Vulnerability index

Browse CVEs

1,055 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Android MEDIUM 6.5
CVE-2019-9418

In libstagefright, there is a possible resource exhaustion due to a missing bounds check. This could lead to remote denial of service with no additio…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 5.9
CVE-2019-9414

In wpa_supplicant, there is a possible man in the middle vulnerability due to improper input validation of the basicConstraints field of intermediary…

Mitigation only
Fix from $1,600 2019-09-27
Android HIGH 7.5
CVE-2019-9393

In Bluetooth, there is possible controlled termination due to a missing bounds check. This could lead to remote denial of service with no additional …

Mitigation only
Fix from $1,950 2019-09-27
Android HIGH 7.5
CVE-2019-9394

In Bluetooth, there is possible controlled termination due to a missing bounds check. This could lead to remote denial of service with no additional …

Mitigation only
Fix from $1,950 2019-09-27
Android HIGH 7.5
CVE-2019-9395

In Bluetooth, there is possible controlled termination due to a missing bounds check. This could lead to remote denial of service with no additional …

Mitigation only
Fix from $1,950 2019-09-27
Android HIGH 7.5
CVE-2019-9396

In Bluetooth, there is possible controlled termination due to a missing bounds check. This could lead to remote denial of service with no additional …

Mitigation only
Fix from $1,950 2019-09-27
Android HIGH 7.5
CVE-2019-9397

In Bluetooth, there is possible controlled termination due to a missing bounds check. This could lead to remote denial of service with no additional …

Mitigation only
Fix from $1,950 2019-09-27
Android HIGH 7.5
CVE-2019-9398

In Bluetooth, there is possible controlled termination due to a missing bounds check. This could lead to remote denial of service with no additional …

Mitigation only
Fix from $1,950 2019-09-27
Android HIGH 7.5
CVE-2019-9401

In Bluetooth, there is possible controlled termination due to a missing bounds check. This could lead to remote denial of service with no additional …

Mitigation only
Fix from $1,950 2019-09-27
Android HIGH 7.5
CVE-2019-9402

In Bluetooth, there is possible controlled termination due to a missing bounds check. This could lead to remote denial of service with no additional …

Mitigation only
Fix from $1,950 2019-09-27
Android HIGH 7.5
CVE-2019-9404

In Bluetooth, there is possible controlled termination due to a missing bounds check. This could lead to remote denial of service with no additional …

Mitigation only
Fix from $1,950 2019-09-27
Android MEDIUM 6.5
CVE-2019-9379

In libstagefright, there is a possible resource exhaustion due to a missing bounds check. This could lead to remote denial of service with no additio…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-9348

In libstagefright, there is a possible resource exhaustion due to improper input validation. This could lead to remote denial of service with no addi…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-9352

In libstagefright, there is a possible resource exhaustion due to a missing bounds check. This could lead to remote denial of service with no additio…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-9283

In AAC Codec, there is a possible resource exhaustion due to improper input validation. This could lead to remote denial of service with no additiona…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.7
CVE-2019-9446

In the Android kernel in the FingerTipS touchscreen driver there is a possible out of bounds write due to improper input validation. This could lead …

Mitigation only
Fix from $1,600 2019-09-06
Android MEDIUM 6.7
CVE-2019-9441

In the Android kernel in the mnh driver there is a possible out of bounds write due to improper input validation. This could lead to escalation of pr…

Mitigation only
Fix from $1,600 2019-09-06
Android HIGH 7.8
CVE-2019-9254

In readArgumentList of zygote.java in Android 10, there is a possible command injection due to improper input validation. This could lead to local es…

Mitigation only
Fix from $1,950 2019-09-05
Android MEDIUM 5.5
CVE-2019-2136

In Status::readFromParcel of Status.cpp, there is a possible out of bounds read due to improper input validation. This could lead to local informatio…

Mitigation only
Fix from $1,600 2019-08-20
Chrome HIGH 7.8
CVE-2019-5819

Insufficient data validation in developer tools in Google Chrome on OS X prior to 74.0.3729.108 allowed a local attacker to execute arbitrary code vi…

Fix: 74.0.3729.108+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2018-6161

Insufficient policy enforcement in Blink in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to bypass same origin policy via a crafted …

Fix: 68.0.3440.75+
Fix from $1,950 2019-06-27
Chrome HIGH 7.8
CVE-2018-6176

Insufficient file type enforcement in Extensions API in Google Chrome prior to 68.0.3440.75 allowed a remote attacker who had compromised the rendere…

Fix: 68.0.3440.75+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2018-6121

Insufficient validation of input in Blink in Google Chrome prior to 66.0.3359.170 allowed a remote attacker to perform privilege escalation via a cra…

Fix: 66.0.3359.170+
Fix from $1,950 2019-06-27
Chrome HIGH 8.1
CVE-2018-6138

Insufficient policy enforcement in Extensions API in Google Chrome prior to 67.0.3396.62 allowed an attacker who convinced a user to install a malici…

Fix: 67.0.3396.62+
Fix from $1,950 2019-06-27
Chrome MEDIUM 6.5
CVE-2017-5028

Insufficient data validation in V8 in Google Chrome prior to 56.0.2924.76 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

Fix: 56.0.2924.76+
Fix from $1,600 2019-06-27
Chrome MEDIUM 6.5
CVE-2018-16064

Insufficient data validation in Extensions API in Google Chrome prior to 68.0.3440.75 allowed an attacker who convinced a user to install a malicious…

Fix: 68.0.3440.75+
Fix from $1,600 2019-06-27
Chrome MEDIUM 6.5
CVE-2018-17460

Insufficient data validation in filesystem URIs in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to spoof the contents of the Omnibox…

Fix: 68.0.3440.75+
Fix from $1,600 2019-06-27
Android HIGH 8.8
CVE-2019-2016

In NFA_SendRawFrame of nfa_dm_api.cc, there is a possible out-of-bound write due to improper input validation. This could lead to local escalation of…

Mitigation only
Fix from $1,950 2019-06-19
Chrome MEDIUM 6.5
CVE-2019-5799

Incorrect inheritance of a new document's policy in Content Security Policy in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to bypas…

Fix: 73.0.3683.75+
Fix from $1,600 2019-05-23
Chrome MEDIUM 6.5
CVE-2019-5800

Insufficient policy enforcement in Blink in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to bypass content security policy via a cra…

Fix: 73.0.3683.75+
Fix from $1,600 2019-05-23