Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.8
CVE-2021-25510
An improper validation vulnerability in FilterProvider prior to SMR Dec-2021 Release 1 allows local arbitrary code execution.
Android
Mitigation only
HIGH 7.8
CVE-2021-25511
An improper validation vulnerability in FilterProvider prior to SMR Dec-2021 Release 1 allows attackers to write arbitrary files via a path traversal…
Android
Mitigation only
HIGH 7.8
CVE-2021-25512
An improper validation vulnerability in telephony prior to SMR Dec-2021 Release 1 allows attackers to launch certain activities.
Android
Mitigation only
MEDIUM 6.1
CVE-2021-38000 KEV
Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 95.0.4638.69 allowed a remote attacker to arbitrarily brow…
Chrome
95.0.4638.69+
MEDIUM 6.7
CVE-2021-25503
Improper input validation vulnerability in HDCP prior to SMR Nov-2021 Release 1 allows attackers to arbitrary code execution.
Android
Mitigation only
MEDIUM 5.5
CVE-2021-37996
Insufficient validation of untrusted input Downloads in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to bypass navigation restrictio…
Chrome
95.0.4638.54+
MEDIUM 5.5
CVE-2021-0651
In loadLabel of PackageItemInfo.java, there is a possible way to DoS a device by having a long label in an app due to incorrect input validation. Thi…
Android
Mitigation only
HIGH 8.0
CVE-2021-25485
Path traversal vulnerability in FactoryAirCommnadManger prior to SMR Oct-2021 Release 1 allows attackers to write file as system UID via BT remote so…
Android
Mitigation only
HIGH 7.5
CVE-2021-25471
A lack of replay attack protection in Security Mode Command process prior to SMR Oct-2021 Release 1 can lead to denial of service on mobile network c…
Android
Mitigation only
MEDIUM 5.5
CVE-2021-25453
Some improper access control in Bluetooth APIs prior to SMR Sep-2021 Release 1 allows untrusted application to get Bluetooth information.
Android
Mitigation only
MEDIUM 6.5
CVE-2021-25450
Path traversal vulnerability in FactoryAirCommnadManger prior to SMR Sep-2021 Release 1 allows attackers to write file as system uid via remote socke…
Android
Mitigation only
MEDIUM 5.5
CVE-2021-25452
An improper input validation vulnerability in loading graph file in DSP driver prior to SMR Sep-2021 Release 1 allows attackers to perform permanent …
Android
Mitigation only
MEDIUM 5.5
CVE-2021-0416
In memory management driver, there is a possible system crash due to improper input validation. This could lead to local denial of service with no ad…
Android
Mitigation only
MEDIUM 5.5
CVE-2021-0417
In memory management driver, there is a possible system crash due to improper input validation. This could lead to local denial of service with no ad…
Android
Mitigation only
MEDIUM 5.5
CVE-2021-0418
In memory management driver, there is a possible system crash due to improper input validation. This could lead to local denial of service with no ad…
Android
Mitigation only
MEDIUM 5.5
CVE-2021-0419
In memory management driver, there is a possible system crash due to improper input validation. This could lead to local denial of service with no ad…
Android
Mitigation only
MEDIUM 5.5
CVE-2021-37677
TensorFlow is an end-to-end open source platform for machine learning. In affected versions the shape inference code for `tf.raw_ops.Dequantize` has …
Tensorflow
2.3.4 / 2.4.3+
MEDIUM 5.5
CVE-2021-37692
TensorFlow is an end-to-end open source platform for machine learning. In affected versions under certain conditions, Go code can trigger a segfault …
Tensorflow
2.6.0+
HIGH 7.8
CVE-2021-37663
TensorFlow is an end-to-end open source platform for machine learning. In affected versions due to incomplete validation in `tf.raw_ops.QuantizeV2`, …
Tensorflow
2.3.4 / 2.4.3+
HIGH 7.8
CVE-2021-37665
TensorFlow is an end-to-end open source platform for machine learning. In affected versions due to incomplete validation in MKL implementation of req…
Tensorflow
2.3.4 / 2.4.3+
MEDIUM 5.5
CVE-2021-37673
TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can trigger a denial of service via a `CHECK`…
Tensorflow
2.3.4 / 2.4.3+
MEDIUM 5.5
CVE-2021-37674
TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can trigger a denial of service via a segment…
Tensorflow
2.3.4 / 2.4.3+
MEDIUM 5.5
CVE-2021-25444
An IV reuse vulnerability in keymaster prior to SMR AUG-2021 Release 1 allows decryption of custom keyblob with privileged process.
Android
Mitigation only
HIGH 7.8
CVE-2021-0600
In onCreate of DeviceAdminAdd.java, there is a possible way to mislead a user to activate a device admin app due to improper input validation. This c…
Android
Mitigation only
HIGH 7.8
CVE-2021-25428
Improper validation check vulnerability in PackageManager prior to SMR July-2021 Release 1 allows untrusted applications to get dangerous level permi…
Android
Mitigation only
HIGH 7.8
CVE-2021-0511
In Dex2oat of dex2oat.cc, there is a possible way to inject bytecode into an app due to improper input validation. This could lead to local escalatio…
Android
Patch available
HIGH 7.8
CVE-2021-0481
In onActivityResult of EditUserPhotoController.java, there is a possible access of unauthorized files due to an unexpected URI handler. This could le…
Android
Patch available
HIGH 7.8
CVE-2021-0485
In getMinimalSize of PipBoundsAlgorithm.java, there is a possible bypass of restrictions on background processes due to a permissions bypass. This co…
Android
Patch available
HIGH 7.8
CVE-2021-25414
Improper sanitization of incoming intent in Samsung Contacts prior to SMR JUN-2021 Release 1 allows local attackers to copy or overwrite arbitrary fi…
Android
No fix yet
HIGH 7.1
CVE-2021-25410
Improper access control of a component in CallBGProvider prior to SMR JUN-2021 Release 1 allows local attackers to access arbitrary files with an esc…
Android
No fix yet