Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2020-09-21 CVE-2020-15962 Insufficient policy validation in serial in Google Chrome prior to 85.0.4183.121 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.
network
low complexity
google opensuse fedoraproject debian
8.8
2020-09-21 CVE-2020-15960 Out-of-bounds Write vulnerability in multiple products
Heap buffer overflow in storage in Google Chrome prior to 85.0.4183.121 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.
network
low complexity
google opensuse fedoraproject debian CWE-787
8.8
2020-09-21 CVE-2020-6551 Use After Free vulnerability in multiple products
Use after free in WebXR in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian fedoraproject CWE-416
8.8
2020-09-21 CVE-2020-6550 Use After Free vulnerability in multiple products
Use after free in IndexedDB in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian fedoraproject CWE-416
8.8
2020-09-21 CVE-2020-6542 Use After Free vulnerability in multiple products
Use after free in ANGLE in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian fedoraproject CWE-416
8.8
2020-09-21 CVE-2020-6541 Use After Free vulnerability in multiple products
Use after free in WebUSB in Google Chrome prior to 84.0.4147.105 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian fedoraproject CWE-416
8.8
2020-09-18 CVE-2020-0405 Improper Preservation of Permissions vulnerability in Google Android 11.0
In NetworkStackNotifier, there is a possible permissions bypass due to an unsafe implicit PendingIntent.
local
low complexity
google CWE-281
7.8
2020-09-18 CVE-2020-0319 Out-of-bounds Write vulnerability in Google Android 11.0
In NFC, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2020-09-18 CVE-2020-0300 Use of Uninitialized Resource vulnerability in Google Android 11.0
In NFC, there is a possible out of bounds read due to uninitialized data.
network
low complexity
google CWE-908
7.5
2020-09-18 CVE-2020-0299 Missing Authorization vulnerability in Google Android 11.0
In Bluetooth, there is a possible spoofing of bluetooth device metadata due to a missing permission check.
local
low complexity
google CWE-862
7.8