Vulnerabilities > Google > Critical

DATE CVE VULNERABILITY TITLE RISK
2018-01-12 CVE-2017-13185 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the Android media framework (libhevc).
network
low complexity
google CWE-200
critical
9.1
2018-01-12 CVE-2017-13179 Use After Free vulnerability in Google Android
In the ihevcd_allocate_static_bufs and ihevcd_create functions of SoftHEVC, there is a possible out-of-bounds write due to a use after free.
network
low complexity
google CWE-416
critical
9.8
2018-01-12 CVE-2017-13178 Use After Free vulnerability in Google Android
In the initDecoder function of SoftAVCDec, there is a possible out-of-bounds write to mCodecCtx due to a use after free when buffer allocation fails.
network
low complexity
google CWE-416
critical
9.8
2018-01-12 CVE-2017-13177 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In several functions of libhevc, NEON registers are not preserved.
network
low complexity
google CWE-119
critical
9.8
2018-01-10 CVE-2017-11079 Information Exposure vulnerability in Google Android
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing sparse image, uninitialized heap memory can potentially be flashed due to the lack of validation of sparse image block header size.
network
low complexity
google CWE-200
critical
9.8
2017-12-06 CVE-2017-13160 Out-of-bounds Read vulnerability in Google Android
A remote code execution vulnerability in the Android system (bluetooth).
network
low complexity
google CWE-125
critical
9.8
2017-12-06 CVE-2017-13150 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the Android media framework (n/a).
network
low complexity
google CWE-200
critical
9.1
2017-12-06 CVE-2017-13149 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the Android media framework (n/a).
network
low complexity
google CWE-200
critical
9.1
2017-12-06 CVE-2017-0879 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the Android media framework (n/a).
network
low complexity
google CWE-200
critical
9.1
2017-12-05 CVE-2017-6211 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the processing of a downlink supplementary services message, a buffer overflow can occur.
network
low complexity
google CWE-119
critical
9.8