Vulnerabilidades em Google
7.001 resultadosAnálise Vexday
Com 4.763 CVEs catalogadas e 77 confirmadas em exploração ativa pelo CISA KEV, a taxa de exploração dos produtos Google é 3,6 vezes superior à média geral do catálogo, sinalizando risco operacional elevado para organizações que dependem desse ecossistema. O volume de 1.225 CVEs surgidas nos últimos 90 dias indica cadência intensa de descobertas, exigindo ciclos de patching ágeis. O tipo de falha mais recorrente é CWE-416 (use-after-free), classe de vulnerabilidade que frequentemente viabiliza execução de código arbitrário e escalada de privilégios. Destaque especial para CVE-2023-4863, com EPSS de 0,9974 — valor próximo ao máximo possível —, indicando probabilidade altíssima de exploração ativa e merecendo tratamento prioritário imediato.
CVE-2023-21294—In Slice, there is a possible disclosure of installed packages due to a missing permission check. This could lead to local information disclEPSS 0.1%CVE-2023-21298HIGHIn Slice, there is a possible disclosure of installed applications due to side channel information disclosure. This could lead to local escaEPSS 0.1%CVE-2023-21324HIGHIn Package Installer, there is a possible way to determine whether an app is installed, without query permissions, due to side channel inforEPSS 0.1%CVE-2025-48646HIGHIn executeRequest of ActivityStarter.java, there is a possible launch anywhere due to a confused deputy. This could lead to local escalationEPSS 0.1%CVE-2025-48540HIGHIn processTransactInternal of RpcState.cpp, there is a possible local out of memory write due to a logic error in the code. This could lead EPSS 0.1%CVE-2026-56892MEDIUMIn ReadDataElement of common.c, there is a possible information disclosure due to an incorrect bounds check. This could lead to local informEPSS 0.1%CVE-2023-21229—In registerServiceLocked of ManagedServices.java, there is a possible bypass of background activity launch restrictions due to an unsafe PenEPSS 0.1%CVE-2026-58731MEDIUMIn multiple functions of physmem_extmem_linux.c, there is a possible out-of-bounds read due to uninitialized data. This could lead to local EPSS 0.1%CVE-2023-40114HIGHIn multiple functions of MtpFfsHandle.cpp , there is a possible out of bounds write due to a use after free. This could lead to local escalaEPSS 0.1%CVE-2025-48624HIGHIn multiple functions of arm-smmu-v3.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local eEPSS 0.1%CVE-2018-9402HIGHIn multiple functions of gl_proc.c, there is a buffer overwrite due to a missing bounds check. This could lead to escalation of privileges iEPSS 0.1%CVE-2023-21370—In the Security Element API, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privEPSS 0.1%CVE-2024-0026MEDIUMIn multiple functions of SnoozeHelper.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to EPSS 0.1%CVE-2026-49918HIGHIn multiple functions, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege EPSS 0.1%CVE-2026-49927HIGHIn multiple locations, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege EPSS 0.1%CVE-2026-45531HIGHIn read_boot_region of fsck.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local escalation of EPSS 0.1%CVE-2026-58744HIGHIn multiple locations, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of EPSS 0.1%CVE-2026-58820HIGHIn multiple locations, there is a possible memory safety issue due to integer overflow. This could lead to local escalation of privilege witEPSS 0.1%CVE-2025-48651MEDIUMIn importWrappedKey of KMKeymasterApplet.java, there is a possible way access keys that should be restricted due to improper input validatioEPSS 0.1%CVE-2026-28580HIGHIn multiple functions, there is a possible desync in persistence due to an incorrect bounds check. This could lead to local escalation of prEPSS 0.1%