Vulnerabilities in google
7,003 resultsCVE-2025-48594HIGHIn onUidImportance of DisassociationProcessor.java, there is a possible way to retain companion application privileges after disassociation EPSS 0.1%CVE-2023-21306—In ContentService, there is a possible way to read installed sync content providers due to side channel information disclosure. This could lEPSS 0.1%CVE-2025-32333HIGHIn startSpaActivityForApp of SpaActivity.kt, there is a possible cross-user permission bypass due to a logic error in the code. This could lEPSS 0.1%CVE-2023-21368—In Audio, there is a possible out of bounds read due to missing bounds check. This could lead to local information disclosure with no additiEPSS 0.1%CVE-2025-48591MEDIUMIn multiple locations, there is a possible way to read files from another user due to a missing permission check. This could lead to local iEPSS 0.1%CVE-2025-32345HIGHIn updateState of ContentProtectionTogglePreferenceController.java, there is a possible way for a secondary user to disable the primary userEPSS 0.1%CVE-2023-21378—In Telecomm, there is a possible way to silence the ring for calls of secondary users due to a missing permission check. This could lead to EPSS 0.1%CVE-2025-22437HIGHIn setMediaButtonReceiver of multiple files, there is a possible way to launch arbitrary activities from background due to a logic error in EPSS 0.1%CVE-2023-21240—In Policy of Policy.java, there is a possible boot loop due to resource exhaustion. This could lead to local denial of service with no additEPSS 0.1%CVE-2023-40100HIGHIn discovery_thread of Dns64Configuration.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalEPSS 0.1%CVE-2025-0082MEDIUMIn multiple functions of StatusHint.java and TelecomServiceImpl.java, there is a possible way to reveal images across users due to a confuseEPSS 0.1%CVE-2018-9447MEDIUMIn onCreate of EmergencyCallbackModeExitDialog.java, there is a possible way to crash the emergency callback mode due to a missing null checEPSS 0.1%CVE-2023-40131HIGHIn GpuService of GpuService.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilegEPSS 0.1%CVE-2023-21352—In NFA, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additiEPSS 0.1%CVE-2025-48523HIGHIn onCreate of SelectAccountActivity.java, there is a possible way to add contacts without permission due to a logic error in the code. ThisEPSS 0.1%CVE-2025-36929MEDIUMIn AreFencesRegistered of gxp_fence_manager.cc, there is a possible information leak due to improper input validation. This could lead to loEPSS 0.1%CVE-2017-13323HIGHIn String16 of String16.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privEPSS 0.1%CVE-2023-21367—In Scudo, there is a possible way to exploit certain heap OOB read/write issues due to an insecure implementation/design. This could lead toEPSS 0.1%CVE-2023-21231—In getIntentForButton of ButtonManager.java, there is a possible way for an unprivileged application to start a non-exported or permission-pEPSS 0.1%CVE-2025-48606HIGHIn preparePackage of InstallPackageHelper.java, there is a possible way for an app to appear hidden upon installation without a mechanism toEPSS 0.1%