Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2021-08-26 CVE-2021-30603 Race Condition vulnerability in multiple products
Data race in WebAudio in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
high complexity
google fedoraproject CWE-362
7.5
2021-08-26 CVE-2021-30604 Use After Free vulnerability in multiple products
Use after free in ANGLE in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8
2021-08-17 CVE-2021-0519 Out-of-bounds Write vulnerability in Google Android
In BITSTREAM_FLUSH of ih264e_bitstream.h, there is a possible out of bounds write due to a heap buffer overflow.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0573 Out-of-bounds Write vulnerability in Google Android
In asf extractor, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0574 Out-of-bounds Write vulnerability in Google Android
In asf extractor, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0576 Out-of-bounds Write vulnerability in Google Android
In flv extractor, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0591 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android
In sendReplyIntentToReceiver of BluetoothPermissionActivity.java, there is a possible way to invoke privileged broadcast receivers due to a confused deputy.
local
low complexity
google CWE-610
7.3
2021-08-17 CVE-2021-0593 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Google Android
In sendDevicePickedIntent of DevicePickerFragment.java, there is a possible way to invoke a privileged broadcast receiver due to a confused deputy.
local
low complexity
google CWE-610
7.8
2021-08-17 CVE-2021-0640 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/9.0
In noteAtomLogged of StatsdStats.cpp, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2021-08-17 CVE-2021-0645 Incorrect Authorization vulnerability in Google Android 11.0
In shouldBlockFromTree of ExternalStorageProvider.java, there is a possible permissions bypass.
local
low complexity
google CWE-863
7.8