Vulnerabilities > Google > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-04-12 CVE-2017-3063 Use After Free vulnerability in Adobe Flash Player
Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable use after free vulnerability in the ActionScript2 NetStream class.
network
low complexity
adobe microsoft apple google linux CWE-416
critical
10.0
2017-04-12 CVE-2017-3062 Use After Free vulnerability in Adobe Flash Player
Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable use after free vulnerability in ActionScript2 when creating a getter/setter property.
network
low complexity
adobe microsoft apple google linux CWE-416
critical
10.0
2017-04-12 CVE-2017-3061 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe Flash Player
Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable memory corruption vulnerability in the SWF parser.
network
low complexity
adobe microsoft apple google linux CWE-119
critical
10.0
2017-04-12 CVE-2017-3060 Out-of-bounds Read vulnerability in Adobe Flash Player
Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable memory corruption vulnerability in the ActionScript2 code parser.
network
low complexity
adobe microsoft apple google linux CWE-125
critical
10.0
2017-04-12 CVE-2017-3059 Use After Free vulnerability in Adobe Flash Player
Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable use after free vulnerability in the internal script object.
network
low complexity
adobe microsoft apple google linux CWE-416
critical
10.0
2017-04-12 CVE-2017-3058 Use After Free vulnerability in Adobe Flash Player
Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable use after free vulnerability in the sound class.
9.3
2017-04-07 CVE-2017-0562 Privilege Escalation vulnerability in Google Android MediaTek Touchscreen Driver
An elevation of privilege vulnerability in the MediaTek touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
network
google
critical
9.3
2017-04-07 CVE-2017-0546 NULL Pointer Dereference vulnerability in Google Android
An elevation of privilege vulnerability in SurfaceFlinger could enable a local malicious application to execute arbitrary code within the context of a privileged process.
network
google CWE-476
critical
9.3
2017-04-07 CVE-2017-0545 Incorrect Calculation vulnerability in Google Android
An elevation of privilege vulnerability in Audioserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
network
google CWE-682
critical
9.3
2017-04-07 CVE-2017-0544 Operation on a Resource after Expiration or Release vulnerability in Google Android
An elevation of privilege vulnerability in CameraBase could enable a local malicious application to execute arbitrary code.
network
google CWE-672
critical
9.3