Vulnerabilities in Google
7,001 resultsCVE-2023-48402—In ppcfw_enable of ppcfw.c, there is a possible EoP due to a missing permission check. This could lead to local escalation of privilege withEPSS 0.1%CVE-2023-21277—In visitUris of RemoteViews.java, there is a possible way to reveal images across users due to a missing permission check. This could lead tEPSS 0.1%CVE-2025-36927HIGHIn GetTachyonCommand of tachyon_server_common.h, there is a possible out of bounds write due to a missing bounds check. This could lead to lEPSS 0.1%CVE-2023-21374—In System UI, there is a possible factory reset protection bypass due to a logic error in the code. This could lead to local escalation of pEPSS 0.1%CVE-2023-21292—In openContentUri of ActivityManagerService.java, there is a possible way for a third party app to obtain restricted files due to a confusedEPSS 0.1%CVE-2025-0083MEDIUMIn multiple locations, there is a possible way to access content across user profiles due to URI double encoding. This could lead to local iEPSS 0.1%CVE-2026-56922MEDIUMIn CPM, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with System executiEPSS 0.1%CVE-2025-48583HIGHIn multiple functions of BaseBundle.java, there is a possible way to execute arbitrary code due to a logic error in the code. This could leaEPSS 0.1%CVE-2025-36930HIGHIn GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatioEPSS 0.1%CVE-2024-47031HIGHAndroid before 2024-10-05 on Google Pixel devices allows privilege escalation in the ABL component, A-329163861.EPSS 0.1%CVE-2025-36928HIGHIn GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalaEPSS 0.1%CVE-2024-40661HIGHIn mayAdminGrantPermission of AdminRestrictedPermissionsUtils.java, there is a possible way to access the microphone due to a missing permisEPSS 0.1%CVE-2025-22413MEDIUMIn multiple functions of hyp-main.c, there is a possible privilege escalation due to a logic error in the code. This could lead to local infEPSS 0.1%CVE-2026-96812HIGHHost Root Sandbox Escape in gVisor via Character Device Passthrough and CUSEEPSS 0.1%CVE-2026-0024MEDIUMIn isRedactionNeededForOpenViaContentResolver of MediaProvider.java, there is a possible way to reveal the location of media due to a missinEPSS 0.1%CVE-2025-48620HIGHIn onSomePackagesChanged of VoiceInteractionManagerService.java, there is a possible way for a third party application's component name to pEPSS 0.1%CVE-2026-57042MEDIUMIn multiple functions of DreamPickerReceiver.kt, there is a possible permission bypass due to a confused deputy. This could lead to local esEPSS 0.1%CVE-2018-9401HIGHIn many locations, there is a possible way to access kernel memory in user space due to an incorrect bounds check. This could lead to local EPSS 0.1%CVE-2023-21276—In writeToParcel of CursorWindow.cpp, there is a possible information disclosure due to uninitialized data. This could lead to local informaEPSS 0.1%CVE-2026-56992MEDIUMIn multiple files, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with SysEPSS 0.1%