Vulnerabilities > Google

DATE CVE VULNERABILITY TITLE RISK
2012-05-21 CVE-2012-1249 Information Exposure vulnerability in Lunascape Ilunascape Android 1.0.4.0
The iLunascape application 1.0.4.0 and earlier for Android does not properly implement the WebView class, which allows remote attackers to obtain sensitive stored information via a crafted application.
network
low complexity
lunascape google CWE-200
5.0
2012-05-16 CVE-2011-3102 Numeric Errors vulnerability in Google Chrome
Off-by-one error in libxml2, as used in Google Chrome before 19.0.1084.46 and other products, allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via unknown vectors.
network
google apple CWE-189
6.8
2012-05-16 CVE-2011-3101 Multiple Security vulnerability in Google Chrome Prior to 19
Google Chrome before 19.0.1084.46 on Linux does not properly mitigate an unspecified flaw in an NVIDIA driver, which has unknown impact and attack vectors.
network
low complexity
google linux
critical
10.0
2012-05-16 CVE-2011-3100 Multiple Security vulnerability in Google Chrome Prior to 19
Google Chrome before 19.0.1084.46 does not properly draw dash paths, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
network
low complexity
google
5.0
2012-05-16 CVE-2011-3099 Resource Management Errors vulnerability in Google Chrome
Use-after-free vulnerability in the PDF functionality in Google Chrome before 19.0.1084.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving a malformed name for the font encoding.
network
low complexity
google CWE-399
critical
10.0
2012-05-16 CVE-2011-3098 Permissions, Privileges, and Access Controls vulnerability in multiple products
Google Chrome before 19.0.1084.46 on Windows uses an incorrect search path for the Windows Media Player plug-in, which might allow local users to gain privileges via a Trojan horse plug-in in an unspecified directory.
local
low complexity
opensuse google microsoft CWE-264
7.2
2012-05-16 CVE-2011-3097 Improper Input Validation vulnerability in Google Chrome
The PDF functionality in Google Chrome before 19.0.1084.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging an out-of-bounds write error in the implementation of sampled functions.
network
low complexity
google CWE-20
critical
10.0
2012-05-16 CVE-2011-3096 Resource Management Errors vulnerability in Google Chrome
Use-after-free vulnerability in Google Chrome before 19.0.1084.46 on Linux allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging an error in the GTK implementation of the omnibox.
network
low complexity
google linux CWE-399
7.5
2012-05-16 CVE-2011-3095 Improper Input Validation vulnerability in Google Chrome
The OGG container in Google Chrome before 19.0.1084.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an out-of-bounds write.
network
low complexity
google CWE-20
critical
10.0
2012-05-16 CVE-2011-3094 Improper Input Validation vulnerability in Google Chrome
Google Chrome before 19.0.1084.46 does not properly handle Tibetan text, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
network
low complexity
google CWE-20
5.0