Vulnerabilities (CVE)

Filtered by vendor Google Subscribe
Total 16520 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-16280 3 Google, Imaginationtech, Linux 3 Android, Ddk, Linux Kernel 2026-08-12 N/A 9.8 CRITICAL
An integer overflow when calculating physical offsets for sparse PMRs may result in 32-bit truncation of address computations for PMRs larger than 4 GB. This can lead to incorrect GPU MMU mappings and may allow a non-privileged user to trigger access to unintended physical memory, resulting in memory corruption or information disclosure.
CVE-2026-34193 3 Google, Imaginationtech, Linux 3 Android, Ddk, Linux Kernel 2026-08-12 N/A 4.3 MEDIUM
Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a write of data outside the intended GPU memory. A logic error in the address translation allowed a compromised Host (Kernel) to perform arbitrary writes to firmware memory.
CVE-2026-34196 3 Google, Imaginationtech, Linux 3 Android, Ddk, Linux Kernel 2026-08-12 N/A 7.8 HIGH
Software installed and run as a non-privileged user may conduct improper GPU system calls to cause an integer overflow and map two GPU virtual addresses to the same physical address. One of these virutal mappings can be freed along with the physical page, allowing for a read/write UAF via the second mapping The second virtual mapping references a physical address that has been freed after the first virtual mapping has been freed. This allows the physical memory to be allocated (for example) by another process and read/written to.
CVE-2026-41154 3 Google, Imaginationtech, Linux 3 Android, Ddk, Linux Kernel 2026-08-12 N/A 7.8 HIGH
Software installed and run as a non-privileged user may cause OOB kernel memory reads or writes through GPU API calls. When indexing pages larger than 4kB in the page freeing logic of the sparse memory implementation, incorrect buffer indexing leads to OOB access.
CVE-2026-45196 3 Google, Imaginationtech, Linux 3 Android, Ddk, Linux Kernel 2026-08-12 N/A 7.8 HIGH
Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a GPU register access which can lead to privilege escalation.
CVE-2026-45203 3 Google, Imaginationtech, Linux 3 Android, Ddk, Linux Kernel 2026-08-12 N/A 7.8 HIGH
Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memory write outside the permitted range of memory for the host kernel. A TOCTOU bug existed where a malicious driver could modify values in memory after firmware validation but before use.
CVE-2026-7639 3 Google, Imaginationtech, Linux 3 Android, Ddk, Linux Kernel 2026-08-12 N/A 7.8 HIGH
Software installed and run as a non-privileged user may conduct a sequence of improper GPU system calls causing use after free, which helps in facilitating unprivileged memory access from a shader code. Triggering failure path in the MMU mapping logic by a malicious code could lead to incomplete cleanup of an internal driver state, allowing for future unauthorized access to the contents of the physical memory.
CVE-2026-21733 3 Google, Imaginationtech, Linux 3 Android, Ddk, Linux Kernel 2026-08-12 N/A 7.3 HIGH
Software installed and run as a non-privileged user may conduct improper GPU system calls to gain write permission to read-only wrapped user-mode memory and files. This is caused by improper handling of GPU memory reservation protections.
CVE-2026-19142 1 Google 1 Chrome 2026-08-11 N/A 7.5 HIGH
Use after free in Views in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2026-19144 1 Google 1 Chrome 2026-08-11 N/A 8.8 HIGH
Use after free in HTML in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2026-19147 2 Google, Linux 2 Chrome, Linux Kernel 2026-08-11 N/A 8.3 HIGH
Use after free in Aura in Google Chrome on Linux prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2021-38641 2 Google, Microsoft 2 Android, Edge 2026-08-10 4.0 MEDIUM 6.1 MEDIUM
Microsoft Edge for Android Spoofing Vulnerability
CVE-2021-26439 2 Google, Microsoft 2 Android, Edge 2026-08-10 4.3 MEDIUM 4.6 MEDIUM
Microsoft Edge for Android Information Disclosure Vulnerability
CVE-2026-17913 2 Apple, Google 2 Iphone Os, Chrome 2026-08-10 N/A 5.4 MEDIUM
Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-17749 1 Google 1 Chrome 2026-08-10 N/A 9.6 CRITICAL
Insufficient validation of untrusted input in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension. (Chromium security severity: Medium)
CVE-2026-17748 1 Google 1 Chrome 2026-08-10 N/A 6.5 MEDIUM
Inappropriate implementation in Extensions in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17743 1 Google 1 Chrome 2026-08-10 N/A 6.5 MEDIUM
Insufficient policy enforcement in ControlledFrame in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17738 1 Google 1 Chrome 2026-08-10 N/A 9.6 CRITICAL
Insufficient validation of untrusted input in Payments in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17735 1 Google 1 Chrome 2026-08-10 N/A 8.7 HIGH
Insufficient validation of untrusted input in BFCache in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17734 1 Google 1 Chrome 2026-08-10 N/A 5.4 MEDIUM
Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: Medium)