Vulnerability index

Browse CVEs

827 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
Windows 10 1809 MEDIUM 6.5
CVE-2023-24944

Windows Bluetooth Driver Information Disclosure Vulnerability

Fix: 10.0.17763.4377 / 10.0.19042.2965+
Fix from $1,600 2023-05-09
Riot CRITICAL 9.8
CVE-2023-24823

RIOT-OS, an operating system that supports Internet of Things devices, contains a network stack with the ability to process 6LoWPAN frames. Prior to …

Fix: 2022.10+
Fix from $2,300 2023-04-24
Chrome CRITICAL 10.0
CVE-2021-33970

Buffer Overflow vulnerability in Qihoo 360 Chrome v13.0.2170.0 allows attacker to escalate priveleges.

No fix yet
Fix from $2,300 2023-04-19
Chrome HIGH 8.8
CVE-2023-2033 KEVEPSS 41%

Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 7.1.5 / 112.0.5615.121+
Fix from $1,950 2023-04-14
Windows 10 1507 HIGH 8.8
CVE-2023-28243

Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability

Fix: 10.0.10240.19869 / 10.0.14393.5850+
Fix from $1,950 2023-04-11
Windows 10 1507 HIGH 8.8
CVE-2023-24927

Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability

Fix: 10.0.10240.19869 / 10.0.14393.5850+
Fix from $1,950 2023-04-11
Windows 10 1507 HIGH 8.8
CVE-2023-24929

Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability

Fix: 10.0.10240.19869 / 10.0.14393.5850+
Fix from $1,950 2023-04-11
Windows 10 1507 HIGH 8.8
CVE-2023-24885

Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability

Fix: 10.0.10240.19869 / 10.0.14393.5850+
Fix from $1,950 2023-04-11
Fluent Bit HIGH 7.8
CVE-2021-46878

An issue was discovered in Treasure Data Fluent Bit 1.7.1, erroneous parsing in flb_pack_msgpack_to_json_format leads to type confusion bug that inte…

Patch available
Fix from $1,950 2023-04-11
Cxtpc Firmware CRITICAL 9.8
CVE-2023-26063

Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type.

No fix yet
Fix from $2,300 2023-04-10
Pdf Editor HIGH 7.8
CVE-2022-37377

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Editor 11.1.1.53537;. User interaction is…

Fix: 10.1.9 / 11.2.3+
Fix from $1,950 2023-03-29
Linux Kernel MEDIUM 5.5
CVE-2023-1076

A flaw was found in the Linux Kernel. The tun/tap sockets have their socket UID hardcoded to 0 due to a type confusion in their initialization functi…

Patch available
Fix from $1,600 2023-03-27
Linux Kernel HIGH 7.0
CVE-2023-1077

In the Linux kernel, pick_next_rt_entity() may return a type confused entry, not detected by the BUG_ON condition, as the confused entry will not be …

Fix: 4.19.293 / 5.4.235+
Fix from $1,950 2023-03-27
Linux Kernel HIGH 7.8
CVE-2023-1078

A flaw was found in the Linux Kernel in RDS (Reliable Datagram Sockets) protocol. The rds_rm_zerocopy_callback() uses list_entry() on the head of a l…

Fix: 4.19.273 / 5.4.232+
Fix from $1,950 2023-03-27
Android MEDIUM 6.7
CVE-2023-21056

In lwis_slc_buffer_free of lwis_device_slc.c, there is a possible memory corruption due to type confusion. This could lead to local escalation of pri…

Mitigation only
Fix from $1,600 2023-03-24
Openharmony MEDIUM 5.5
CVE-2023-0083

The ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions, OpenHarmony-v3.0.7 and prior versions has an Improper Input Validation…

Fix: after 3.1.5
Fix from $1,600 2023-03-10
Chrome MEDIUM 6.3
CVE-2023-1235

Type confusion in DevTools in Google Chrome prior to 111.0.5563.64 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 111.0.5563.64+
Fix from $1,600 2023-03-07
Chrome HIGH 8.8
CVE-2023-1214

Type confusion in V8 in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 111.0.5563.64+
Fix from $1,950 2023-03-07
Chrome HIGH 8.8
CVE-2023-1215

Type confusion in CSS in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 111.0.5563.64+
Fix from $1,950 2023-03-07
Safari HIGH 8.8
CVE-2023-23529 KEVEPSS 10%

A type confusion issue was addressed with improved checks. This issue is fixed in iOS 15.7.4 and iPadOS 15.7.4, iOS 16.3.1 and iPadOS 16.3.1, macOS V…

Fix: 13.2.1 / 15.7.4+
Fix from $1,950 2023-02-27
Sequelize HIGH 8.8
CVE-2023-22579

Due to improper parameter filtering in the sequalize js library, can a attacker peform injection.

Fix: 6.28.1+
Fix from $1,950 2023-02-16
OpenSSL HIGH 7.4
CVE-2023-0286EPSS 60%

There is a type confusion vulnerability relating to X.400 address processing inside an X.509 GeneralName. X.400 addresses were parsed as an ASN1_STRI…

Fix: 1.0.2zg / 1.1.1t+
Fix from $1,950 2023-02-08
Chrome HIGH 8.8
CVE-2023-0696

Type confusion in V8 in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 110.0.5481.77+
Fix from $1,950 2023-02-07
Chrome HIGH 8.8
CVE-2023-0702

Type confusion in Data Transfer in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to engage in specific UI inter…

Fix: 110.0.5481.77+
Fix from $1,950 2023-02-07
Chrome HIGH 8.8
CVE-2023-0703

Type confusion in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to engage in specific UI interactio…

Fix: 110.0.5481.77+
Fix from $1,950 2023-02-07
Android MEDIUM 6.7
CVE-2023-20616

In ion, there is a possible out of bounds read due to type confusion. This could lead to local escalation of privilege with System execution privileg…

Mitigation only
Fix from $1,600 2023-02-06
Chrome HIGH 8.8
CVE-2023-0473

Type Confusion in ServiceWorker API in Google Chrome prior to 109.0.5414.119 allowed a remote attacker to potentially exploit heap corruption via a c…

Fix: 109.0.5414.119+
Fix from $1,950 2023-01-30
GitLab HIGH 7.5
CVE-2022-4205

In Gitlab EE/CE before 15.6.1, 15.5.5 and 15.4.6 using a branch with a hexadecimal name could override an existing hash.

Fix: 12.9.8 / 15.5.5+
Fix from $1,950 2023-01-27
Android HIGH 7.8
CVE-2022-20461

In pinReplyNative of com_android_bluetooth_btservice_AdapterService.cpp, there is a possible out of bounds read due to type confusion. This could lea…

Mitigation only
Fix from $1,950 2023-01-26
Linux Kernel MEDIUM 5.5
CVE-2023-23455

atm_tc_enqueue in net/sched/sch_atm.c in the Linux kernel through 6.1.4 allows attackers to cause a denial of service because of type confusion (non-…

Fix: after 6.1.4
Fix from $1,600 2023-01-12