Vulnerabilities > Google > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-12-05 CVE-2017-14907 Unspecified vulnerability in Google Android
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, cryptographic strength is reduced while deriving disk encryption key.
network
low complexity
google
critical
9.8
2017-11-16 CVE-2017-0854 Out-of-bounds Read vulnerability in Google Android
An information disclosure vulnerability in the Android media framework (n/a).
network
low complexity
google CWE-125
critical
9.1
2017-11-16 CVE-2017-0853 Unspecified vulnerability in Google Android
An information disclosure vulnerability in the Android media framework (n/a).
network
low complexity
google
critical
9.1
2017-11-16 CVE-2017-0847 Incorrect Default Permissions vulnerability in Google Android 8.0
An elevation of privilege vulnerability in the Android media framework (mediaanalytics).
network
low complexity
google CWE-276
critical
9.8
2017-11-14 CVE-2017-6274 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
An elevation of Privilege vulnerability exists in the Thermal Driver, where a missing bounds checks in the thermal throttle driver can cause an out-of-bounds write in the kernel.
network
low complexity
google CWE-119
critical
9.8
2017-10-27 CVE-2017-5053 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read in V8 in Google Chrome prior to 57.0.2987.133 for Linux, Windows, and Mac, and 57.0.2987.132 for Android, allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page, related to Array.prototype.indexOf.
network
low complexity
google redhat CWE-125
critical
9.6
2017-10-04 CVE-2017-0829 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the Motorola bootloader.
network
low complexity
google
critical
9.8
2017-10-04 CVE-2017-0828 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the Huawei bootloader.
network
low complexity
google
critical
9.8
2017-10-04 CVE-2017-0824 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the Broadcom wifi driver.
network
low complexity
google
critical
9.8
2017-10-04 CVE-2017-0822 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the Android system (camera).
network
low complexity
google
critical
9.8