Vulnerabilities > Google > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-05-21 CVE-2020-6461 Use After Free vulnerability in multiple products
Use after free in storage in Google Chrome prior to 81.0.4044.129 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google debian CWE-416
critical
9.6
2020-05-21 CVE-2020-6457 Use After Free vulnerability in multiple products
Use after free in speech recognizer in Google Chrome prior to 81.0.4044.113 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google debian CWE-416
critical
9.6
2020-05-14 CVE-2020-0221 Incorrect Calculation vulnerability in Google Android
Airbrush FW's scratch memory allocator is susceptible to numeric overflow.
network
low complexity
google CWE-682
critical
9.8
2020-05-14 CVE-2020-0103 Release of Invalid Pointer or Reference vulnerability in Google Android 10.0/9.0
In a2dp_aac_decoder_cleanup of a2dp_aac_decoder.cc, there is a possible invalid free due to memory corruption.
network
low complexity
google CWE-763
critical
9.8
2020-05-11 CVE-2020-12753 Out-of-bounds Write vulnerability in Google Android
An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software.
network
low complexity
google CWE-787
critical
9.8
2020-05-11 CVE-2020-12747 Out-of-bounds Write vulnerability in Google Android 10.0
An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos980 9630 and Exynos990 9830 chipsets) software.
network
low complexity
google CWE-787
critical
9.8
2020-05-11 CVE-2020-12746 Out-of-bounds Write vulnerability in Google Android
An issue was discovered on Samsung mobile devices with O(8.X), P(9.0), and Q(10.0) (Exynos chipsets) software.
network
low complexity
google CWE-787
critical
9.8
2020-05-06 CVE-2020-8899 Out-of-bounds Write vulnerability in Google Android
There is a buffer overwrite vulnerability in the Quram qmg library of Samsung's Android OS versions O(8.x), P(9.0) and Q(10.0).
network
low complexity
google CWE-787
critical
9.8
2020-05-02 CVE-2020-7645 OS Command Injection vulnerability in Google Chrome-Launcher
All versions of chrome-launcher allow execution of arbitrary commands, by controlling the $HOME environment variable in Linux operating systems.
network
low complexity
google CWE-78
critical
9.8
2020-04-28 CVE-2019-20791 Out-of-bounds Write vulnerability in Google Openthread
OpenThread before 2019-12-13 has a stack-based buffer overflow in MeshCoP::Commissioner::GeneratePskc.
network
low complexity
google CWE-787
critical
9.8