Vulnerability index

Browse CVEs

132 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Android HIGH 7.8
CVE-2022-23428

An improper boundary check in eden_runtime hal service prior to SMR Feb-2022 Release 1 allows arbitrary memory write and code execution.

Mitigation only
Fix from $1,950 2022-02-11
Android MEDIUM 6.7
CVE-2022-23431

An improper boundary check in RPMB ldfw prior to SMR Feb-2022 Release 1 allows arbitrary memory write and code execution.

Mitigation only
Fix from $1,600 2022-02-11
Tensorflow HIGH 7.8
CVE-2021-41216

TensorFlow is an open source platform for machine learning. In affected versions the shape inference function for `Transpose` is vulnerable to a heap…

Fix: 2.4.4 / 2.5.2+
Fix from $1,950 2021-11-05
Tensorflow HIGH 7.8
CVE-2021-41221

TensorFlow is an open source platform for machine learning. In affected versions the shape inference code for the `Cudnn*` operations in TensorFlow c…

Fix: 2.4.4 / 2.5.2+
Fix from $1,950 2021-11-05
Android MEDIUM 6.7
CVE-2021-25467

Assuming system privilege is gained, possible buffer overflow vulnerabilities in the Vision DSP kernel driver prior to SMR Oct-2021 Release 1 allows …

Mitigation only
Fix from $1,600 2021-10-06
Android MEDIUM 6.7
CVE-2021-25469

A possible stack-based buffer overflow vulnerability in Widevine trustlet prior to SMR Oct-2021 Release 1 allows arbitrary code execution.

Mitigation only
Fix from $1,600 2021-10-06
Android MEDIUM 5.5
CVE-2021-0421

In memory management driver, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosur…

Mitigation only
Fix from $1,600 2021-09-27
Android HIGH 7.8
CVE-2021-25461

An improper length check in APAService prior to SMR Sep-2021 Release 1 results in stack based Buffer Overflow.

Mitigation only
Fix from $1,950 2021-09-09
Tensorflow HIGH 7.8
CVE-2021-37650

TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation for `tf.raw_ops.ExperimentalDatasetToT…

Fix: 2.3.4 / 2.4.3+
Fix from $1,950 2021-08-12
Android HIGH 7.8
CVE-2021-25408

A possible buffer overflow vulnerability in NPU driver prior to SMR JUN-2021 Release 1 allows arbitrary memory write and code execution.

Mitigation only
Fix from $1,950 2021-06-11
Tensorflow HIGH 7.8
CVE-2021-29612

TensorFlow is an end-to-end open source platform for machine learning. An attacker can trigger a heap buffer overflow in Eigen implementation of `tf.…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29540

TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a heap buffer overflow to occur in `Conv2DBackpropFilter…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29520

TensorFlow is an end-to-end open source platform for machine learning. Missing validation between arguments to `tf.raw_ops.Conv3DBackprop*` operation…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29512

TensorFlow is an end-to-end open source platform for machine learning. If the `splits` argument of `RaggedBincount` does not specify a valid `SparseT…

Fix: 2.3.3 / 2.4.2+
Fix from $1,950 2021-05-14
Cloud Iot Device Sdk For Embedded C HIGH 7.8
CVE-2021-22547

In IoT Devices SDK, there is an implementation of calloc() that doesn't have a length check. An attacker could pass in memory objects larger than the…

Fix: 1.0.3+
Fix from $1,950 2021-05-04
Android HIGH 8.8
CVE-2021-22492

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Broadcom Bluetooth chipsets) software. The Bluetooth UART driver …

Mitigation only
Fix from $1,950 2021-01-05
Asylo MEDIUM 5.5
CVE-2020-8940

An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untrusted_recvmsg using an at…

Fix: after 0.6.0
Fix from $1,600 2020-12-15
Asylo MEDIUM 5.5
CVE-2020-8941

An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untrusted_inet_pton using an …

Fix: after 0.6.0
Fix from $1,600 2020-12-15
Asylo MEDIUM 5.5
CVE-2020-8942

An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untrusted_read whose return s…

Fix: after 0.6.0
Fix from $1,600 2020-12-15
Asylo MEDIUM 5.5
CVE-2020-8943

An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untrusted_recvfrom whose retu…

Fix: after 0.6.0
Fix from $1,600 2020-12-15
Asylo MEDIUM 5.5
CVE-2020-8944

An arbitrary memory write vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to ecall_restore using the attribut…

Fix: after 0.6.0
Fix from $1,600 2020-12-15
Android HIGH 7.8
CVE-2020-28341

An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos990 chipsets) software. The S3K250AF Secure Element CC EAL 5+ chip allows attac…

Mitigation only
Fix from $1,950 2020-11-08
Chrome CRITICAL 9.6
CVE-2020-15999 KEVEPSS 44%

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 2.10.4 / 86.0.4240.111+
Fix from $2,300 2020-11-03
Android CRITICAL 9.8
CVE-2020-25279

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos chipsets) software. The baseband component has a buffer ov…

Mitigation only
Fix from $2,300 2020-09-11
Asylo MEDIUM 6.5
CVE-2020-8905

A buffer length validation vulnerability in Asylo versions prior to 0.6.0 allows an attacker to read data they should not have access to. The 'enc_un…

Fix: 0.6.0+
Fix from $1,600 2020-08-12
Android CRITICAL 9.8
CVE-2020-13839

An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can occur via a custom AT comman…

Mitigation only
Fix from $2,300 2020-06-05
Android CRITICAL 9.8
CVE-2020-13840

An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can occur via an MTK AT command …

Mitigation only
Fix from $2,300 2020-06-05
Android HIGH 7.8
CVE-2020-12749

An issue was discovered on Samsung mobile devices with P(9.0) (Exynos chipsets) software. The S.LSI Wi-Fi drivers have a buffer overflow. The Samsung…

Mitigation only
Fix from $1,950 2020-05-11
Earth MEDIUM 5.9
CVE-2020-8896

A Buffer Overflow vulnerability in the khcrypt implementation in Google Earth Pro versions up to and including 7.3.2 allows an attacker to perform a …

Fix: 7.3.3+
Fix from $1,600 2020-05-04
Android CRITICAL 9.8
CVE-2019-20782

An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 software. LG Advanced Flash (LAF) has a buffer overflow. The…

Mitigation only
Fix from $2,300 2020-04-17