Vulnerabilities > Google > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-03-15 CVE-2020-0086 Integer Overflow or Wraparound vulnerability in Google Android 10.0
In readCString of Parcel.cpp, there is a possible out of bounds write due to an integer overflow.
network
low complexity
google CWE-190
critical
9.8
2020-02-25 CVE-2015-0565 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Native Client 2015
NaCl in 2015 allowed the CLFLUSH instruction, making rowhammer attacks possible.
network
low complexity
google CWE-119
critical
10.0
2020-01-23 CVE-2013-6792 Unspecified vulnerability in Google Android
Google Android prior to 4.4 has an APK Signature Security Bypass Vulnerability
network
low complexity
google
critical
9.8
2019-12-16 CVE-2019-16778 Incorrect Conversion between Numeric Types vulnerability in Google Tensorflow
In TensorFlow before 1.15, a heap buffer overflow in UnsortedSegmentSum can be produced when the Index template argument is int32.
network
low complexity
google CWE-681
critical
9.8
2019-11-25 CVE-2019-5870 Use After Free vulnerability in Google Chrome
Use after free in media in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google CWE-416
critical
9.6
2019-11-25 CVE-2019-5866 Out-of-bounds Write vulnerability in Google Chrome
Out of bounds memory access in JavaScript in Google Chrome prior to 75.0.3770.142 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
critical
9.8
2019-11-25 CVE-2019-5850 Use After Free vulnerability in Google Chrome
Use after free in offline mode in Google Chrome prior to 76.0.3809.87 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google CWE-416
critical
9.6
2019-11-20 CVE-2016-9652 Unspecified vulnerability in Google Chrome
Multiple unspecified vulnerabilities in Google Chrome before 55.0.2883.75.
network
low complexity
google
critical
9.8
2019-11-20 CVE-2016-5194 Unspecified vulnerability in Google Chrome
Unspecified vulnerabilities in Google Chrome before 54.0.2840.59.
network
low complexity
google
critical
9.8
2019-11-13 CVE-2019-2205 Use After Free vulnerability in Google Android
In ProxyResolverV8::SetPacScript of proxy_resolver_v8.cc, there is a possible memory corruption due to a use after free.
network
low complexity
google CWE-416
critical
9.8