Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 5.5
CVE-2022-42775
In camera driver, there is a possible memory corruption due to improper locking. This could lead to local denial of service in kernel.
Android
Mitigation only
MEDIUM 5.5
CVE-2022-39131
In camera driver, there is a possible memory corruption due to improper locking. This could lead to local denial of service in kernel.
Android
Mitigation only
MEDIUM 5.5
CVE-2022-38690
In camera driver, there is a possible memory corruption due to improper locking. This could lead to local denial of service in kernel.
Android
No fix yet
CRITICAL 9.8
CVE-2022-20238
'remap_pfn_range' here may map out of size kernel memory (for example, may map the kernel area), and because the 'vma->vm_page_prot' can also be cont…
Android
Patch available
HIGH 7.5
CVE-2022-20236
A drm driver have oob problem, could cause the system crash or EOPProduct: AndroidVersions: Android SoCAndroid ID: A-233124709
Android
Patch available
HIGH 7.8
CVE-2021-39798
In Bitmap_createFromParcel of Bitmap.cpp, there is a possible arbitrary code execution due to a missing bounds check. This could lead to local escala…
Android
Mitigation only
HIGH 7.8
CVE-2021-39693
In onUidStateChanged of AppOpsService.java, there is a possible way to access location without a visible indicator due to a logic error in the code. …
Android
Patch available
CRITICAL 9.8
CVE-2022-25818
Improper boundary check in UWB stack prior to SMR Mar-2022 Release 1 allows arbitrary code execution.
Android
Mitigation only
MEDIUM 5.5
CVE-2021-39633
In gre_handle_offloads of ip_gre.c, there is a possible page fault due to an invalid memory access. This could lead to local information disclosure w…
Android
Patch available
MEDIUM 6.7
CVE-2021-25518
An improper boundary check in secure_log of LDFW and BL31 prior to SMR Dec-2021 Release 1 allows arbitrary memory write and code execution.
Android
Mitigation only
CRITICAL 9.8
CVE-2021-25449
An improper input validation vulnerability in libsapeextractor library prior to SMR Sep-2021 Release 1 allows attackers to execute arbitrary code in …
Android
Mitigation only
CRITICAL 10.0
CVE-2021-25387
An improper input validation vulnerability in sflacfd_get_frm() in libsflacextractor library prior to SMR MAY-2021 Release 1 allows attackers to exec…
Android
Mitigation only
CRITICAL 9.8
CVE-2021-25383
An improper input validation vulnerability in scmn_mfal_read() in libsapeextractor library prior to SMR MAY-2021 Release 1 allows attackers to execut…
Android
Mitigation only
CRITICAL 9.8
CVE-2021-25385
An improper input validation vulnerability in sdfffd_parse_chunk_PROP() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers …
Android
Mitigation only
CRITICAL 9.8
CVE-2021-25386
An improper input validation vulnerability in sdfffd_parse_chunk_FVER() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers …
Android
Mitigation only
HIGH 8.8
CVE-2021-30530
Out of bounds memory access in WebAudio in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to perform out of bounds memory access via a…
Chrome
91.0.4472.77+
HIGH 7.8
CVE-2021-29576
TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.MaxPool3DGradGrad` is vulnerable to a heap b…
Tensorflow
2.1.4 / 2.2.3+
HIGH 7.8
CVE-2021-29577
TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.AvgPool3DGrad` is vulnerable to a heap buffe…
Tensorflow
2.1.4 / 2.2.3+
HIGH 7.8
CVE-2021-29578
TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.FractionalAvgPoolGrad` is vulnerable to a he…
Tensorflow
2.1.4 / 2.2.3+
HIGH 7.8
CVE-2021-29579
TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.MaxPoolGrad` is vulnerable to a heap buffer …
Tensorflow
2.1.4 / 2.2.3+
MEDIUM 5.5
CVE-2021-29575
TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.ReverseSequence` allows for stack overflow a…
Tensorflow
2.2.3 / 2.3.3+
MEDIUM 6.8
CVE-2021-21140
Uninitialized use in USB in Google Chrome prior to 88.0.4324.96 allowed a local attacker to potentially perform out of bounds memory access via via a…
Chrome
88.0.705.74 / 88.0.4324.96+
HIGH 8.8
CVE-2021-21118EPSS 17%
Insufficient data validation in V8 in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially perform out of bounds memory acces…
Chrome
88.0.705.50 / 88.0.4324.96+
HIGH 7.8
CVE-2020-8935
An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allow an attacker to make an Ecall_restore function call to reallocate untr…
Asylo
after 0.6.0
HIGH 7.5
CVE-2020-15266
In Tensorflow before version 2.4.0, when the `boxes` argument of `tf.image.crop_and_resize` has a very large value, the CPU kernel implementation rec…
Tensorflow
2.4.0+
CRITICAL 9.8
CVE-2020-15205
In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `data_splits` argument of `tf.raw_ops.StringNGrams` lacks validation. This a…
Tensorflow
1.15.4 / 2.0.3+
CRITICAL 9.0
CVE-2020-15207
In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, to mimic Python's indexing with negative values, TFLite uses `ResolveAxis` …
Tensorflow
1.15.4 / 2.0.3+
MEDIUM 5.4
CVE-2020-15198
In Tensorflow before version 2.3.1, the `SparseCountSparseOutput` implementation does not validate that the input arguments form a valid sparse tenso…
Tensorflow
2.3.1+
CRITICAL 9.9
CVE-2020-15196
In Tensorflow version 2.3.0, the `SparseCountSparseOutput` and `RaggedCountSparseOutput` implementations don't validate that the `weights` tensor has…
Tensorflow
Patch available
HIGH 8.8
CVE-2020-15195
In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the implementation of `SparseFillEmptyRowsGrad` uses a double indexing pattern. …
Tensorflow
1.15.4 / 2.0.3+