Vulnerability index

Browse CVEs

155 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Android MEDIUM 5.5
CVE-2022-47359

In log service, there is a missing permission check. This could lead to local denial of service in log service.

No fix yet
Fix from $1,600 2023-02-12
Android MEDIUM 5.5
CVE-2022-47360

In log service, there is a missing permission check. This could lead to local denial of service in log service.

No fix yet
Fix from $1,600 2023-02-12
Android MEDIUM 5.5
CVE-2022-44447

In wlan driver, there is a possible null pointer dereference issue due to a missing bounds check. This could lead to local denial of service in wlan …

Mitigation only
Fix from $1,600 2023-02-12
Android HIGH 7.5
CVE-2022-42527

In cd_SsParseMsg of cd_SsCodec.c, there is a possible crash due to a missing null check. This could lead to remote denial of service with no addition…

Mitigation only
Fix from $1,950 2022-12-16
Android MEDIUM 5.0
CVE-2022-20521

In sdpu_find_most_specific_service_uuid of sdp_utils.cc, there is a possible way to crash Bluetooth due to a missing null check. This could lead to l…

Patch available
Fix from $1,600 2022-12-16
Tensorflow HIGH 7.5
CVE-2022-41909

TensorFlow is an open source platform for machine learning. An input `encoded` that is not a valid `CompositeTensorVariant` tensor will trigger a seg…

Fix: 2.8.4 / 2.9.3+
Fix from $1,950 2022-11-18
Tensorflow HIGH 7.5
CVE-2022-41889

TensorFlow is an open source platform for machine learning. If a list of quantized tensors is assigned to an attribute, the pywrap code fails to pars…

Fix: 2.8.4 / 2.9.3+
Fix from $1,950 2022-11-18
Tensorflow HIGH 7.5
CVE-2022-36011

TensorFlow is an open source platform for machine learning. When `mlir::tfg::ConvertGenericFunctionToFunctionDef` is given empty function attributes,…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-36013

TensorFlow is an open source platform for machine learning. When `mlir::tfg::GraphDefImporter::ConvertNodeDef` tries to convert NodeDefs without an o…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-36014

TensorFlow is an open source platform for machine learning. When `mlir::tfg::TFOp::nameAttr` receives null type list attributes, it crashes. We have …

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-36000

TensorFlow is an open source platform for machine learning. When `mlir::tfg::ConvertGenericFunctionToFunctionDef` is given empty function attributes,…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-35965

TensorFlow is an open source platform for machine learning. If `LowerBound` or `UpperBound` is given an empty`sorted_inputs` input, it results in a `…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Android MEDIUM 6.5
CVE-2022-20333

In Bluetooth, there is a possible crash due to a missing null check. This could lead to remote denial of service with no additional execution privile…

Mitigation only
Fix from $1,600 2022-08-12
Android MEDIUM 6.5
CVE-2022-20334

In Bluetooth, there are possible process crashes due to dereferencing a null pointer. This could lead to remote denial of service with no additional …

Mitigation only
Fix from $1,600 2022-08-12
Chrome HIGH 8.1
CVE-2022-1130

Insufficient validation of trust input in WebOTP in Google Chrome on Android prior to 100.0.4896.60 allowed a remote attacker to send arbitrary inten…

Fix: 100.0.4896.60+
Fix from $1,950 2022-07-23
Tensorflow MEDIUM 5.5
CVE-2022-29201

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implementation of `tf.raw_ops.Quant…

Fix: 2.6.4 / 2.7.2+
Fix from $1,600 2022-05-20
Tensorflow MEDIUM 5.5
CVE-2022-29205

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, there is a potential for segfault / den…

Fix: 2.6.4 / 2.7.2+
Fix from $1,600 2022-05-20
Tensorflow MEDIUM 5.5
CVE-2022-29206

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implementation of `tf.raw_ops.Spars…

Fix: 2.6.4 / 2.7.2+
Fix from $1,600 2022-05-20
Android MEDIUM 6.5
CVE-2021-39804

In reinit of HeifDecoderImpl.cpp, there is a possible crash due to a missing null check. This could lead to remote persistent denial of service in th…

Patch available
Fix from $1,600 2022-04-12
Android CRITICAL 9.8
CVE-2022-26093

Null pointer dereference vulnerability in parser_irot function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remo…

Mitigation only
Fix from $2,300 2022-04-11
Android CRITICAL 9.8
CVE-2022-26094

Null pointer dereference vulnerability in parser_auxC function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remo…

Mitigation only
Fix from $2,300 2022-04-11
Android CRITICAL 9.8
CVE-2022-26095

Null pointer dereference vulnerability in parser_colr function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remo…

Mitigation only
Fix from $2,300 2022-04-11
Android CRITICAL 9.8
CVE-2022-26096

Null pointer dereference vulnerability in parser_ispe function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remo…

Mitigation only
Fix from $2,300 2022-04-11
Android CRITICAL 9.8
CVE-2022-26097

Null pointer dereference vulnerability in parser_unknown_property function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds w…

Mitigation only
Fix from $2,300 2022-04-11
Android CRITICAL 9.8
CVE-2022-27567

Null pointer dereference vulnerability in parser_hvcC function of libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remo…

Mitigation only
Fix from $2,300 2022-04-11
Android CRITICAL 9.1
CVE-2022-26099

Null pointer dereference vulnerability in parser_infe function of libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds read by remot…

Mitigation only
Fix from $2,300 2022-04-11
Tensorflow MEDIUM 6.5
CVE-2022-23589

Tensorflow is an Open Source Machine Learning Framework. Under certain scenarios, Grappler component of TensorFlow can trigger a null pointer derefer…

Fix: after 2.6.2
Fix from $1,600 2022-02-04
Tensorflow MEDIUM 6.5
CVE-2022-23595

Tensorflow is an Open Source Machine Learning Framework. When building an XLA compilation cache, if default settings are used, TensorFlow triggers a …

Fix: after 2.6.2
Fix from $1,600 2022-02-04
Tensorflow MEDIUM 6.5
CVE-2022-23570

Tensorflow is an Open Source Machine Learning Framework. When decoding a tensor from protobuf, TensorFlow might do a null-dereference if attributes o…

Fix: after 2.6.2
Fix from $1,600 2022-02-04
Tensorflow MEDIUM 6.5
CVE-2022-23577

Tensorflow is an Open Source Machine Learning Framework. The implementation of `GetInitOp` is vulnerable to a crash caused by dereferencing a null po…

Fix: after 2.6.2
Fix from $1,600 2022-02-04