Vulnerabilities > Google > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-11-16 CVE-2017-11014 Classic Buffer Overflow vulnerability in Google Android
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while parsing a Measurement Request IE in a Roam Neighbor Action Report, a buffer overflow can occur.
network
google CWE-120
critical
9.3
2017-11-16 CVE-2017-11013 Classic Buffer Overflow vulnerability in Google Android
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, countOffset (in function UnpackCore) is increased for each loop, while there is no boundary check against "pIe->arraybound".
network
google CWE-120
critical
9.3
2017-10-27 CVE-2017-5053 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read in V8 in Google Chrome prior to 57.0.2987.133 for Linux, Windows, and Mac, and 57.0.2987.132 for Android, allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page, related to Array.prototype.indexOf.
network
low complexity
google redhat CWE-125
critical
9.6
2017-10-04 CVE-2017-0827 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the MediaTek soc driver.
network
google
critical
9.3
2017-10-04 CVE-2017-0826 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the HTC bootloader.
network
google
critical
9.3
2017-10-04 CVE-2017-0812 Out-of-bounds Read vulnerability in Google Android
An elevation of privilege vulnerability in the Android media framework (audio hal).
network
google CWE-125
critical
9.3
2017-10-04 CVE-2017-0811 Unspecified vulnerability in Google Android
A remote code execution vulnerability in the Android media framework (libhevc).
network
google
critical
9.3
2017-10-04 CVE-2017-0810 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in the Android media framework (libmpeg2).
network
google CWE-119
critical
9.3
2017-10-04 CVE-2017-0809 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
A remote code execution vulnerability in the Android media framework (libstagefright).
network
google CWE-119
critical
9.3
2017-10-04 CVE-2017-0807 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the Android framework (ui framework).
network
low complexity
google
critical
10.0