Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2025-01-15 CVE-2025-0437 Out-of-bounds Read vulnerability in Google Chrome
Out of bounds read in Metrics in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-125
8.8
2025-01-08 CVE-2023-35685 Unspecified vulnerability in Google Android
In DevmemIntMapPages of devicemem_server.c, there is a possible physical page uaf due to a logic error in the code.
local
low complexity
google
7.8
2024-12-12 CVE-2024-12381 Type Confusion vulnerability in Google Chrome
Type Confusion in V8 in Google Chrome prior to 131.0.6778.139 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-843
8.8
2024-12-12 CVE-2024-12382 Use After Free vulnerability in Google Chrome
Use after free in Translate in Google Chrome prior to 131.0.6778.139 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2024-12-05 CVE-2018-9402 Out-of-bounds Write vulnerability in Google Android
In multiple functions of gl_proc.c, there is a buffer overwrite due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2024-12-03 CVE-2024-12053 Type Confusion vulnerability in Google Chrome
Type Confusion in V8 in Google Chrome prior to 131.0.6778.108 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page.
network
low complexity
google CWE-843
8.8
2024-12-02 CVE-2018-9426 Insufficient Entropy vulnerability in Google Android
In  RsaKeyPairGenerator::getNumberOfIterations of RSAKeyPairGenerator.java, an incorrect implementation could cause weak RSA key pairs being generated. This could lead to crypto vulnerability with no additional execution privileges needed.
network
low complexity
google CWE-331
7.5
2024-12-02 CVE-2018-9431 Unspecified vulnerability in Google Android 8.0/8.1
In OSUInfo of OSUInfo.java, there is a possible escalation of privilege due to improper input validation.
local
low complexity
google
7.8
2024-12-02 CVE-2018-9413 Out-of-bounds Write vulnerability in Google Android
In handle_notification_response of btif_rc.cc, there is a possible out of bounds write due to a missing bounds check.
network
low complexity
google CWE-787
8.8
2024-12-02 CVE-2018-9414 Out-of-bounds Write vulnerability in Google Android
In gattServerSendResponseNative of com_android_bluetooth_gatt.cpp, there is a possible out of bounds stack write due to a missing bounds check.
local
low complexity
google CWE-787
7.8