Vulnerabilities > Google > Critical

DATE CVE VULNERABILITY TITLE RISK
2018-07-15 CVE-2018-14066 SQL Injection vulnerability in Google Android 6.0/7.0
The content://wappush content provider in com.android.provider.telephony, as found in some custom ROMs for Android phones, allows SQL injection.
network
low complexity
google CWE-89
critical
9.8
2018-07-06 CVE-2018-5855 Out-of-bounds Read vulnerability in Google Android
While padding or shrinking a nested wmi packet in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, a buffer over-read can potentially occur.
network
low complexity
google CWE-125
critical
9.8
2018-07-06 CVE-2018-3586 Integer Overflow or Wraparound vulnerability in Google Android
An integer overflow to buffer overflow vulnerability exists in the ADSPRPC heap manager in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.
network
low complexity
google CWE-190
critical
9.8
2018-04-04 CVE-2016-8488 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in Qualcomm closed source components.
network
low complexity
google CWE-264
critical
9.8
2018-04-04 CVE-2016-8487 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in Qualcomm closed source components.
network
low complexity
google CWE-264
critical
9.8
2018-04-04 CVE-2016-8484 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in Qualcomm closed source components.
network
low complexity
google CWE-264
critical
9.8
2018-04-04 CVE-2016-10299 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in Qualcomm closed source components.
network
low complexity
google CWE-264
critical
9.8
2018-04-04 CVE-2016-10298 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in Qualcomm closed source components.
network
low complexity
google CWE-264
critical
9.8
2018-04-04 CVE-2016-10233 Permissions, Privileges, and Access Controls vulnerability in Google Android
An elevation of privilege vulnerability in the Qualcomm video driver.
network
low complexity
google CWE-264
critical
9.8
2018-04-04 CVE-2016-10230 Permissions, Privileges, and Access Controls vulnerability in Google Android
A remote code execution vulnerability in the Qualcomm crypto driver.
network
low complexity
google CWE-264
critical
9.8