Google Security Advisories · March 2019 — Google Security Advisories
64 advisories 59 CVEs 12 EXPLOITED

GCVE / Google Cloud / Chrome / Android / Project Zero / OSS for 2019-03. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 12 are already weaponised in the wild.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

openSUSE-SU-2019:0298-1

Open SourceExploitedCISA KEV listedCRITICAL2019-03-23

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected SUSE:Package Hub 15 chromium
chromium affected openSUSE:Leap 15.0 chromium
chromium affected SUSE:Package Hub 12 SP2 chromium
Upstream advisory

DSA-4404-1

Open SourceExploitedCISA KEV listed2019-03-09

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:9 chromium
Upstream advisory

CVE-2019-5786

Project ZeroExploitedCISA KEV listed2019-03-06

Object lifetime issue in Blink in Google Chrome prior to 72.0.3626.121 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.

CVEs:CVE-2019-5786

Upstream advisory

CVE-2019-5786

GoogleExploitedCISA KEV listedMEDIUM2019-03-06

Use-After-Free in puppeteer

CVEs:CVE-2019-5786

Affected products

ProductStatusVendorPackageEcosystem
puppeteer affected npm puppeteer
Upstream advisory

CVE-2019-5786

GoogleExploitedCISA KEV listedMEDIUM2019-03-06

Object lifetime issue in Blink in Google Chrome prior to 72.0.3626.121 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.

CVEs:CVE-2019-5786

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2019-0808

GoogleExploitedCISA KEV listedCRITICAL2019-03-13

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0797.

CVEs:CVE-2019-0808

Affected products

ProductStatusVendorPackageEcosystem
windows_7 affected microsoft
windows_server_2008 affected microsoft
Upstream advisory

CVE-2019-0808

Project ZeroExploitedCISA KEV listed2019-03-13

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0797.

CVEs:CVE-2019-0808

Upstream advisory

CVE-2019-0703

Project ZeroExploitedCISA KEV listed2019-03-13

An information disclosure vulnerability exists in the way that the Windows SMB Server handles certain requests, aka 'Windows SMB Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0704, CVE-2019-0821.

CVEs:CVE-2019-0703

Upstream advisory

CVE-2019-0703

GoogleExploitedCISA KEV listedHIGH2019-03-13

An information disclosure vulnerability exists in the way that the Windows SMB Server handles certain requests, aka 'Windows SMB Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0704, CVE-2019-0821.

CVEs:CVE-2019-0703

Affected products

ProductStatusVendorPackageEcosystem
windows_10_1507 affected microsoft
windows_10_1607 affected microsoft
windows_10_1703 affected microsoft
windows_10_1709 affected microsoft
windows_10_1803 affected microsoft
windows_10_1809 affected microsoft
windows_7 affected microsoft
windows_8.1 affected microsoft
windows_rt_8.1 affected microsoft
windows_server_1709 affected microsoft
windows_server_1803 affected microsoft
windows_server_2008 affected microsoft
windows_server_2012 affected microsoft
windows_server_2016 affected microsoft
windows_server_2019 affected microsoft
Upstream advisory

CVE-2019-0797

GoogleExploitedCISA KEV listedCRITICAL2019-03-13

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0808.

CVEs:CVE-2019-0797

Affected products

ProductStatusVendorPackageEcosystem
windows_10_1507 affected microsoft
windows_10_1607 affected microsoft
windows_10_1703 affected microsoft
windows_10_1709 affected microsoft
windows_10_1803 affected microsoft
windows_10_1809 affected microsoft
windows_8.1 affected microsoft
windows_rt_8.1 affected microsoft
windows_server_1709 affected microsoft
windows_server_1803 affected microsoft
windows_server_2012 affected microsoft
windows_server_2016 affected microsoft
windows_server_2019 affected microsoft
Upstream advisory

CVE-2019-0797

Project ZeroExploitedCISA KEV listed2019-03-13

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0808.

CVEs:CVE-2019-0797

Upstream advisory

SUSE-SU-2019:0573-1

Open SourceExploitedVulnCheck KEV listedCRITICAL2019-03-08

Security update for containerd, docker, docker-runc, golang-github-docker-libnetwork, runc

Affected products

ProductStatusVendorPackageEcosystem
containerd affected SUSE:OpenStack Cloud 6-LTSS containerd
containerd affected SUSE:Linux Enterprise Module for Containers 12 containerd
docker affected SUSE:OpenStack Cloud 6-LTSS docker
docker affected SUSE:Linux Enterprise Module for Containers 12 docker
docker-runc affected SUSE:OpenStack Cloud 6-LTSS docker-runc
docker-runc affected SUSE:Linux Enterprise Module for Containers 12 docker-runc
golang-github-docker-libnetwork affected SUSE:Linux Enterprise Module for Containers 12 golang-github-docker-libnetwork
golang-github-docker-libnetwork affected SUSE:OpenStack Cloud 6-LTSS golang-github-docker-libnetwork
Upstream advisory

DSA-4421-1

Open SourceWeaponized exploit2019-03-31

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:9 chromium
Upstream advisory

openSUSE-SU-2019:1062-1

Open SourceWeaponized exploitCRITICAL2019-03-28

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected openSUSE:Leap 15.0 chromium
Upstream advisory

CVE-2019-5789

GoogleWeaponized exploitHIGH2019-03-13

An integer overflow that leads to a use-after-free in WebMIDI in Google Chrome on Windows prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page.

CVEs:CVE-2019-5789

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-5788

GoogleWeaponized exploitHIGH2019-03-13

An integer overflow that leads to a use-after-free in Blink Storage in Google Chrome on Linux prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page.

CVEs:CVE-2019-5788

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-5796

GoogleWeaponized exploitHIGH2019-03-13

Data race in extensions guest view in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2019-5796

Affected products

ProductStatusVendorPackageEcosystem
backports_sle affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-2025

Open SourceWeaponized exploitHIGH2019-03-05

In binder_thread_read of binder.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitatio...

CVEs:CVE-2019-2025

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2023

Open SourceWeaponized exploitHIGH2019-03-05

In ServiceManager::add function in the hardware service manager, there is an insecure permissions check based on the PID of the caller. This could allow an app to add or replace a HAL service with its own service, gaining code execution in a privileged...

CVEs:CVE-2019-2023

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2019

Open SourceActive exploitation (sightings)HIGH2019-03-05

In ce_t4t_data_cback of ce_t4t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product:...

CVEs:CVE-2019-2019

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2020

Open SourceActive exploitation (sightings)HIGH2019-03-05

In llcp_dlc_proc_rr_rnr_pdu of llcp_dlc.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction needed for exploitation.Pr...

CVEs:CVE-2019-2020

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-5797

GoogleCoalition ESS 30-63%CRITICAL2019-03-13

Double free in DOMStorage in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2019-5797

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2019-5790

GoogleCoalition ESS 30-63%CRITICAL2019-03-13

An integer overflow leading to an incorrect capacity of a buffer in JavaScript in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.

CVEs:CVE-2019-5790

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-5798

GoogleCoalition ESS < 30%MEDIUM2019-03-13

Lack of correct bounds checking in Skia in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

CVEs:CVE-2019-5798

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
debian_linux affected debian
enterprise_linux affected redhat
leap affected opensuse
package_hub affected suse
ubuntu_linux affected canonical
Upstream advisory

AZL-78966

Open SourceCoalition ESS < 30%HIGH2019-03-08

CVE-2019-9634 affecting package golang 1.25.7-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

CVE-2019-9634

GoogleCoalition ESS < 30%HIGH2019-03-08

Go through 1.12 on Windows misuses certain LoadLibrary functionality, leading to DLL injection.

CVEs:CVE-2019-9634

Affected products

ProductStatusVendorPackageEcosystem
go affected golang
Upstream advisory

CVE-2019-9741

GoogleCoalition ESS < 30%MEDIUM2019-03-13

An issue was discovered in net/http in Go 1.11.5. CRLF injection is possible if the attacker controls a url parameter, as demonstrated by the second argument to http.NewRequest with \r\n followed by an HTTP header or a Redis command.

CVEs:CVE-2019-9741

Affected products

ProductStatusVendorPackageEcosystem
debian_linux affected debian
developer_tools affected redhat
enterprise_linux affected redhat
fedora affected fedoraproject
go affected golang
Upstream advisory

CVE-2019-5787

GoogleCoalition ESS < 30%HIGH2019-03-13

Use-after-garbage-collection in Blink in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2019-5787

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-5791

GoogleCoalition ESS < 30%HIGH2019-03-13

Inappropriate optimization in V8 in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

CVEs:CVE-2019-5791

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-5799

GoogleCoalition ESS < 30%MEDIUM2019-03-13

Incorrect inheritance of a new document's policy in Content Security Policy in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to bypass content security policy via a crafted HTML page.

CVEs:CVE-2019-5799

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-1989

Open SourceCoalition ESS < 30%HIGH2019-03-05

In ih264d_fmt_conv_420sp_to_420p of ih264d_format_conv.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exp...

CVEs:CVE-2019-1989

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-1990

Open SourceCoalition ESS < 30%HIGH2019-03-05

In ihevcd_fmt_conv_420sp_to_420p of ihevcd_fmt_conv.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploi...

CVEs:CVE-2019-1990

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2003

Open SourceCoalition ESS < 30%HIGH2019-03-05

In addLinks of Linkify.java, there is a possible phishing vector due to an unusual root cause. This could lead to remote code execution or misdirection of clicks with no additional execution privileges needed. User interaction is needed for exploitatio...

CVEs:CVE-2019-2003

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-5792

GoogleCoalition ESS < 30%CRITICAL2019-03-13

Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out of bounds memory access via a crafted PDF file.

CVEs:CVE-2019-5792

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-5795

GoogleCoalition ESS < 30%CRITICAL2019-03-13

Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out of bounds memory access via a crafted PDF file.

CVEs:CVE-2019-5795

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-2018

Open SourceCoalition ESS < 30%HIGH2019-03-05

In resetPasswordInternal of DevicePolicyManagerService.java, there is a possible bypass of password reset protection due to an unusual root cause. Remote user interaction is needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9Android...

CVEs:CVE-2019-2018

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-5794

GoogleCoalition ESS < 30%MEDIUM2019-03-13

Incorrect handling of cancelled requests in Navigation in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform domain spoofing via a crafted HTML page.

CVEs:CVE-2019-5794

Affected products

ProductStatusVendorPackageEcosystem
backports_sle affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-5800

GoogleCoalition ESS < 30%CRITICAL2019-03-13

Insufficient policy enforcement in Blink in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to bypass content security policy via a crafted HTML page.

CVEs:CVE-2019-5800

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-5803

GoogleCoalition ESS < 30%CRITICAL2019-03-13

Insufficient policy enforcement in Content Security Policy in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to bypass content security policy via a crafted HTML page.

CVEs:CVE-2019-5803

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-5801

GoogleCoalition ESS < 30%MEDIUM2019-03-13

Incorrect eliding of URLs in Omnibox in Google Chrome on iOS prior to 73.0.3683.75 allowed a remote attacker to perform domain spoofing via a crafted HTML page.

CVEs:CVE-2019-5801

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-5793

GoogleCoalition ESS < 30%CRITICAL2019-03-13

Insufficient policy enforcement in extensions in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to initiate the extensions installation user interface via a crafted HTML page.

CVEs:CVE-2019-5793

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-2007

Open SourceCoalition ESS < 30%HIGH2019-03-05

In getReadIndex and getWriteIndex of FifoControllerBase.cpp, there is a possible out-of-bounds write due to an integer overflow. This could lead to local escalation of privilege in the audio server with no additional execution privileges needed. User i...

CVEs:CVE-2019-2007

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-5802

GoogleCoalition ESS < 30%MEDIUM2019-03-13

Incorrect handling of download origins in Navigation in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform domain spoofing via a crafted HTML page.

CVEs:CVE-2019-5802

Affected products

ProductStatusVendorPackageEcosystem
backports_sle affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-2012

Open SourceCoalition ESS < 30%HIGH2019-03-05

In rw_t3t_act_handle_fmt_rsp of rw_t3t.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitatio...

CVEs:CVE-2019-2012

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2013

Open SourceCoalition ESS < 30%HIGH2019-03-05

In rw_t3t_act_handle_sro_rsp of rw_t3t.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitatio...

CVEs:CVE-2019-2013

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2014

Open SourceCoalition ESS < 30%HIGH2019-03-05

In rw_t3t_handle_get_sc_poll_rsp of rw_t3t.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploit...

CVEs:CVE-2019-2014

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2015

Open SourceCoalition ESS < 30%HIGH2019-03-05

In rw_t3t_act_handle_check_rsp of rw_t3t.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitat...

CVEs:CVE-2019-2015

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2016

Open SourceCoalition ESS < 30%HIGH2019-03-05

In NFA_SendRawFrame of nfa_dm_api.cc, there is a possible out-of-bound write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation....

CVEs:CVE-2019-2016

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2022

Open SourceCoalition ESS < 30%HIGH2019-03-05

In rw_t3t_act_handle_fmt_rsp and rw_t3t_act_handle_sro_rsp of rw_t3t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interacti...

CVEs:CVE-2019-2022

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9561

Open SourceCoalition ESS < 30%HIGH2019-03-05

In llcp_util_parse_connect of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation...

CVEs:CVE-2018-9561

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9563

Open SourceCoalition ESS < 30%HIGH2019-03-05

In llcp_util_parse_cc of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Prod...

CVEs:CVE-2018-9563

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9564

Open SourceCoalition ESS < 30%HIGH2019-03-05

In llcp_util_parse_link_params of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploita...

CVEs:CVE-2018-9564

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2021

Open SourceCoalition ESS < 30%HIGH2019-03-05

In rw_t3t_act_handle_ndef_detect_rsp of rw_t3t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for explo...

CVEs:CVE-2019-2021

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2006

Open SourceCoalition ESS < 30%HIGH2019-03-05

In serviceDied of HalDeathHandlerHidl.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege in the audio server with no additional execution privileges needed. User interaction is not neede...

CVEs:CVE-2019-2006

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2005

Open SourceCoalition ESS < 30%HIGH2019-03-05

In onPermissionGrantResult of GrantPermissionsActivity.java, there is a possible incorrectly granted permission due to a missing permission check. This could lead to local escalation of privilege on a locked device with no additional execution privileg...

CVEs:CVE-2019-2005

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2009

Open SourceCoalition ESS < 30%HIGH2019-03-05

In l2c_lcc_proc_pdu of l2c_fcr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploit...

CVEs:CVE-2019-2009

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2008

Open SourceCoalition ESS < 30%HIGH2019-03-05

In createEffect of AudioFlinger.cpp, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: An...

CVEs:CVE-2019-2008

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-5804

GoogleCoalition ESS < 30%MEDIUM2019-03-13

Incorrect command line processing in Chrome in Google Chrome prior to 73.0.3683.75 allowed a local attacker to perform domain spoofing via a crafted domain name.

CVEs:CVE-2019-5804

Affected products

ProductStatusVendorPackageEcosystem
backports affected opensuse
chrome affected google
leap affected opensuse
Upstream advisory

CVE-2019-2024

Open SourceCoalition ESS < 30%HIGH2019-03-05

In em28xx_unregister_dvb of em28xx-dvb.c, there is a possible use after free issue. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersion...

CVEs:CVE-2019-2024

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2017

Open SourceCoalition ESS < 30%HIGH2019-03-05

In rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exp...

CVEs:CVE-2019-2017

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-1985

Open SourceCoalition ESS < 30%HIGH2019-03-05

In findAvailSpellCheckerLocked of TextServicesManagerService.java, there is a possible way to bypass the warning dialog when selecting an untrusted spell checker due to a permissions bypass. This could lead to local escalation of privilege with no addi...

CVEs:CVE-2019-1985

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2011

Open SourceCoalition ESS < 30%HIGH2019-03-05

In readNullableNativeHandleNoDup of Parcel.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for e...

CVEs:CVE-2019-2011

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2010

Open SourceCoalition ESS < 30%HIGH2019-03-05

In phNxpNciHal_process_ext_rsp of phNxpNciHal_ext.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed ...

CVEs:CVE-2019-2010

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2019-2004

Open SourceCoalition ESS < 30%MEDIUM2019-03-05

In publishKeyEvent, publishMotionEvent and sendUnchainedFinishedSignal of InputTransport.cpp, there are uninitialized data leading to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploi...

CVEs:CVE-2019-2004

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.