Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2022-08-12 CVE-2022-2623 Race Condition vulnerability in multiple products
Use after free in Offline in Google Chrome on Android prior to 104.0.5112.79 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via specific UI interactions.
network
low complexity
google fedoraproject CWE-362
8.8
2022-08-12 CVE-2022-2624 Out-of-bounds Write vulnerability in multiple products
Heap buffer overflow in PDF in Google Chrome prior to 104.0.5112.79 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via a crafted PDF file.
network
low complexity
google fedoraproject CWE-787
8.8
2022-08-12 CVE-2022-20254 Unspecified vulnerability in Google Android 13.0
In Wi-Fi, there is a permissions bypass.
low complexity
google
8.8
2022-08-12 CVE-2022-20258 Unspecified vulnerability in Google Android 13.0
In Bluetooth, there is a possible way to bypass compiler exploit mitigations due to a configuration error.
local
low complexity
google
7.8
2022-08-12 CVE-2022-20268 Unspecified vulnerability in Google Android 13.0
In RestrictionsManager, there is a possible way to send a broadcast that should be restricted to system apps due to a permissions bypass.
local
low complexity
google
7.8
2022-08-12 CVE-2022-20271 Unspecified vulnerability in Google Android 13.0
In PermissionController, there is a possible way to grant some permissions without user consent due to misleading or insufficient UI.
local
low complexity
google
7.8
2022-08-12 CVE-2022-20274 Missing Authorization vulnerability in Google Android 13.0
In Keyguard, there is a missing permission check.
local
low complexity
google CWE-862
7.8
2022-08-12 CVE-2022-20281 Missing Authorization vulnerability in Google Android 13.0
In Core, there is a possible way to start an activity from the background due to a missing permission check.
local
low complexity
google CWE-862
7.8
2022-08-12 CVE-2022-20282 Missing Authorization vulnerability in Google Android 13.0
In AppWidget, there is a possible way to start an activity from the background due to a missing permission check.
local
low complexity
google CWE-862
7.8
2022-08-12 CVE-2022-20283 Integer Overflow or Wraparound vulnerability in Google Android 13.0
In Bluetooth, there is a possible out of bounds write due to an integer overflow.
low complexity
google CWE-190
8.8