Vulnerabilities in google

7,003 results
CVE-2023-21276—In writeToParcel of CursorWindow.cpp, there is a possible information disclosure due to uninitialized data. This could lead to local informaEPSS 0.1%CVE-2024-43084MEDIUMIn visitUris of multiple files, there is a possible information disclosure due to a confused deputy. This could lead to local information diEPSS 0.1%CVE-2025-22413MEDIUMIn multiple functions of hyp-main.c, there is a possible privilege escalation due to a logic error in the code. This could lead to local infEPSS 0.1%CVE-2025-32328HIGHIn multiple functions of Session.java, there is a possible way to view images belonging to a different user of the device due to a logic errEPSS 0.1%CVE-2025-36928HIGHIn GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalaEPSS 0.1%CVE-2023-21279—In visitUris of RemoteViews.java, there is a possible cross-user media read due to a confused deputy. This could lead to local information dEPSS 0.1%CVE-2023-21292—In openContentUri of ActivityManagerService.java, there is a possible way for a third party app to obtain restricted files due to a confusedEPSS 0.1%CVE-2025-22432MEDIUMIn notifyTimeout of CallRedirectionProcessor.java, there is a possible persistent connection due to improper input validation. This could leEPSS 0.1%CVE-2024-31311MEDIUMIn increment_annotation_count of stats_event.c, there is a possible out of bounds write due to a missing bounds check. This could lead to loEPSS 0.1%CVE-2025-36932HIGHIn tracepoint_msg_handler of cpm/google/lib/tracepoint/tracepoint_ipc.c, there is a possible memory overwrite due to improper input validatiEPSS 0.1%CVE-2024-23707HIGHIn multiple locations, there is a possible permissions bypass due to improper input validation. This could lead to local escalation of priviEPSS 0.1%CVE-2025-36927HIGHIn GetTachyonCommand of tachyon_server_common.h, there is a possible out of bounds write due to a missing bounds check. This could lead to lEPSS 0.1%CVE-2025-0083MEDIUMIn multiple locations, there is a possible way to access content across user profiles due to URI double encoding. This could lead to local iEPSS 0.1%CVE-2025-48620HIGHIn onSomePackagesChanged of VoiceInteractionManagerService.java, there is a possible way for a third party application's component name to pEPSS 0.1%CVE-2026-0032HIGHIn multiple functions of mem_protect.c, there is a possible out-of-bounds write due to a logic error in the code. This could lead to local eEPSS 0.1%CVE-2023-40137—In multiple functions of DialogFillUi.java, there is a possible way to view another user's images due to a confused deputy. This could lead EPSS 0.1%CVE-2024-47031HIGHAndroid before 2024-10-05 on Google Pixel devices allows privilege escalation in the ABL component, A-329163861.EPSS 0.1%CVE-2024-40661HIGHIn mayAdminGrantPermission of AdminRestrictedPermissionsUtils.java, there is a possible way to access the microphone due to a missing permisEPSS 0.1%CVE-2026-96812HIGHHost Root Sandbox Escape in gVisor via Character Device Passthrough and CUSEEPSS 0.1%CVE-2026-0024MEDIUMIn isRedactionNeededForOpenViaContentResolver of MediaProvider.java, there is a possible way to reveal the location of media due to a missinEPSS 0.1%