Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2017-02-08 CVE-2016-8481 Permissions, Privileges, and Access Controls vulnerability in multiple products
An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google linux CWE-264
7.0
2017-02-08 CVE-2016-8480 Permissions, Privileges, and Access Controls vulnerability in multiple products
An elevation of privilege vulnerability in the Qualcomm Secure Execution Environment Communicator driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google linux CWE-264
7.0
2017-02-08 CVE-2016-8476 Permissions, Privileges, and Access Controls vulnerability in multiple products
An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google linux CWE-264
7.0
2017-02-08 CVE-2016-8421 Permissions, Privileges, and Access Controls vulnerability in multiple products
An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google linux CWE-264
7.0
2017-02-08 CVE-2016-8420 Permissions, Privileges, and Access Controls vulnerability in multiple products
An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google linux CWE-264
7.0
2017-02-08 CVE-2016-8419 Permissions, Privileges, and Access Controls vulnerability in multiple products
An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
google linux CWE-264
7.0
2017-02-07 CVE-2016-10044 Permissions, Privileges, and Access Controls vulnerability in multiple products
The aio_mount function in fs/aio.c in the Linux kernel before 4.7.7 does not properly restrict execute access, which makes it easier for local users to bypass intended SELinux W^X policy restrictions, and consequently gain privileges, via an io_setup system call.
local
low complexity
linux google CWE-264
7.8
2017-02-07 CVE-2014-9914 Use After Free vulnerability in multiple products
Race condition in the ip4_datagram_release_cb function in net/ipv4/datagram.c in the Linux kernel before 3.15.2 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging incorrect expectations about locking during multithreaded access to internal data structures for IPv4 UDP sockets.
local
low complexity
linux google CWE-416
7.8
2017-01-19 CVE-2016-5213 Use After Free vulnerability in Google Chrome
A use after free in V8 in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2017-01-19 CVE-2016-5211 Use After Free vulnerability in Google Chrome
A use after free in PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
network
low complexity
google CWE-416
8.8