Vulnerabilities > Google > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-01-24 CVE-2024-0808 Integer Underflow (Wrap or Wraparound) vulnerability in multiple products
Integer underflow in WebUI in Google Chrome prior to 121.0.6167.85 allowed a remote attacker to potentially exploit heap corruption via a malicious file.
network
low complexity
google fedoraproject CWE-191
critical
9.8
2024-01-02 CVE-2023-6339 Missing Encryption of Sensitive Data vulnerability in Google Nest Wifi PRO Firmware
Google Nest WiFi Pro root code-execution & user-data compromise
network
low complexity
google CWE-311
critical
9.8
2024-01-02 CVE-2023-48419 Unspecified vulnerability in Google products
An attacker in the wifi vicinity of a target Google Home can spy on the victim, resulting in Elevation of Privilege 
network
low complexity
google
critical
9.8
2023-12-11 CVE-2023-48417 Missing Authorization vulnerability in Google Chromecast Firmware
Missing Permission checks resulting in unauthorized access and Manipulation in KeyChainActivity Application
network
low complexity
google CWE-862
critical
9.8
2023-12-11 CVE-2023-48424 Unspecified vulnerability in Google Chromecast Firmware
U-Boot shell vulnerability resulting in Privilege escalation in a production device
network
low complexity
google
critical
9.8
2023-12-11 CVE-2023-48425 Unspecified vulnerability in Google Chromecast Firmware
U-Boot vulnerability resulting in persistent Code Execution 
network
low complexity
google
critical
9.8
2023-12-11 CVE-2023-6181 Unspecified vulnerability in Google Chromecast Firmware
An oversight in BCB handling of reboot reason that allows for persistent code execution
network
low complexity
google
critical
9.8
2023-12-08 CVE-2023-48423 Out-of-bounds Write vulnerability in Google Android
In dhcp4_SetPDNAddress of dhcp4_Main.c, there is a possible out of bounds write due to a missing bounds check.
network
low complexity
google CWE-787
critical
9.8
2023-12-04 CVE-2023-21162 Unspecified vulnerability in Google Android
In RGXUnbackingZSBuffer of rgxta3d.c, there is a possible arbitrary code execution due to a use after free.
network
low complexity
google
critical
9.8
2023-12-04 CVE-2023-21163 Unspecified vulnerability in Google Android
In PMR_ReadBytes of pmr.c, there is a possible arbitrary code execution due to a use after free.
network
low complexity
google
critical
9.8