Latest Google Vulnerabilities

Google Chrome<127.0.6533.72
Google Chrome<127.0.6533.64
Google Android*
Google Chrome<127.0.6533.51
Google Android*
Google Chrome<126.0.6478.182
Google Chrome<126.0.6478.186
Google Android*
Out of bounds memory access in V8
Google Chrome<126.0.6478.182
Microsoft Edge<126.0.2592.113
Microsoft Edge (Chromium-based)
Improper input validation in Tips prior to version 6.2.9.4 in Android 14 allows local attacker to send broadcast with Tips&#39; privilege.
Samsung Tips<6.2.9.4
Google Android=14.0
Integer Overflow or Wraparound in Graphics
Qualcomm Fastconnect 6200 Firmware
Qualcomm Fastconnect 6200
Qualcomm Fastconnect 6700 Firmware
Qualcomm Fastconnect 6700
Qualcomm Fastconnect 6900 Firmware
Qualcomm Fastconnect 6900
and 217 more
Use After Free in Graphics
Qualcomm Fastconnect 6200 Firmware
Qualcomm Fastconnect 6200
Qualcomm Fastconnect 6700 Firmware
Qualcomm Fastconnect 6700
Qualcomm Fastconnect 6900 Firmware
Qualcomm Fastconnect 6900
and 207 more
Use After Free in Graphics
Qualcomm 315 5g Iot Modem Firmware
Qualcomm 315 5g Iot Modem
Qualcomm Aqt1000 Firmware
Qualcomm Aqt1000
Qualcomm Ar8031 Firmware
Qualcomm Ar8031
and 439 more
In onTransact of ParcelableListBinder.java , there is a possible way to steal mAllowlistToken to launch an app from background due to a logic error in the code. This could lead to local escalation of ...
Google Android
In _UnrefAndMaybeDestroy of pmr.c, there is a possible arbitrary code execution due to a race condition. This could lead to local escalation of privilege in the kernel with no additional execution pri...
Google Android
Buffer Over-read in TZ Secure OS
Qualcomm 315 5g Iot Modem Firmware
Qualcomm 315 5g Iot Modem
Qualcomm 9205 Lte Modem Firmware
Qualcomm 9205 Lte Modem
Qualcomm Aqt1000 Firmware
Qualcomm Aqt1000
and 617 more
Mali GPU Firmware allows improper GPU processing operations
Google Android
In setMimeGroup of PackageManagerService.java, there is a possible way to hide the service from Settings due to a logic error in the code. This could lead to local escalation of privilege with User ex...
Google Android
In com_android_internal_os_ZygoteCommandBuffer_nativeForkRepeatedly of com_android_internal_os_ZygoteCommandBuffer.cpp, there is a possible method to perform arbitrary code execution in any app zygote...
Google Android
In DevmemIntFreeDefBackingPage of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege in the kernel with...
Google Android
In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no a...
Google Android
In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed f...
Google Android
In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed f...
Google Android
Use of Insufficiently Random Values in Core
Qualcomm Fastconnect 6900 Firmware
Qualcomm Fastconnect 6900
Qualcomm Fastconnect 7800 Firmware
Qualcomm Fastconnect 7800
Qualcomm Qcm8550 Firmware
Qualcomm Qcm8550
and 25 more
Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Qualcomm IPC
Qualcomm Apq8064au Firmware
Qualcomm Apq8064au
Qualcomm Aqt1000 Firmware
Qualcomm Aqt1000
Qualcomm Ar8035 Firmware
Qualcomm Ar8035
and 681 more
Buffer Over-read in Trusted Execution Environment
Qualcomm 9205 Lte Modem Firmware
Qualcomm 9205 Lte Modem
Qualcomm Aqt1000 Firmware
Qualcomm Aqt1000
Qualcomm Ar8031 Firmware
Qualcomm Ar8031
and 513 more
Double Free in HLOS
Qualcomm 315 5g Iot Modem Firmware
Qualcomm 315 5g Iot Modem
Qualcomm 9205 Lte Modem Firmware
Qualcomm 9205 Lte Modem
Qualcomm Apq8017 Firmware
Qualcomm Apq8017
and 621 more
In smp_proc_rand of smp_act.cc, there is a possible authentication bypass during legacy BLE pairing due to incorrect implementation of a protocol. This could lead to remote escalation of privilege wit...
Google Android
In multiple functions of StatsService.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges neede...
Google Android
In PVRSRV_MMap of pvr_bridge_k.c, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execu...
Google Android
Permissions, Privileges, and Access Control issues in TZ Secure OS
Qualcomm 9205 Lte Modem Firmware
Qualcomm 9205 Lte Modem
Qualcomm Aqt1000 Firmware
Qualcomm Aqt1000
Qualcomm Ar8031 Firmware
Qualcomm Ar8031
and 443 more
In setSkipPrompt of AssociationRequest.java , there is a possible way to establish a companion device association without any confirmation due to CDM. This could lead to local escalation of privilege ...
Google Android
In ensureFileColumns of MediaProvider.java, there is a possible disclosure of files owned by another user due to improper input validation. This could lead to local information disclosure with no addi...
Google Android
In multiple locations, there is a possible way to bypass a restriction on adding new Wi-Fi connections due to a missing permission check. This could lead to local escalation of privilege with no addit...
Google Android
In DevmemIntUnexportCtx of devicemem_server.c, there is a possible arbitrary code execution due to a race condition. This could lead to local escalation of privilege in the kernel with no additional e...
Google Android
Inappropriate implementation in Canvas
Google Chrome<127.0.6533.72
Microsoft Edge (Chromium-based)
Microsoft Edge<127.0.2651.74
Out of bounds memory access in ANGLE
Google Chrome<127.0.6533.72
Microsoft Edge (Chromium-based)
Microsoft Edge<127.0.2651.74
<127.0.2651.74
Use after free in Downloads
Google Chrome<127.0.6533.72
Microsoft Edge<127.0.2651.74
Microsoft Edge (Chromium-based)
Use after free in Loader
Google Chrome<127.0.6533.72
Microsoft Edge<127.0.2651.74
Microsoft Edge (Chromium-based)
Google Chrome<126.0.6478.122
Google Android*
Google Chrome<126.0.6478.126
Google Chrome<126.0.6478.110
Google Android*
Google Chrome<126.0.6478.114
Type Confusion in V8
Google Chrome<126.0.6478.182
Microsoft Edge<126.0.2592.113
Microsoft Edge (Chromium-based)
Inappropriate implementation in HTML
Google Chrome<127.0.6533.72
Microsoft Edge (Chromium-based)
Microsoft Edge<127.0.2651.74
<127.0.2651.74
Use after free in Media Stream
Google Chrome<126.0.6478.182
Microsoft Edge (Chromium-based)
Microsoft Edge<126.0.2592.113
There is a possible escalation of privilege due to improperly used crypto. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not nee...
Google Android
there is a possible persistent Denial of Service due to test/debugging code left in a production build. This could lead to local denial of service of impaired use of the device with no additional exec...
Google Android
In wl_notify_rx_mgmt_frame of wl_cfg80211.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed...
Google Android
In handle_msg_shm_map_req of trusty/user/base/lib/spi/srv/tipc/tipc.c, there is a possible stack data disclosure due to uninitialized data. This could lead to local information disclosure with no addi...
Google Android
In handle_msg of main.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User ...
Google Android
In memcall_add of memlog.c, there is a possible buffer overflow due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User ...
Google Android
In AcvpOnMessage of avcp.cpp, there is a possible EOP due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is no...
Google Android

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203