Vulnerability index

Browse CVEs

1,003 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Chrome CRITICAL 9.6
CVE-2019-13690

Inappropriate implementation in OS in Google Chrome on ChromeOS prior to 75.0.3770.80 allowed a remote attacker to perform OS-level privilege escalat…

Fix: 75.0.3770.80+
Fix from $2,300 2023-08-25
Android CRITICAL 9.8
CVE-2023-21287

In multiple locations, there is a possible code execution due to type confusion. This could lead to remote code execution with no additional executio…

Patch available
Fix from $2,300 2023-08-14
Android CRITICAL 9.8
CVE-2023-21242

In isServerCertChainValid of InsecureEapNetworkHandler.java, there is a possible way to trust an imposter server due to a logic error in the code. Th…

Patch available
Fix from $2,300 2023-08-14
Android CRITICAL 9.8
CVE-2023-20965

In processMessageImpl of ClientModeImpl.java, there is a possible credential disclosure in the TOFU flow due to a logic error in the code. This could…

Patch available
Fix from $2,300 2023-08-14
Chrome CRITICAL 9.6
CVE-2022-4920

Heap buffer overflow in Blink in Google Chrome prior to 101.0.4951.41 allowed a remote attacker who convinced a user to engage in specific UI gesture…

Fix: 101.0.4951.41+
Fix from $2,300 2023-07-29
Chrome CRITICAL 9.6
CVE-2022-4924

Use after free in WebRTC in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who had compromised the renderer process to potentially per…

Fix: 97.0.4692.71+
Fix from $2,300 2023-07-29
Android CRITICAL 9.8
CVE-2023-20918

In getPendingIntentLaunchFlags of ActivityOptions.java, there is a possible elevation of privilege due to a confused deputy with no additional execut…

Patch available
Fix from $2,300 2023-07-13
Android CRITICAL 9.8
CVE-2023-21250

In gatt_end_operation of gatt_utils.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code executi…

Patch available
Fix from $2,300 2023-07-13
Android CRITICAL 9.8
CVE-2023-21066

In cd_CodeMsg of cd_codec.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no …

Mitigation only
Fix from $2,300 2023-06-28
Android CRITICAL 9.8
CVE-2021-0701

In PVRSRVBridgeSyncPrimOpCreate of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of…

Mitigation only
Fix from $2,300 2023-06-15
Android CRITICAL 9.8
CVE-2021-0945

In _PMRCreate of the PowerVR kernel driver, a missing bounds check means it is possible to overwrite heap memory via PhysmemNewRamBackedPMR. This cou…

Mitigation only
Fix from $2,300 2023-06-15
Android CRITICAL 9.8
CVE-2023-21130

In btm_ble_periodic_adv_sync_lost of btm_ble_gap.cc, there is a possible remote code execution due to a buffer overflow. This could lead to remote co…

Patch available
Fix from $2,300 2023-06-15
Android CRITICAL 9.8
CVE-2021-0877

Product: AndroidVersions: Android SoCAndroid ID: A-273754094

No fix yet
Fix from $2,300 2023-05-15
Espv2 CRITICAL 9.8
CVE-2023-30845

ESPv2 is a service proxy that provides API management capabilities using Google Service Infrastructure. ESPv2 2.20.0 through 2.42.0 contains an authe…

Fix: 2.43.0+
Fix from $2,300 2023-04-26
Android CRITICAL 9.8
CVE-2023-21096

In OnWakelockReleased of attribution_processor.cc, there is a use after free that could lead to remote code execution with no additional execution pr…

Patch available
Fix from $2,300 2023-04-19
Chrome CRITICAL 9.6
CVE-2023-2136 KEVEPSS 6%

Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially p…

Fix: 112.0.5615.137+
Fix from $2,300 2023-04-19
Tensorflow CRITICAL 9.8
CVE-2023-25664

TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, there is a heap buffer overflow in TAvgPoolGrad. A f…

Fix: 2.12.0+
Fix from $2,300 2023-03-25
Tensorflow CRITICAL 9.8
CVE-2023-25668

TensorFlow is an open source platform for machine learning. Attackers using Tensorflow prior to 2.12.0 or 2.11.1 can access heap memory which is not …

Fix: 2.12.0+
Fix from $2,300 2023-03-25
Android CRITICAL 9.8
CVE-2023-21057

In ProfSixDecomTcpSACKoption of RohcPacketCommon, there is a possible out of bounds write due to a missing bounds check. This could lead to remote co…

Mitigation only
Fix from $2,300 2023-03-24
Android CRITICAL 9.8
CVE-2023-21058

In lcsm_SendRrAcquiAssist of lcsm_bcm_assist.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code…

Mitigation only
Fix from $2,300 2023-03-24
Android CRITICAL 9.8
CVE-2023-20951

In gatt_process_prep_write_rsp of gatt_cl.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code e…

Patch available
Fix from $2,300 2023-03-24
Android CRITICAL 9.8
CVE-2023-20954

In SDP_AddAttribute of sdp_db.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution …

Patch available
Fix from $2,300 2023-03-24
Android CRITICAL 9.8
CVE-2022-20532

In parseTrackFragmentRun() of MPEG4Extractor.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to remote escala…

Patch available
Fix from $2,300 2023-03-24
Android CRITICAL 9.8
CVE-2022-42498

In Pixel cellular firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no a…

Mitigation only
Fix from $2,300 2023-03-24
Android CRITICAL 9.8
CVE-2022-42499

In sms_SendMmCpErrMsg of sms_MmConManagement.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code…

Mitigation only
Fix from $2,300 2023-03-24
Chrome CRITICAL 9.8
CVE-2023-1529

Out of bounds memory access in WebHID in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap corruption via a…

Fix: 111.0.5563.110+
Fix from $2,300 2023-03-21
Android CRITICAL 9.8
CVE-2023-20946

In onStart of BluetoothSwitchPreferenceController.java, there is a possible permission bypass due to a confused deputy. This could lead to remote esc…

Patch available
Fix from $2,300 2023-02-28
Android CRITICAL 9.8
CVE-2022-42529

Product: AndroidVersions: Android kernelAndroid ID: A-235292841References: N/A

No fix yet
Fix from $2,300 2022-12-16
Android CRITICAL 9.8
CVE-2022-20473EPSS 9%

In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote code exec…

Patch available
Fix from $2,300 2022-12-13
Android CRITICAL 9.8
CVE-2022-20472EPSS 7%

In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote code exec…

Patch available
Fix from $2,300 2022-12-13