Vulnerability index

Browse CVEs

682 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper LockingCWE-667 × clear
Virtual Gpu MEDIUM 5.5
CVE-2021-1123

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it can deadlock, which may lead to denial of service.

Fix: 8.9 / 11.6+
Fix from $1,600 2021-10-29
Android MEDIUM 6.7
CVE-2021-0625

In ccu, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege with System execution privile…

Mitigation only
Fix from $1,600 2021-10-25
Ios Xe HIGH 8.6
CVE-2021-1622

A vulnerability in the Common Open Policy Service (COPS) of Cisco IOS XE Software for Cisco cBR-8 Converged Broadband Routers could allow an unauthen…

Fix: 16.12.1z1+
Fix from $1,950 2021-09-23
Ac6901 Firmware MEDIUM 5.7
CVE-2021-31611

The Bluetooth Classic implementation on Zhuhai Jieli AC690X and AC692X devices does not properly handle an out-of-order LMP Setup procedure that is f…

Mitigation only
Fix from $1,600 2021-09-07
Ats2819p Firmware MEDIUM 6.5
CVE-2021-31785

The Bluetooth Classic implementation on Actions ATS2815 and ATS2819 chipsets does not properly handle the reception of multiple LMP_host_connection_r…

Mitigation only
Fix from $1,600 2021-09-07
Ats2819p Firmware MEDIUM 6.5
CVE-2021-31786

The Bluetooth Classic Audio implementation on Actions ATS2815 and ATS2819 devices does not properly handle a connection attempt from a host with the …

Mitigation only
Fix from $1,600 2021-09-07
Linux Kernel MEDIUM 5.5
CVE-2021-38203

btrfs in the Linux kernel before 5.13.4 allows attackers to cause a denial of service (deadlock) via processes that trigger allocation of new system …

Fix: 5.13.4+
Fix from $1,600 2021-08-08
Android HIGH 7.8
CVE-2021-0529

In memory management driver, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege with no …

Mitigation only
Fix from $1,950 2021-06-21
Puma HIGH 7.5
CVE-2021-29509

Puma is a concurrent HTTP 1.1 server for Ruby/Rack applications. The fix for CVE-2019-16770 was incomplete. The original fix only protected existing …

Fix: 4.3.8 / 5.3.1+
Fix from $1,950 2021-05-11
Aqt1000 Firmware HIGH 7.8
CVE-2020-11284

Locked memory can be unlocked and modified by non secure boot loader through improper system call sequence making the memory region untrusted source …

Mitigation only
Fix from $1,950 2021-05-07
Parallels Desktop HIGH 7.5
CVE-2021-31422

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.1-49141. An attacker must first …

Mitigation only
Fix from $1,950 2021-04-29
Parallels Desktop MEDIUM 5.6
CVE-2021-31427

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309. An attacker …

Mitigation only
Fix from $1,600 2021-04-29
Ipados HIGH 7.0
CVE-2021-1782 KEV

A race condition was addressed with improved locking. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2…

Fix: 7.3 / 10.14.6+
Fix from $1,950 2021-04-02
Openshift Container Platform MEDIUM 6.5
CVE-2021-20291

A deadlock vulnerability was found in 'github.com/containers/storage' in versions before 1.28.1. When a container image is processed, each layer is u…

Fix: 1.28.1+
Fix from $1,600 2021-04-01
Linux Kernel MEDIUM 5.5
CVE-2021-28951

An issue was discovered in fs/io_uring.c in the Linux kernel through 5.11.8. It allows attackers to cause a denial of service (deadlock) because exit…

Fix: after 5.11.8
Fix from $1,600 2021-03-20
Linux Kernel HIGH 7.0
CVE-2021-26708

A local privilege escalation was discovered in the Linux kernel before 5.10.13. Multiple race conditions in the AF_VSOCK implementation are caused by…

Fix: 5.10.13 / 15.3+
Fix from $1,950 2021-02-05
Va Ts MEDIUM 5.9
CVE-2020-36220

An issue was discovered in the va-ts crate before 0.0.4 for Rust. Because Demuxer<T> omits a required T: Send bound, a data race and memory corruptio…

Fix: 0.0.4+
Fix from $1,600 2021-01-26
Debian Linux CRITICAL 9.8
CVE-2020-12658

gssproxy (aka gss-proxy) before 0.8.3 does not unlock cond_mutex before pthread exit in gp_worker_main() in gp_workers.c. NOTE: An upstream comment s…

Fix: 0.8.3+
Fix from $2,300 2020-12-31
Android MEDIUM 6.7
CVE-2020-27066

In xfrm6_tunnel_free_spi of net/ipv6/xfrm6_tunnel.c, there is a possible use after free due to improper locking. This could lead to local escalation …

Patch available
Fix from $1,600 2020-12-15
Android MEDIUM 5.5
CVE-2020-27035

In priorLinearAllocation of C2AllocatorIon.cpp, there is a possible use-after-free due to improper locking. This could lead to local information disc…

Mitigation only
Fix from $1,600 2020-12-15
Linux Kernel HIGH 7.8
CVE-2020-29661

A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack agai…

Fix: 4.4.248 / 4.9.248+
Fix from $1,950 2020-12-09
Agatti Firmware HIGH 7.5
CVE-2020-3704

u'While processing invalid connection request PDU which is nonstandard (interval or timeout is 0) from central device may lead peripheral system ente…

Mitigation only
Fix from $1,950 2020-11-02
Ipados HIGH 7.8
CVE-2019-8829

A memory corruption vulnerability was addressed with improved locking. This issue is fixed in macOS Catalina 10.15.1, Security Update 2019-001, and S…

Fix: 6.1 / 10.15.1+
Fix from $1,950 2020-10-27
Ipados MEDIUM 6.8
CVE-2020-9946

This issue was addressed with improved checks. This issue is fixed in iOS 14.0 and iPadOS 14.0, watchOS 7.0. The screen lock may not engage after the…

Fix: 7.0 / 14.0+
Fix from $1,600 2020-10-16
Android HIGH 7.8
CVE-2020-0420

In setUpdatableDriverPath of GpuService.cpp, there is a possible memory corruption due to a missing permission check. This could lead to local escala…

Patch available
Fix from $1,950 2020-10-14
Debian Linux HIGH 7.8
CVE-2020-0423

In binder_release_work of binder.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in t…

Mitigation only
Fix from $1,950 2020-10-14
Firefox HIGH 8.8
CVE-2020-15674

Mozilla developers reported memory safety bugs present in Firefox 80. Some of these bugs showed evidence of memory corruption and we presume that wit…

Fix: 81.0+
Fix from $1,950 2020-10-01
Android HIGH 7.8
CVE-2020-0357

In SurfaceFlinger, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the graphics serve…

Mitigation only
Fix from $1,950 2020-09-17
Android HIGH 8.8
CVE-2020-0303

In the Media extractor, there is a possible use after free due to improper locking. This could lead to remote code execution in the media extractor w…

Mitigation only
Fix from $1,950 2020-09-17
Android HIGH 7.8
CVE-2020-0433

In blk_mq_queue_tag_busy_iter of blk-mq-tag.c, there is a possible use after free due to improper locking. This could lead to local escalation of pri…

Patch available
Fix from $1,950 2020-09-17