Vulnerability index

Browse CVEs

831 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
Chrome HIGH 8.8
CVE-2020-6512

Type Confusion in V8 in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 84.0.4147.89+
Fix from $1,950 2020-07-22
Android CRITICAL 9.8
CVE-2020-0224

In FastKeyAccumulator::GetKeysSlow of keys.cc, there is a possible out of bounds write due to type confusion. This could lead to remote code executio…

Patch available
Fix from $2,300 2020-07-17
Android HIGH 7.8
CVE-2020-0226

In createWithSurfaceParent of Client.cpp, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privi…

Patch available
Fix from $1,950 2020-07-17
Openj9 MEDIUM 5.3
CVE-2019-17639

In Eclipse OpenJ9 prior to version 0.21 on Power platforms, calling the System.arraycopy method with a length longer than the length of the source or…

Fix: after 0.20.0
Fix from $1,600 2020-07-15
Windows 10 HIGH 8.8
CVE-2020-1421EPSS 75%

A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file is processed.An attacker who …

Patch available
Fix from $1,950 2020-07-14
Mate 30 Firmware HIGH 7.8
CVE-2020-9261

HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a type confusion vulnerability. The system does not properly check and transfo…

Fix: 10.1.0.150+
Fix from $1,950 2020-07-06
Acrobat Dc MEDIUM 5.5
CVE-2019-8252

Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 201…

Fix: after 19.012.20035
Fix from $1,600 2020-07-06
Acrobat Dc HIGH 7.8
CVE-2019-8249

Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 201…

Fix: after 19.012.20035
Fix from $1,950 2020-07-06
Acrobat Dc HIGH 7.8
CVE-2019-8250

Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 201…

Fix: after 19.012.20035
Fix from $1,950 2020-07-06
Acrobat Dc MEDIUM 5.5
CVE-2019-8251

Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 201…

Fix: after 19.012.20035
Fix from $1,600 2020-07-06
Endpoint Agents CRITICAL 9.1
CVE-2020-5754

Webroot endpoint agents prior to version v9.0.28.48 allows remote attackers to trigger a type confusion vulnerability over its listening TCP port, re…

Fix: 9.0.28.48+
Fix from $2,300 2020-06-15
Internet Explorer HIGH 7.5
CVE-2020-1219EPSS 19%

A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka 'Microsoft Browser Memory Corruption Vu…

Fix: 1.11.20+
Fix from $1,950 2020-06-09
Safari HIGH 8.8
CVE-2020-9800

A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 13.5 and iPadOS 13.5, tvOS 13.4.5, watchOS 6.2.5, Safa…

Fix: 6.2.5 / 7.19+
Fix from $1,950 2020-06-09
Linux Kernel HIGH 7.8
CVE-2020-10757

A flaw was found in the Linux Kernel in versions after 4.5-rc1 in the way mremap handled DAX Huge Pages. This flaw allows a local attacker with acces…

Fix: 4.9.227 / 4.14.184+
Fix from $1,950 2020-06-09
Chrome HIGH 8.8
CVE-2020-6464

Type confusion in Blink in Google Chrome prior to 81.0.4044.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 81.0.4044.138+
Fix from $1,950 2020-05-21
Chrome HIGH 8.8
CVE-2020-6468EPSS 6%

Type confusion in V8 in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 83.0.4103.61+
Fix from $1,950 2020-05-21
Linux Kernel HIGH 7.8
CVE-2019-15792

In shiftfs, a non-upstream patch to the Linux kernel included in the Ubuntu 5.0 and 5.3 kernel series, shiftfs_btrfs_ioctl_fd_replace() calls fdget(o…

Patch available
Fix from $1,950 2020-04-24
Phantompdf HIGH 7.8
CVE-2020-10908

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is r…

Fix: after 9.7.1.29511
Fix from $1,950 2020-04-22
Phantompdf HIGH 7.8
CVE-2020-10909

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is r…

Fix: after 9.7.1.29511
Fix from $1,950 2020-04-22
Phantompdf HIGH 7.8
CVE-2020-10910

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is r…

Fix: after 9.7.1.29511
Fix from $1,950 2020-04-22
Phantompdf HIGH 7.8
CVE-2020-10911

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is r…

Fix: after 9.7.1.29511
Fix from $1,950 2020-04-22
Phantompdf HIGH 7.8
CVE-2020-10912

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is r…

Fix: after 9.7.1.29511
Fix from $1,950 2020-04-22
Foxit Reader HIGH 7.8
CVE-2020-10913EPSS 7%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is r…

Fix: after 9.7.1.29511
Fix from $1,950 2020-04-22
Phantompdf HIGH 7.8
CVE-2020-10889

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is r…

Fix: after 9.7.1.29511
Fix from $1,950 2020-04-22
Phantompdf HIGH 7.8
CVE-2020-10891

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is r…

Fix: after 9.7.1.29511
Fix from $1,950 2020-04-22
Fbx Software Development Kit HIGH 8.8
CVE-2020-7081

A type confusion vulnerability in the Autodesk FBX-SDK versions 2019.0 and earlier may lead to arbitary code read/write on the system running it.

Fix: after 2019.0
Fix from $1,950 2020-04-17
Scada Data Gateway CRITICAL 9.8
CVE-2020-10611EPSS 5%

Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to execute arbitrary code due to …

Fix: after 4.0.122
Fix from $2,300 2020-04-15
Vm Virtualbox HIGH 7.5
CVE-2020-2907

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.4…

Fix: 5.2.40 / 6.0.20+
Fix from $1,950 2020-04-15
Chrome HIGH 8.8
CVE-2020-6430

Type Confusion in V8 in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 81.0.4044.92+
Fix from $1,950 2020-04-13
Android CRITICAL 9.8
CVE-2020-11603

An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (incorporating TEEGRIS) software. Type confusion in the MLDAP Trustlet allo…

Mitigation only
Fix from $2,300 2020-04-08