Vulnerabilities > Google > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-02-12 | CVE-2017-13232 | Out-of-bounds Write vulnerability in Google Android In audioserver, there is an out-of-bounds write due to a log statement using %s with an array that may not be NULL terminated. | 7.5 |
2018-02-12 | CVE-2017-13231 | Out-of-bounds Write vulnerability in Google Android 8.0/8.1 In libmediadrm, there is an out-of-bounds write due to improper input validation. | 7.8 |
2018-02-12 | CVE-2017-13230 | Out-of-bounds Write vulnerability in Google Android In hevc codec, there is an out-of-bounds write due to an incorrect bounds check with the i2_pic_width_in_luma_samples value. | 8.8 |
2018-02-12 | CVE-2017-13228 | Out-of-bounds Write vulnerability in Google Android In function ih264d_ref_idx_reordering of libavc, there is an out-of-bounds write due to modCount being defined as an unsigned character. | 8.8 |
2018-02-07 | CVE-2017-5133 | Out-of-bounds Write vulnerability in multiple products Off-by-one read/write on the heap in Blink in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to corrupt memory and possibly leak information and potentially execute code via a crafted PDF file. | 8.8 |
2018-02-07 | CVE-2017-5132 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products Inappropriate implementation in V8 in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page, aka incorrect WebAssembly stack manipulation. | 8.8 |
2018-02-07 | CVE-2017-5131 | Integer Overflow or Wraparound vulnerability in multiple products An integer overflow in Skia in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page, aka an out-of-bounds write. | 8.8 |
2018-02-07 | CVE-2017-5130 | Out-of-bounds Write vulnerability in multiple products An integer overflow in xmlmemory.c in libxml2 before 2.9.5, as used in Google Chrome prior to 62.0.3202.62 and other products, allowed a remote attacker to potentially exploit heap corruption via a crafted XML file. | 8.8 |
2018-02-07 | CVE-2017-5129 | Use After Free vulnerability in multiple products A use after free in WebAudio in Blink in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. | 8.8 |
2018-02-07 | CVE-2017-5128 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products Heap buffer overflow in Blink in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page, related to WebGL. | 8.8 |