Vulnerabilidades em google

7.001 resultados
Análise Vexday

Google registra presença mínima no panorama de risco com apenas 4 vulnerabilidades na base, nenhuma sob exploração ativa (KEV) e apenas 1 crítica identificada. A fraqueza dominante relaciona-se a validação inadequada de entrada (CWE-20), indicando risco controlado e sem pressão temporal dado que não há publicações nos últimos 90 dias.

CVE-2024-27219HIGHIn tmu_set_pi of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilEPSS 0.1%CVE-2023-21344—In Job Scheduler, there is a possible way to determine whether an app is installed, without query permissions, due to side channel informatiEPSS 0.1%CVE-2024-27208HIGHthere is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional eEPSS 0.1%CVE-2023-21397—In Setup Wizard, there is a possible way to save a WiFi network due to an insecure default value. This could lead to local escalation of priEPSS 0.1%CVE-2024-0025HIGHIn sendIntentSender of ActivityManagerService.java, there is a possible background activity launch due to a logic error. This could lead to EPSS 0.1%CVE-2026-0095HIGHIn l2c_fcr_clone_buf of l2c_fcr.cc, there is a possible way to trigger controlled heap corruption within the privileged Bluetooth process duEPSS 0.1%CVE-2026-56881HIGHIn enable_segment of remap.c, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation ofEPSS 0.1%CVE-2023-35669—In checkKeyIntentParceledCorrectly of AccountManagerService.java, there is a possible way to control other running activities due to unsafe EPSS 0.1%CVE-2025-13425LOWDenial of Service in OSV-SCALIBREPSS 0.1%CVE-2026-106399LOWOut of bounds read in Skia in Google Chrome prior to 155.0.8059.39 allowed a local attacker leveraging social engineering to potentially reaEPSS 0.1%CVE-2026-95358MEDIUMIncorrect authorization in Mobile in Google Chrome on on Android prior to 154.0.8037.57 allowed a local attacker to bypass system access resEPSS 0.1%CVE-2024-31325HIGHIn multiple locations, there is a possible way to reveal images across users data due to a logic error in the code. This could lead to localEPSS 0.1%CVE-2024-27204HIGHIn tmu_set_gov_active of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation oEPSS 0.1%CVE-2026-11072HIGHUse after free in WebView in Google Chrome on Android prior to 149.0.7827.53 allowed a local attacker to execute arbitrary code via a maliciEPSS 0.1%CVE-2024-0020MEDIUMIn onActivityResult of NotificationSoundPreference.java, there is a possible way to hear audio files belonging to a different user due to a EPSS 0.1%CVE-2023-21293—In PackageManagerNative, there is a possible way to determine whether an app is installed, without query permissions, due to side channel inEPSS 0.1%CVE-2026-10998MEDIUMOut of bounds read in Media in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to perform an out of boEPSS 0.1%CVE-2025-48638HIGHIn __pkvm_load_tracing of trace.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalaEPSS 0.1%CVE-2018-9389MEDIUMIn ip6_append_data of ip6_output.c, there is a possible way to achieve code execution due to a heap buffer overflow. This could lead to locaEPSS 0.1%CVE-2024-23698HIGHIn RGXFWChangeOSidPriority of rgxfwutils.c, there is a possible arbitrary code execution due to a missing bounds check. This could lead to lEPSS 0.1%