Vulnerabilities > Google > Low

DATE CVE VULNERABILITY TITLE RISK
2020-01-08 CVE-2020-0008 Out-of-bounds Read vulnerability in Google Android
In LowEnergyClient::MtuChangedCallback of low_energy_client.cc, there is a possible out of bounds read due to a race condition.
local
google CWE-125
1.9
2020-01-08 CVE-2014-9908 Denial of Service vulnerability in Google Android 4.4/5.0.2/5.1.1
A Denial of Service vulnerability exists in Google Android 4.4.4, 5.0.2, and 5.1.1, which allows malicious users to block Bluetooh access (Android Bug ID A-28672558).
low complexity
google
3.3
2020-01-07 CVE-2019-9465 Unspecified vulnerability in Google Android
In the Titan M handling of cryptographic operations, there is a possible information disclosure due to an unusual root cause.
local
low complexity
google
2.1
2020-01-06 CVE-2019-9472 Information Exposure vulnerability in Google Android
In DCRYPTO_equals of compare.c, there is a possible timing attack due to improperly used crypto.
local
low complexity
google CWE-200
2.1
2019-12-10 CVE-2019-13762 Improper Locking vulnerability in multiple products
Insufficient policy enforcement in downloads in Google Chrome on Windows prior to 79.0.3945.79 allowed a local attacker to spoof downloaded files via local code.
local
low complexity
google debian fedoraproject redhat CWE-667
3.3
2019-12-06 CVE-2019-2227 Out-of-bounds Read vulnerability in Google Android 10.0/9.0
In DeepCopy of btif_av.cc, there is a possible out of bounds read due to improper casting.
low complexity
google CWE-125
3.3
2019-12-06 CVE-2019-2229 Information Exposure vulnerability in Google Android
In updateWidget of BaseWidgetProvider.java, there is a possible leak of user data due to a missing permission check.
local
low complexity
google CWE-200
2.1
2019-12-06 CVE-2019-2231 Missing Encryption of Sensitive Data vulnerability in Google Android 10.0/9.0
In Blob::Blob of blob.cpp, there is a possible unencrypted master key due to improper input validation.
local
low complexity
google CWE-311
2.1
2019-11-25 CVE-2019-13679 Incorrect Permission Assignment for Critical Resource vulnerability in Google Chrome
Insufficient policy enforcement in PDFium in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to show print dialogs via a crafted PDF file.
local
low complexity
google CWE-732
3.3
2019-11-13 CVE-2019-2197 Improper Privilege Management vulnerability in Google Android
In processPhonebookAccess of CachedBluetoothDevice.java, there is a possible permission bypass due to an insecure default value.
local
low complexity
google CWE-269
2.1