Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2021-04-09 CVE-2021-21194 Use After Free vulnerability in multiple products
Use after free in screen sharing in Google Chrome prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8
2021-04-09 CVE-2021-25365 Improper Handling of Exceptional Conditions vulnerability in Google Android
An improper exception control in softsimd prior to SMR APR-2021 Release 1 allows unprivileged applications to access the API in softsimd.
local
low complexity
google CWE-755
7.2
2021-04-09 CVE-2021-25361 Unspecified vulnerability in Google Android 10.0/11.0
An improper access control vulnerability in stickerCenter prior to SMR APR-2021 Release 1 allows local attackers to read or write arbitrary files of system process via untrusted applications.
local
low complexity
google
7.2
2021-04-09 CVE-2021-25360 Out-of-bounds Write vulnerability in Google Android 10.0
An improper input validation vulnerability in libswmfextractor library prior to SMR APR-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.
network
low complexity
google CWE-787
7.5
2021-04-09 CVE-2021-25356 Incorrect Authorization vulnerability in Google Android
An improper caller check vulnerability in Managed Provisioning prior to SMR APR-2021 Release 1 allows unprivileged application to install arbitrary application, grant device admin permission and then delete several installed application.
local
low complexity
google CWE-863
7.2
2021-03-26 CVE-2021-25372 Out-of-bounds Write vulnerability in Google Android 10.0/11.0
An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.
local
low complexity
google CWE-787
7.2
2021-03-26 CVE-2021-25371 Unspecified vulnerability in Google Android 10.0/11.0
A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.
local
low complexity
google
7.2
2021-03-16 CVE-2021-21193 Use After Free vulnerability in multiple products
Use after free in Blink in Google Chrome prior to 89.0.4389.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
8.8
2021-03-16 CVE-2021-21192 Out-of-bounds Write vulnerability in multiple products
Heap buffer overflow in tab groups in Google Chrome prior to 89.0.4389.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-787
8.8
2021-03-16 CVE-2021-21191 Use After Free vulnerability in multiple products
Use after free in WebRTC in Google Chrome prior to 89.0.4389.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
8.8