Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2020-02-04 CVE-2019-19273 Out-of-bounds Write vulnerability in multiple products
On Samsung mobile devices with O(8.0) and P(9.0) software and an Exynos 8895 chipset, RKP (aka the Samsung Hypervisor EL2 implementation) allows arbitrary memory write operations.
local
low complexity
google samsung CWE-787
7.8
2020-01-28 CVE-2020-5215 Improper Input Validation vulnerability in Google Tensorflow
In TensorFlow before 1.15.2 and 2.0.1, converting a string (from Python) to a tf.float16 value results in a segmentation fault in eager mode as the format checks for this use case are only in the graph mode.
network
low complexity
google CWE-20
7.5
2020-01-24 CVE-2015-1530 Integer Overflow or Wraparound vulnerability in Google Android
media/libmedia/IAudioPolicyService.cpp in Android before 5.1 allows attackers to execute arbitrary code with media_server privileges or cause a denial of service (integer overflow) via a crafted application that provides an invalid array size.
local
low complexity
google CWE-190
7.8
2020-01-10 CVE-2020-6377 Use After Free vulnerability in multiple products
Use after free in audio in Google Chrome prior to 79.0.3945.117 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
8.8
2020-01-10 CVE-2019-13767 Use After Free vulnerability in multiple products
Use after free in media picker in Google Chrome prior to 79.0.3945.88 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian fedoraproject opensuse CWE-416
8.8
2020-01-08 CVE-2020-0002 Use After Free vulnerability in Google Android
In ih264d_init_decoder of ih264d_api.c, there is a possible out of bounds write due to a use after free.
network
low complexity
google CWE-416
8.8
2020-01-08 CVE-2020-0001 Unspecified vulnerability in Google Android
In getProcessRecordLocked of ActivityManagerService.java isolated apps are not handled correctly.
local
low complexity
google
7.8
2020-01-06 CVE-2019-9469 Out-of-bounds Write vulnerability in Google Android
In km_compute_shared_hmac of km4.c, there is a possible out of bounds write due to improper input validation.
local
low complexity
google CWE-787
7.8
2020-01-06 CVE-2019-9468 Double Free vulnerability in Google Android
In export_key_der of export_key.cpp, there is possible memory corruption due to a double free.
local
low complexity
google CWE-415
7.8
2019-12-10 CVE-2019-13764 Type Confusion vulnerability in multiple products
Type confusion in JavaScript in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
8.8