Vulnerability index

Browse CVEs

386 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Fuchsia MEDIUM 5.5
CVE-2022-0882

A bug exists where an attacker can read the kernel log through exposed Zircon kernel addresses without the required capability ZX_RSRC_KIND_ROOT. It …

Fix: 4.1.1+
Fix from $1,600 2022-05-03
Android MEDIUM 5.0
CVE-2021-1023

In onCreate of RequestIgnoreBatteryOptimizations.java, there is a possible way to determine whether an app is installed, without query permissions, d…

Mitigation only
Fix from $1,600 2021-12-15
Android MEDIUM 5.5
CVE-2021-0644

In conditionallyRemoveIdentifiers of SubscriptionController.java, there is a possible way to retrieve a trackable identifier due to a missing permiss…

Patch available
Fix from $1,600 2021-10-06
Android HIGH 7.8
CVE-2021-0602

In onCreateOptionsMenu of WifiNetworkDetailsFragment.java, there is a possible way for guest users to view and modify Wi-Fi settings for all configur…

Mitigation only
Fix from $1,950 2021-07-14
Android HIGH 7.5
CVE-2021-25426

Improper component protection vulnerability in SmsViewerActivity of Samsung Message prior to SMR July-2021 Release 1 allows untrusted applications to…

No fix yet
Fix from $1,950 2021-07-08
Android MEDIUM 5.5
CVE-2021-25392

Improper protection of backup path configuration in Samsung Dex prior to SMR MAY-2021 Release 1 allows local attackers to get sensitive information v…

No fix yet
Fix from $1,600 2021-06-11
Android MEDIUM 5.5
CVE-2021-25357

A pendingIntent hijacking vulnerability in Create Movie prior to SMR APR-2021 Release 1 in Android O(8.x) and P(9.0), 3.4.81.1 in Android Q(10,0), an…

Mitigation only
Fix from $1,600 2021-04-09
Android MEDIUM 6.5
CVE-2020-0488

In ihevc_inter_pred_chroma_copy_ssse3 of ihevc_inter_pred_filters_ssse3_intr.c, there is a possible information disclosure due to uninitialized data.…

Patch available
Fix from $1,600 2020-12-15
Chrome MEDIUM 6.5
CVE-2020-6514EPSS 8%

Inappropriate implementation in WebRTC in Google Chrome prior to 84.0.4147.89 allowed an attacker in a privileged network position to potentially exp…

Fix: 13.1.2 / 13.6+
Fix from $1,600 2020-07-22
Chrome MEDIUM 6.5
CVE-2011-2863

Insufficient policy enforcement in V8 in Google Chrome prior to 14.0.0.0 allowed a remote attacker to obtain potentially sensitive information from p…

Fix: 14.0.0.0+
Fix from $1,600 2020-06-03
Android MEDIUM 5.0
CVE-2020-0092

In setHideSensitive of NotificationStackScrollLayout.java, there is a possible disclosure of sensitive notification content due to a permissions bypa…

Patch available
Fix from $1,600 2020-05-14
Android HIGH 7.5
CVE-2015-9547

An issue was discovered on Samsung mobile devices with JBP(4.3) and KK(4.4.2) software. Because the READ_LOGS permission is mishandled, sensitive inf…

Mitigation only
Fix from $1,950 2020-04-10
Android HIGH 7.5
CVE-2018-21069

An issue was discovered on Samsung mobile devices with N(7.x) (MediaTek chipsets) software. There is information disclosure (of kernel stack memory) …

Mitigation only
Fix from $1,950 2020-04-08
Android HIGH 7.3
CVE-2018-21071

An issue was discovered on Samsung mobile devices with M(6.0) software. Because of an unprotected intent, an attacker can read arbitrary files and em…

Mitigation only
Fix from $1,950 2020-04-08
Android MEDIUM 5.5
CVE-2018-21076

An issue was discovered on Samsung mobile devices with N(7.x) (Exynos8890/8895 chipsets) software. There is information disclosure (a KASLR offset) i…

Mitigation only
Fix from $1,600 2020-04-08
Android MEDIUM 5.3
CVE-2018-21067

An issue was discovered on Samsung mobile devices with M(6.0) software. There is an information disclosure in a Trustlet because an address is logged…

Mitigation only
Fix from $1,600 2020-04-08
Android HIGH 7.5
CVE-2018-21059

An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is Clipboard content visibility in the locked state via the …

Mitigation only
Fix from $1,950 2020-04-08
Android HIGH 7.5
CVE-2018-21060

An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is a Keyboard learned words leak in the locked state via the…

Mitigation only
Fix from $1,950 2020-04-08
Android MEDIUM 6.2
CVE-2018-21045

An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is Clipboard access in the lockscreen state via a copy-and-p…

Mitigation only
Fix from $1,600 2020-04-08
Android MEDIUM 6.2
CVE-2018-21048

An issue was discovered on Samsung mobile devices with O(8.x) software. There is a Notification leak on a locked device in Standalone Dex mode. The S…

Mitigation only
Fix from $1,600 2020-04-08
Android HIGH 7.5
CVE-2018-21083

An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.0) (Exynos or Qualcomm chipsets) software. There is information disclo…

Mitigation only
Fix from $1,950 2020-04-08
Android HIGH 7.5
CVE-2017-18643

An issue was discovered on Samsung mobile devices with M(6.x) and N(7.x) software. There is information disclosure of the kbase_context address of a …

Mitigation only
Fix from $1,950 2020-04-08
Android MEDIUM 5.3
CVE-2017-18686

An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0) software. Contact information can leak to a log file because of the broadcas…

Mitigation only
Fix from $1,600 2020-04-07
Android MEDIUM 5.3
CVE-2017-18687

An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.0) software. An attacker can obtain the full pathnames of…

Mitigation only
Fix from $1,600 2020-04-07
Android MEDIUM 5.3
CVE-2017-18694

An issue was discovered on Samsung mobile devices with software through 2016-10-25 (Exynos5 chipsets). Attackers can read kernel addresses in the log…

Mitigation only
Fix from $1,600 2020-04-07
Android MEDIUM 5.3
CVE-2019-20616

An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. Gallery leaks a thumbnail of Private Mode content. The Samsung ID …

Mitigation only
Fix from $1,600 2020-03-24
Android HIGH 7.5
CVE-2020-0062

In Euicc, there is a possible information disclosure due to an included test Certificate. This could lead to remote information disclosure with no ad…

Mitigation only
Fix from $1,950 2020-03-10
Android MEDIUM 5.0
CVE-2020-0031

In triggerAugmentedAutofillLocked and related functions of Session.java, it is possible for Augmented Autofill to display sensitive information to th…

Mitigation only
Fix from $1,600 2020-03-10
Android HIGH 7.5
CVE-2011-3901

Android SQLite Journal before 4.0.1 has an information disclosure vulnerability.

No fix yet
Fix from $1,950 2020-02-12
Chrome MEDIUM 6.5
CVE-2010-3917

Google Chrome before 3.0 does not properly handle XML documents, which allows remote attackers to obtain sensitive information via a crafted web site.

Fix: 3.0+
Fix from $1,600 2020-02-06