Vulnerabilities > Google > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-11-12 CVE-2011-2334 Use After Free vulnerability in Google Blink M11
Use after free vulnerability exists in WebKit in Google Chrome before Blink M12 in RenderLayerwhen removing elements with reflections.
network
low complexity
google CWE-416
6.5
2019-11-07 CVE-2011-2336 Improper Handling of Exceptional Conditions vulnerability in Google Blink M11
An issue exists in WebKit in Google Chrome before Blink M12.
network
low complexity
google CWE-755
6.5
2019-11-07 CVE-2011-2807 Improper Handling of Exceptional Conditions vulnerability in Google Blink M11/M12
Incorrect handling of timer information in Timer.cpp in WebKit in Google Chrome before Blink M13.
network
low complexity
google CWE-755
6.5
2019-11-07 CVE-2011-2353 Use After Free vulnerability in Google Blink M11/M12
Use after free vulnerability in documentloader in WebKit in Google Chrome before Blink M13 in DocumentWriter::replaceDocument function.
network
low complexity
google CWE-416
6.5
2019-11-06 CVE-2011-2808 Improper Input Validation vulnerability in Google Blink M11/M12
A stale layout root is set as an input element in WebKit in Google Chrome before Blink M13 when a child of a keygen with autofocus is accessed.
network
low complexity
google CWE-20
6.5
2019-11-05 CVE-2011-1459 Resource Exhaustion vulnerability in Google Blink
The WebKit::WebPluginContainerImpl::handleEvent function in Google Chrome before Blink M11 allows an attacker to cause a denial of service (crash) via the htmlpluginelement.cpp plugin.
network
low complexity
google CWE-400
6.5
2019-10-11 CVE-2019-2187 Integer Underflow (Wrap or Wraparound) vulnerability in Google Android
In nfc_ncif_decode_rf_params of nfc_ncif.cc, there is a possible out of bounds read due to an integer underflow.
local
low complexity
google CWE-191
5.5
2019-10-11 CVE-2019-2183 Information Exposure vulnerability in Google Android 10.0/9.0
In generateServicesMap of RegisteredServicesCache.java, there is a possible account protection bypass due to a caching optimization.
local
low complexity
google CWE-200
5.5
2019-10-11 CVE-2019-2110 Missing Authorization vulnerability in Google Android 9.0
In ScreenRotationAnimation of ScreenRotationAnimation.java, there is a possible capture of a secure screen due to a missing permission check.
local
low complexity
google CWE-862
5.5
2019-10-09 CVE-2019-11341 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Google Android 9.0
On certain Samsung P(9.0) phones, an attacker with physical access can start a TCP Dump capture without the user's knowledge.
low complexity
google CWE-327
4.6