Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2022-11-18 CVE-2022-41883 Unspecified vulnerability in Google Tensorflow 2.10.0
TensorFlow is an open source platform for machine learning.
network
low complexity
google
7.5
2022-11-17 CVE-2022-42533 Integer Overflow or Wraparound vulnerability in Google Android
In shared_metadata_init of SharedMetadata.cpp, there is a possible out of bounds write due to an integer overflow.
local
low complexity
google CWE-190
7.8
2022-11-09 CVE-2022-39880 Improper Input Validation vulnerability in Google Android 11.0/12.0
Improper input validation vulnerability in DualOutFocusViewer prior to SMR Nov-2022 Release 1 allows local attacker to perform an arbitrary code execution.
local
low complexity
google CWE-20
7.8
2022-11-09 CVE-2022-39882 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/12.0
Heap overflow vulnerability in sflacf_fal_bytes_peek function in libsmat.so library prior to SMR Nov-2022 Release 1 allows local attacker to execute arbitrary code.
local
low complexity
google CWE-787
7.8
2022-11-09 CVE-2022-39883 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper authorization vulnerability in StorageManagerService prior to SMR Nov-2022 Release 1 allows local attacker to call privileged API.
local
low complexity
google
7.8
2022-11-09 CVE-2022-3445 Use After Free vulnerability in Google Chrome
Use after free in Skia in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2022-11-09 CVE-2022-3446 Out-of-bounds Write vulnerability in Google Chrome
Heap buffer overflow in WebSQL in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8
2022-11-09 CVE-2022-3448 Use After Free vulnerability in Google Chrome
Use after free in Permissions API in Google Chrome prior to 106.0.5249.119 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2022-11-09 CVE-2022-3449 Use After Free vulnerability in Google Chrome
Use after free in Safe Browsing in Google Chrome prior to 106.0.5249.119 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension.
network
low complexity
google CWE-416
8.8
2022-11-09 CVE-2022-3450 Use After Free vulnerability in Google Chrome
Use after free in Peer Connection in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8