Google Security Advisories · August 2014 — Google Security Advisories
24 advisories 22 CVEs 6 EXPLOITED

GCVE / Google Cloud / Chrome / Android / Project Zero / OSS for 2014-08. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 6 are already weaponised in the wild.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

CVE-2014-2817

Project ZeroExploitedCISA KEV listed2014-08-12

Microsoft Internet Explorer 6 through 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability."

CVEs:CVE-2014-2817

Upstream advisory

CVE-2014-2817

GoogleExploitedCISA KEV listedCRITICAL2014-08-12

Microsoft Internet Explorer 6 through 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability."

CVEs:CVE-2014-2817

Affected products

ProductStatusVendorPackageEcosystem
internet_explorer affected microsoft
Upstream advisory

CVE-2014-0546

GoogleExploitedCISA KEV listedHIGH2014-08-12

Adobe Reader and Acrobat 10.x before 10.1.11 and 11.x before 11.0.08 on Windows allow attackers to bypass a sandbox protection mechanism, and consequently execute native code in a privileged context, via unspecified vectors.

CVEs:CVE-2014-0546

Affected products

ProductStatusVendorPackageEcosystem
acrobat affected adobe
acrobat_reader affected adobe
Upstream advisory

CVE-2014-0546

Project ZeroExploitedCISA KEV listed2014-08-12

Adobe Reader and Acrobat 10.x before 10.1.11 and 11.x before 11.0.08 on Windows allow attackers to bypass a sandbox protection mechanism, and consequently execute native code in a privileged context, via unspecified vectors.

CVEs:CVE-2014-0546

Upstream advisory

CVE-2013-2597

Open SourceExploitedCISA KEV listedCRITICAL2014-08-31

Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers ...

CVEs:CVE-2013-2597

Affected products

ProductStatusVendorPackageEcosystem
android-msm affected codeaurora
Upstream advisory

CVE-2013-2595

Open SourceExploitedVulnCheck KEV listedHIGH2014-08-31

The device-initialization functionality in the MSM camera driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, enables MSM_CAM_IOCTL_SET_MEM_MAP_INFO ioctl cal...

CVEs:CVE-2013-2595

Affected products

ProductStatusVendorPackageEcosystem
android-msm affected codeaurora
Upstream advisory

CVE-2014-3176

GoogleEPSS <= 49%HIGH2014-08-27

Google Chrome before 37.0.2062.94 does not properly handle the interaction of extensions, IPC, the sync API, and Google V8, which allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-3177.

CVEs:CVE-2014-3176

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2014-3177

GoogleEPSS <= 49%HIGH2014-08-27

Google Chrome before 37.0.2062.94 does not properly handle the interaction of extensions, IPC, the sync API, and Google V8, which allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-3176.

CVEs:CVE-2014-3177

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2014-3169

GoogleEPSS <= 49%CRITICAL2014-08-27

Use-after-free vulnerability in core/dom/ContainerNode.cpp in the DOM implementation in Blink, as used in Google Chrome before 37.0.2062.94, allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging sc...

CVEs:CVE-2014-3169

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
opensuse affected opensuse
Upstream advisory

CVE-2014-3172

GoogleEPSS <= 49%MEDIUM2014-08-27

The Debugger extension API in browser/extensions/api/debugger/debugger_api.cc in Google Chrome before 37.0.2062.94 does not validate a tab's URL before an attach operation, which allows remote attackers to bypass intended access limitations via an exte...

CVEs:CVE-2014-3172

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2014-3170

GoogleEPSS <= 49%MEDIUM2014-08-27

extensions/common/url_pattern.cc in Google Chrome before 37.0.2062.94 does not prevent use of a '\0' character in a host name, which allows remote attackers to spoof the extension permission dialog by relying on truncation after this character.

CVEs:CVE-2014-3170

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2014-3168

GoogleEPSS <= 49%CRITICAL2014-08-27

Use-after-free vulnerability in the SVG implementation in Blink, as used in Google Chrome before 37.0.2062.94, allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging improper caching associated with...

CVEs:CVE-2014-3168

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
opensuse affected opensuse
Upstream advisory

CVE-2014-3165

GoogleEPSS <= 49%CRITICAL2014-08-13

Use-after-free vulnerability in modules/websockets/WorkerThreadableWebSocketChannel.cpp in the Web Sockets implementation in Blink, as used in Google Chrome before 36.0.1985.143, allows remote attackers to cause a denial of service or possibly have uns...

CVEs:CVE-2014-3165

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2014-3171

GoogleEPSS <= 49%CRITICAL2014-08-27

Use-after-free vulnerability in the V8 bindings in Blink, as used in Google Chrome before 37.0.2062.94, allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging improper use of HashMap add operations ...

CVEs:CVE-2014-3171

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2014-3173

GoogleEPSS <= 49%HIGH2014-08-27

The WebGL implementation in Google Chrome before 37.0.2062.94 does not ensure that clear calls interact properly with the state of a draw buffer, which allows remote attackers to cause a denial of service (read of uninitialized memory) via a crafted CA...

CVEs:CVE-2014-3173

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2014-3174

GoogleEPSS <= 49%HIGH2014-08-27

modules/webaudio/BiquadDSPKernel.cpp in the Web Audio API implementation in Blink, as used in Google Chrome before 37.0.2062.94, does not properly consider concurrent threads during attempts to update biquad filter coefficients, which allows remote att...

CVEs:CVE-2014-3174

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2014-3166

GoogleEPSS <= 49%HIGH2014-08-13

The Public Key Pinning (PKP) implementation in Google Chrome before 36.0.1985.143 on Windows, OS X, and Linux, and before 36.0.1985.135 on Android, does not correctly consider the properties of SPDY connections, which allows remote attackers to obtain ...

CVEs:CVE-2014-3166

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2014-3175

GoogleEPSS <= 49%HIGH2014-08-27

Multiple unspecified vulnerabilities in Google Chrome before 37.0.2062.94 allow attackers to cause a denial of service or possibly have other impact via unknown vectors, related to the load_truetype_glyph function in truetype/ttgload.c in FreeType and ...

CVEs:CVE-2014-3175

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2013-6272

Open SourceEPSS <= 49%HIGH2014-08-28

The NotificationBroadcastReceiver class in the com.android.phone process in Google Android 4.1.1 through 4.4.2 allows attackers to bypass intended access restrictions and consequently make phone calls to arbitrary numbers, send mmi or ussd codes, or ha...

CVEs:CVE-2013-6272

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2014-3167

GoogleEPSS <= 49%HIGH2014-08-13

Multiple unspecified vulnerabilities in Google Chrome before 36.0.1985.143 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.

CVEs:CVE-2014-3167

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2013-2599

Open SourceEPSS <= 49%MEDIUM2014-08-31

A certain Qualcomm Innovation Center (QuIC) patch to the NativeDaemonConnector class in services/java/com/android/server/NativeDaemonConnector.java in Code Aurora Forum (CAF) releases of Android 4.1.x through 4.3.x enables debug logging, which allows a...

CVEs:CVE-2013-2599

Affected products

ProductStatusVendorPackageEcosystem
android-msm affected codeaurora
Upstream advisory

CVE-2014-0972

Open SourceEPSS <= 49%HIGH2014-08-01

The kgsl graphics driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not properly prevent write access to IOMMU context registers, which allows local users to sel...

CVEs:CVE-2014-0972

Affected products

ProductStatusVendorPackageEcosystem
android-msm affected codeaurora
Upstream advisory

CVE-2013-2598

Open SourceEPSS <= 49%MEDIUM2014-08-31

app/aboot/aboot.c in the Little Kernel (LK) bootloader, as distributed with Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to overwrite signature-verification code via crafted boot-image loa...

CVEs:CVE-2013-2598

Affected products

ProductStatusVendorPackageEcosystem
android-msm affected codeaurora
Upstream advisory

CVE-2013-6124

Open SourceEPSS <= 49%MEDIUM2014-08-31

The Qualcomm Innovation Center (QuIC) init scripts in Code Aurora Forum (CAF) releases of Android 4.1.x through 4.4.x allow local users to modify file metadata via a symlink attack on a file accessed by a (1) chown or (2) chmod command, as demonstrated...

CVEs:CVE-2013-6124

Affected products

ProductStatusVendorPackageEcosystem
android-msm affected codeaurora
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.