Vulnerability index

Browse CVEs

1,003 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.6 CVE-2019-13690 Inappropriate implementation in OS in Google Chrome on ChromeOS prior to 75.0.3770.80 allowed a remote attacker to perform OS-level privilege escalat… Chrome 75.0.3770.80+ Fix from $2,3002023-08-25 CRITICAL 9.8 CVE-2023-21287 In multiple locations, there is a possible code execution due to type confusion. This could lead to remote code execution with no additional executio… Android Patch available Fix from $2,3002023-08-14 CRITICAL 9.8 CVE-2023-21242 In isServerCertChainValid of InsecureEapNetworkHandler.java, there is a possible way to trust an imposter server due to a logic error in the code. Th… Android Patch available Fix from $2,3002023-08-14 CRITICAL 9.8 CVE-2023-20965 In processMessageImpl of ClientModeImpl.java, there is a possible credential disclosure in the TOFU flow due to a logic error in the code. This could… Android Patch available Fix from $2,3002023-08-14 CRITICAL 9.6 CVE-2022-4920 Heap buffer overflow in Blink in Google Chrome prior to 101.0.4951.41 allowed a remote attacker who convinced a user to engage in specific UI gesture… Chrome 101.0.4951.41+ Fix from $2,3002023-07-29 CRITICAL 9.6 CVE-2022-4924 Use after free in WebRTC in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who had compromised the renderer process to potentially per… Chrome 97.0.4692.71+ Fix from $2,3002023-07-29 CRITICAL 9.8 CVE-2023-20918 In getPendingIntentLaunchFlags of ActivityOptions.java, there is a possible elevation of privilege due to a confused deputy with no additional execut… Android Patch available Fix from $2,3002023-07-13 CRITICAL 9.8 CVE-2023-21250 In gatt_end_operation of gatt_utils.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code executi… Android Patch available Fix from $2,3002023-07-13 CRITICAL 9.8 CVE-2023-21066 In cd_CodeMsg of cd_codec.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no … Android Mitigation only Fix from $2,3002023-06-28 CRITICAL 9.8 CVE-2021-0701 In PVRSRVBridgeSyncPrimOpCreate of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of… Android Mitigation only Fix from $2,3002023-06-15 CRITICAL 9.8 CVE-2021-0945 In _PMRCreate of the PowerVR kernel driver, a missing bounds check means it is possible to overwrite heap memory via PhysmemNewRamBackedPMR. This cou… Android Mitigation only Fix from $2,3002023-06-15 CRITICAL 9.8 CVE-2023-21130 In btm_ble_periodic_adv_sync_lost of btm_ble_gap.cc, there is a possible remote code execution due to a buffer overflow. This could lead to remote co… Android Patch available Fix from $2,3002023-06-15 CRITICAL 9.8 CVE-2021-0877 Product: AndroidVersions: Android SoCAndroid ID: A-273754094 Android No fix yet Fix from $2,3002023-05-15 CRITICAL 9.8 CVE-2023-30845 ESPv2 is a service proxy that provides API management capabilities using Google Service Infrastructure. ESPv2 2.20.0 through 2.42.0 contains an authe… Espv2 2.43.0+ Fix from $2,3002023-04-26 CRITICAL 9.8 CVE-2023-21096 In OnWakelockReleased of attribution_processor.cc, there is a use after free that could lead to remote code execution with no additional execution pr… Android Patch available Fix from $2,3002023-04-19 CRITICAL 9.6 CVE-2023-2136 KEVEPSS 6% Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially p… Chrome 112.0.5615.137+ Fix from $2,3002023-04-19 CRITICAL 9.8 CVE-2023-25664 TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, there is a heap buffer overflow in TAvgPoolGrad. A f… Tensorflow 2.12.0+ Fix from $2,3002023-03-25 CRITICAL 9.8 CVE-2023-25668 TensorFlow is an open source platform for machine learning. Attackers using Tensorflow prior to 2.12.0 or 2.11.1 can access heap memory which is not … Tensorflow 2.12.0+ Fix from $2,3002023-03-25 CRITICAL 9.8 CVE-2023-21057 In ProfSixDecomTcpSACKoption of RohcPacketCommon, there is a possible out of bounds write due to a missing bounds check. This could lead to remote co… Android Mitigation only Fix from $2,3002023-03-24 CRITICAL 9.8 CVE-2023-21058 In lcsm_SendRrAcquiAssist of lcsm_bcm_assist.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code… Android Mitigation only Fix from $2,3002023-03-24 CRITICAL 9.8 CVE-2023-20951 In gatt_process_prep_write_rsp of gatt_cl.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code e… Android Patch available Fix from $2,3002023-03-24 CRITICAL 9.8 CVE-2023-20954 In SDP_AddAttribute of sdp_db.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution … Android Patch available Fix from $2,3002023-03-24 CRITICAL 9.8 CVE-2022-20532 In parseTrackFragmentRun() of MPEG4Extractor.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to remote escala… Android Patch available Fix from $2,3002023-03-24 CRITICAL 9.8 CVE-2022-42498 In Pixel cellular firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no a… Android Mitigation only Fix from $2,3002023-03-24 CRITICAL 9.8 CVE-2022-42499 In sms_SendMmCpErrMsg of sms_MmConManagement.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code… Android Mitigation only Fix from $2,3002023-03-24 CRITICAL 9.8 CVE-2023-1529 Out of bounds memory access in WebHID in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap corruption via a… Chrome 111.0.5563.110+ Fix from $2,3002023-03-21 CRITICAL 9.8 CVE-2023-20946 In onStart of BluetoothSwitchPreferenceController.java, there is a possible permission bypass due to a confused deputy. This could lead to remote esc… Android Patch available Fix from $2,3002023-02-28 CRITICAL 9.8 CVE-2022-42529 Product: AndroidVersions: Android kernelAndroid ID: A-235292841References: N/A Android No fix yet Fix from $2,3002022-12-16 CRITICAL 9.8 CVE-2022-20473EPSS 9% In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote code exec… Android Patch available Fix from $2,3002022-12-13 CRITICAL 9.8 CVE-2022-20472EPSS 7% In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote code exec… Android Patch available Fix from $2,3002022-12-13