Chromecast Firmware
by Google
CVEs (6)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-48426 | Cri | 0.65 | 10.0 | 0.00 | Apr 5, 2024 | u-boot bug that allows for u-boot shell and interrupt over UART | ||
| CVE-2023-6181 | Cri | 0.64 | 9.8 | 0.00 | Dec 11, 2023 | An oversight in BCB handling of reboot reason that allows for persistent code execution | ||
| CVE-2023-48425 | Cri | 0.64 | 9.8 | 0.00 | Dec 11, 2023 | U-Boot vulnerability resulting in persistent Code Execution | ||
| CVE-2023-48424 | Cri | 0.64 | 9.8 | 0.00 | Dec 11, 2023 | U-Boot shell vulnerability resulting in Privilege escalation in a production device | ||
| CVE-2023-48417 | Cri | 0.64 | 9.8 | 0.00 | Dec 11, 2023 | Missing Permission checks resulting in unauthorized access and Manipulation in KeyChainActivity Application | ||
| CVE-2018-12716 | Med | 0.28 | 4.3 | 0.01 | Jun 25, 2018 | The API service on Google Home and Chromecast devices before mid-July 2018 does not prevent DNS rebinding attacks from reading the scan_results JSON data, which allows remote attackers to determine the physical location of most web browsers by leveraging the presence of one of… |
- risk 0.65cvss 10.0epss 0.00
u-boot bug that allows for u-boot shell and interrupt over UART
- risk 0.64cvss 9.8epss 0.00
An oversight in BCB handling of reboot reason that allows for persistent code execution
- risk 0.64cvss 9.8epss 0.00
U-Boot vulnerability resulting in persistent Code Execution
- risk 0.64cvss 9.8epss 0.00
U-Boot shell vulnerability resulting in Privilege escalation in a production device
- risk 0.64cvss 9.8epss 0.00
Missing Permission checks resulting in unauthorized access and Manipulation in KeyChainActivity Application
- risk 0.28cvss 4.3epss 0.01
The API service on Google Home and Chromecast devices before mid-July 2018 does not prevent DNS rebinding attacks from reading the scan_results JSON data, which allows remote attackers to determine the physical location of most web browsers by leveraging the presence of one of…