Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2019-04-19 CVE-2019-2026 Missing Authorization vulnerability in Google Android 8.0
In updateAssistMenuItems of Editor.java, there is a possible escape from the Setup Wizard due to a missing permission check.
local
low complexity
google CWE-862
7.8
2019-02-28 CVE-2019-2000 Use After Free vulnerability in Google Android
In several functions of binder.c, there is possible memory corruption due to a use after free.
local
low complexity
google CWE-416
7.8
2019-02-28 CVE-2019-1999 Double Free vulnerability in multiple products
In binder_alloc_free_page of binder_alloc.c, there is a possible double free due to improper locking.
local
low complexity
google debian canonical CWE-415
7.8
2019-02-28 CVE-2019-1997 Use of Insufficiently Random Values vulnerability in Google Android
In random_get_bytes of random.c, there is a possible degradation of randomness due to an insecure default value.
network
low complexity
google CWE-330
7.5
2019-02-28 CVE-2019-1994 Insecure Default Initialization of Resource vulnerability in Google Android 8.0/8.1/9.0
In refresh of DevelopmentTiles.java, there is the possibility of leaving development settings accessible due to an insecure default value.
network
low complexity
google CWE-1188
8.8
2019-02-28 CVE-2019-1993 Integer Overflow or Wraparound vulnerability in Google Android 8.0/8.1/9.0
In register_app of btif_hd.cc, there is a possible memory corruption due to an integer overflow.
local
low complexity
google CWE-190
7.8
2019-02-28 CVE-2019-1992 Use After Free vulnerability in Google Android
In bta_hl_sdp_query_results of bta_hl_main.cc, there is a possible use-after-free due to a race condition.
network
high complexity
google CWE-416
7.5
2019-02-28 CVE-2019-1991 Out-of-bounds Write vulnerability in Google Android
In btif_dm_data_copy of btif_core.cc, there is a possible out of bounds write due to a buffer overflow.
network
low complexity
google CWE-787
8.8
2019-02-28 CVE-2019-1988 Out-of-bounds Write vulnerability in Google Android 8.0/8.1/9.0
In sample6 of SkSwizzler.cpp, there is a possible out of bounds write due to improper input validation.
network
low complexity
google CWE-787
8.8
2019-02-28 CVE-2019-1987 Out-of-bounds Write vulnerability in Google Android
In onSetSampleX of SkSwizzler.cpp, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8