Google Android
mediaserver in Android 5.x before 5.1.1 LMY48T and 6.0 before 2015-10-01 allows attackers to cause a denial of service (process crash) via unspecified vectors, aka internal bug 22278703, a different vulnerability than CVE-2015-6605.
network
low complexity
google
5.0
2015-10-06 CVE-2015-7717 Permissions, Privileges, and Access Controls vulnerability in Google Android
mediaserver in Android 5.x before 5.1.1 LMY48T and 6.0 before 2015-10-01 allows attackers to gain privileges via a crafted application, aka internal bug 19573085, a different vulnerability than CVE-2015-6596.
network
google CWE-264
critical
9.3
2015-10-06 CVE-2015-7716 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android 5.x before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 20721050, a different vulnerability than CVE-2015-3873.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-6607 Permissions, Privileges, and Access Controls vulnerability in Sqlite
SQLite before 3.8.9, as used in Android before 5.1.1 LMY48T, allows attackers to gain privileges via a crafted application, aka internal bug 20099586.
6.8
2015-10-06 CVE-2015-6606 Permissions, Privileges, and Access Controls vulnerability in Google Android
The Secure Element Evaluation Kit (aka SEEK or SmartCard API) plugin in Android before 5.1.1 LMY48T allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 22301786.
network
google CWE-264
critical
9.3
2015-10-06 CVE-2015-6605 Unspecified vulnerability in Google Android
mediaserver in Android before 5.1.1 LMY48T allows attackers to cause a denial of service (process crash) via unspecified vectors, aka internal bugs 20915134 and 23142203, a different vulnerability than CVE-2015-7718.
network
low complexity
google
5.0
2015-10-06 CVE-2015-6604 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23129786.
network
low complexity
google CWE-119
critical
10.0
2015-10-06 CVE-2015-6603 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23227354.
network
low complexity
google CWE-119
critical
10.0