Google / ChromeOS
12 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-6044 | An Improper Access Control vulnerability in the Stylus Tools component of Google ChromeOS version 16238.64.0 on the garaged stylus devices allows a physical at… | MEDIUM | 6.1 | Jul 7, 2025 |
| CVE-2025-6179 | ChromeOS Extension Disablement and Developer Mode Bypass via ExtHang3r and ExtPrint3r Exploits | CRITICAL | 9.8 | Jun 16, 2025 |
| CVE-2025-6177 | ChromeOS MiniOS Root Code Execution Bypass While Dev Mode Blocked | HIGH | 7.4 | Jun 16, 2025 |
| CVE-2025-2509 | Out-of-Bounds Read in Virglrenderer in ChromeOS 16093.57.0 allows a malicious guest VM to achieve arbitrary address access within the crosvm sandboxed process,… | HIGH | 7.8 | May 6, 2025 |
| CVE-2025-1290 | A race condition Use-After-Free vulnerability exists in the virtio_transport_space_update function within the Kernel 5.4 on ChromeOS. Concurrent allocation and… | HIGH | 8.1 | Apr 17, 2025 |
| CVE-2025-1568 | Access Control Vulnerability in Gerrit chromiumos project configuration in Google ChromeOS 16063.87.0 allows an attacker with a registered Gerrit account to in… | HIGH | 8.8 | Apr 16, 2025 |
| CVE-2025-2073 | Out-of-Bounds Read in netfilter/ipset in Linux Kernel ChromeOS [6.1, 5.15, 5.10, 5.4, 4.19] allows a local attacker with low privileges to trigger an out-of-bo… | HIGH | 8.8 | Apr 16, 2025 |
| CVE-2025-1704 | ComponentInstaller Modification in ComponentInstaller in Google ChromeOS 15823.23.0 on Chromebooks allows enrolled users with local access to unenroll devices… | MEDIUM | 6.5 | Apr 16, 2025 |
| CVE-2025-1566 | DNS Leak in Native System VPN in Google ChromeOS Dev Channel on ChromeOS 16002.23.0 allows network observers to expose plaintext DNS queries via failure to pro… | HIGH | 7.5 | Apr 16, 2025 |
| CVE-2025-1122 | Out-Of-Bounds Write in TPM2 Reference Library in Google ChromeOS 15753.50.0 stable on Cr50 Boards allows an attacker with root access to gain persistence and B… | MEDIUM | 6.7 | Apr 15, 2025 |
| CVE-2025-1292 | TPM2 Out-Of-Bounds Write Leading to Potential Operating System Verification Bypass in ChromeOS | MEDIUM | 6.7 | Apr 15, 2025 |
| CVE-2025-1121 | Privilege escalation in Installer and Recovery image handling in Google ChromeOS version 15786.48.2 on device allows an attacker with physical access to gain r… | MEDIUM | 6.8 | Mar 6, 2025 |
Showing 1 to 12 of 12 CVEs