Vulnerability index

Browse CVEs

1,820 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Android HIGH 7.8
CVE-2019-2174

In SensorManager::assertStateLocked of SensorManager.cpp in Android 7.1.1, 7.1.2, 8.0, 8.1, and 9, there is a possible use after free due to improper…

Patch available
Fix from $1,950 2019-09-05
Android HIGH 7.8
CVE-2019-2127

In AudioInputDescriptor::setClientActive of AudioInputDescriptor.cpp, there is possible memory corruption due to a use after free. This could lead to…

Mitigation only
Fix from $1,950 2019-08-20
Android CRITICAL 9.8
CVE-2019-2111

In loop of DnsTlsSocket.cpp, there is a possible heap memory corruption due to a use after free. This could lead to remote code execution in the netd…

Mitigation only
Fix from $2,300 2019-07-08
Android HIGH 7.8
CVE-2019-2112

In several functions of alarm.cc, there is possible memory corruption due to a use after free. This could lead to local code execution with no additi…

Mitigation only
Fix from $1,950 2019-07-08
Chrome HIGH 8.8
CVE-2019-5809

Use after free in file chooser in Google Chrome prior to 74.0.3729.108 allowed a remote attacker who had compromised the renderer process to perform …

Fix: 74.0.3729.108+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2019-5813

Use after free in V8 in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 74.0.3729.108+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2019-5828

Object lifecycle issue in ServiceWorker in Google Chrome prior to 75.0.3770.80 allowed a remote attacker to potentially perform out of bounds memory …

Fix: 75.0.3770.80+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2019-5808

Use after free in Blink in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 74.0.3729.108+
Fix from $1,950 2019-06-27
Chrome MEDIUM 6.5
CVE-2018-6155

Incorrect handling of frames in the VP8 parser in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to potentially exploit heap corruptio…

Fix: 68.0.3440.75+
Fix from $1,600 2019-06-27
Chrome MEDIUM 6.5
CVE-2019-5786 KEVEPSS 62%

Object lifetime issue in Blink in Google Chrome prior to 72.0.3626.121 allowed a remote attacker to potentially perform out of bounds memory access v…

Fix: 72.0.3626.121+
Fix from $1,600 2019-06-27
Chrome MEDIUM 6.5
CVE-2019-5805

Use-after-free in PDFium in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF f…

Fix: 74.0.3729.108+
Fix from $1,600 2019-06-27
Chrome MEDIUM 5.7
CVE-2018-6171

Use after free in Bluetooth in Google Chrome prior to 68.0.3440.75 allowed an attacker who convinced a user to install a malicious extension to obtai…

Fix: 68.0.3440.75+
Fix from $1,600 2019-06-27
Chrome HIGH 8.8
CVE-2018-6118

A double-eviction in the Incognito mode cache that lead to a user-after-free in cache in Google Chrome prior to 66.0.3359.139 allowed a remote attack…

Fix: 66.0.3359.139+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2018-17479

Incorrect object lifetime calculations in GPU code in Google Chrome prior to 70.0.3538.110 allowed a remote attacker to potentially exploit heap corr…

Fix: 70.0.3538.110+
Fix from $1,950 2019-06-27
Android HIGH 7.8
CVE-2019-2024

In em28xx_unregister_dvb of em28xx-dvb.c, there is a possible use after free issue. This could lead to local escalation of privilege with no addition…

Mitigation only
Fix from $1,950 2019-06-19
Android HIGH 7.8
CVE-2019-2025

In binder_thread_read of binder.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in th…

Mitigation only
Fix from $1,950 2019-06-19
Android CRITICAL 9.8
CVE-2019-2006

In serviceDied of HalDeathHandlerHidl.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of priv…

Mitigation only
Fix from $2,300 2019-06-19
Android HIGH 7.0
CVE-2019-2095

In callGenIDChangeListeners and related functions of SkPixelRef.cpp, there is a possible use after free due to a race condition. This could lead to r…

Mitigation only
Fix from $1,950 2019-06-07
Chrome HIGH 8.8
CVE-2019-5787

Use-after-garbage-collection in Blink in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap corruption via a c…

Fix: 73.0.3683.75+
Fix from $1,950 2019-05-23
Chrome HIGH 8.8
CVE-2019-5788EPSS 9%

An integer overflow that leads to a use-after-free in Blink Storage in Google Chrome on Linux prior to 73.0.3683.75 allowed a remote attacker who had…

Fix: 73.0.3683.75+
Fix from $1,950 2019-05-23
Chrome HIGH 8.8
CVE-2019-5789EPSS 9%

An integer overflow that leads to a use-after-free in WebMIDI in Google Chrome on Windows prior to 73.0.3683.75 allowed a remote attacker who had com…

Fix: 73.0.3683.75+
Fix from $1,950 2019-05-23
Android HIGH 7.8
CVE-2019-2049

In SendMediaUpdate and SendFolderUpdate of avrcp_service.cc, there is a possible memory corruption due to a use after free. This could lead to local …

Mitigation only
Fix from $1,950 2019-05-08
Android HIGH 7.8
CVE-2019-2050

In tearDownClientInterface of WificondControl.java, there is a possible use after free due to improper locking. This could lead to local escalation o…

Mitigation only
Fix from $1,950 2019-05-08
Android CRITICAL 9.8
CVE-2019-2030

In removeInterfaceAddress of NetworkController.cpp, there is a possible use after free. This could lead to remote code execution with no additional e…

Patch available
Fix from $2,300 2019-04-19
Android HIGH 8.8
CVE-2019-2029

In btm_proc_smp_cback of tm_ble.cc, there is a possible memory corruption due to a use after free. This could lead to remote code execution with no a…

Patch available
Fix from $1,950 2019-04-19
Android HIGH 7.8
CVE-2019-2033

In create_hdr of dnssd_clientstub.c, there is a possible use after free. This could lead to local escalation of privilege with no additional executio…

Patch available
Fix from $1,950 2019-04-19
Android HIGH 7.8
CVE-2019-2000

In several functions of binder.c, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with …

No fix yet
Fix from $1,950 2019-02-28
Android HIGH 7.5
CVE-2019-1992

In bta_hl_sdp_query_results of bta_hl_main.cc, there is a possible use-after-free due to a race condition. This could lead to remote code execution w…

Mitigation only
Fix from $1,950 2019-02-28
Chrome HIGH 8.8
CVE-2019-5772

Sharing of objects over calls into JavaScript runtime in PDFium in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially explo…

Fix: 72.0.3626.81+
Fix from $1,950 2019-02-19
Chrome CRITICAL 9.6
CVE-2019-5759

Incorrect lifetime handling in HTML select elements in Google Chrome on Android and Mac prior to 72.0.3626.81 allowed a remote attacker to potentiall…

Fix: 72.0.3626.81+
Fix from $2,300 2019-02-19