Vulnerability index

Browse CVEs

1,761 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Android HIGH 7.5
CVE-2019-2008

In createEffect of AudioFlinger.cpp, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege …

Mitigation only
Fix from $1,950 2019-06-19
Android HIGH 8.8
CVE-2019-2093

In huff_dec_1D of nlc_dec.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with n…

Mitigation only
Fix from $1,950 2019-06-07
Android HIGH 7.8
CVE-2019-2094

In parseMPEGCCData of NuPlayerCCDecoder.cpp, there is a possible out of bounds write due to missing bounds checks. This could lead to remote code exe…

Mitigation only
Fix from $1,950 2019-06-07
Android HIGH 7.8
CVE-2019-2099

In nfa_rw_store_ndef_rx_buf of nfa_rw_act.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalati…

Patch available
Fix from $1,950 2019-06-07
Chrome HIGH 8.8
CVE-2019-5787

Use-after-garbage-collection in Blink in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap corruption via a c…

Fix: 73.0.3683.75+
Fix from $1,950 2019-05-23
Chrome HIGH 7.5
CVE-2019-5796

Data race in extensions guest view in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 73.0.3683.75+
Fix from $1,950 2019-05-23
Android CRITICAL 9.8
CVE-2019-2047

In UpdateLoadElement of ic.cc, there is a possible out-of-bounds write due to type confusion. This could lead to remote code execution in the proxy a…

Mitigation only
Fix from $2,300 2019-05-08
Android HIGH 7.8
CVE-2019-2049

In SendMediaUpdate and SendFolderUpdate of avrcp_service.cc, there is a possible memory corruption due to a use after free. This could lead to local …

Mitigation only
Fix from $1,950 2019-05-08
Android CRITICAL 9.8
CVE-2019-2045

In JSCallTyper of typer.cc, there is an out of bounds write due to an incorrect bounds check. This could lead to remote code execution in the proxy a…

Mitigation only
Fix from $2,300 2019-05-08
Android CRITICAL 9.8
CVE-2019-2046

In CalculateInstanceSizeForDerivedClass of objects.cc, there is possible memory corruption due to an integer overflow. This could lead to remote code…

Mitigation only
Fix from $2,300 2019-05-08
Android HIGH 8.8
CVE-2019-2044

In MakeMP>G4VideoCodecSpecificData of APacketSource.cpp, there is a possible out-of-bounds write due to an incorrect bounds check. This could lead to…

Mitigation only
Fix from $1,950 2019-05-08
Android HIGH 8.8
CVE-2019-2027

In floor0_inverse1 of floor0.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution wi…

Patch available
Fix from $1,950 2019-04-19
Android HIGH 8.8
CVE-2019-2029

In btm_proc_smp_cback of tm_ble.cc, there is a possible memory corruption due to a use after free. This could lead to remote code execution with no a…

Patch available
Fix from $1,950 2019-04-19
Android HIGH 7.8
CVE-2019-2031

In rw_t3t_act_handle_check_ndef_rsp of rw_t3t.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local esca…

Patch available
Fix from $1,950 2019-04-19
Android HIGH 7.8
CVE-2019-2032

In SetScanResponseData of ble_advertiser_hci_interface.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to l…

Patch available
Fix from $1,950 2019-04-19
Android HIGH 7.8
CVE-2019-2034

In rw_i93_sm_read_ndef of rw_i93.cc, there is a possible out-of-bounds write due to an integer overflow. This could lead to local escalation of privi…

Patch available
Fix from $1,950 2019-04-19
Android HIGH 7.8
CVE-2019-2035

In rw_i93_sm_update_ndef of rw_i93.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of p…

Patch available
Fix from $1,950 2019-04-19
Android HIGH 7.8
CVE-2019-2000

In several functions of binder.c, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with …

No fix yet
Fix from $1,950 2019-02-28
Android HIGH 8.8
CVE-2019-1986

In SkSwizzler::onSetSampleX of SkSwizzler.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escal…

Mitigation only
Fix from $1,950 2019-02-28
Android HIGH 8.8
CVE-2019-1988

In sample6 of SkSwizzler.cpp, there is a possible out of bounds write due to improper input validation. This could lead to remote code execution in s…

Mitigation only
Fix from $1,950 2019-02-28
Android HIGH 8.8
CVE-2019-1991

In btif_dm_data_copy of btif_core.cc, there is a possible out of bounds write due to a buffer overflow. This could lead to remote code execution with…

Mitigation only
Fix from $1,950 2019-02-28
Android HIGH 7.8
CVE-2019-1987

In onSetSampleX of SkSwizzler.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution wi…

Patch available
Fix from $1,950 2019-02-28
Android HIGH 7.8
CVE-2019-1993

In register_app of btif_hd.cc, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of privilege wit…

Mitigation only
Fix from $1,950 2019-02-28
Chrome HIGH 8.8
CVE-2019-5782EPSS 13%

Incorrect optimization assumptions in V8 in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to execute arbitrary code inside a sandbox …

Fix: 72.0.3626.81+
Fix from $1,950 2019-02-19
Chrome HIGH 8.8
CVE-2019-5772

Sharing of objects over calls into JavaScript runtime in PDFium in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially explo…

Fix: 72.0.3626.81+
Fix from $1,950 2019-02-19
Chrome HIGH 8.8
CVE-2019-5758

Incorrect object lifecycle management in Blink in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially exploit heap corruptio…

Fix: 72.0.3626.81+
Fix from $1,950 2019-02-19
Chrome HIGH 8.8
CVE-2019-5760

Insufficient checks of pointer validity in WebRTC in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially exploit heap corrup…

Fix: 72.0.3626.81+
Fix from $1,950 2019-02-19
Chrome HIGH 8.8
CVE-2019-5761

Incorrect object lifecycle management in SwiftShader in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially exploit heap cor…

Fix: 72.0.3626.81+
Fix from $1,950 2019-02-19
Chrome HIGH 8.8
CVE-2019-5764

Incorrect pointer management in WebRTC in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially exploit heap corruption via a …

Fix: 72.0.3626.81+
Fix from $1,950 2019-02-19
Android CRITICAL 9.8
CVE-2018-9583

In bta_ag_parse_cmer of bta_ag_cmd.cc in Android-7.0, Android-7.1.1, Android-7.1.2, Android-8.0, Android-8.1 and Android-9, there is a possible out-o…

Mitigation only
Fix from $2,300 2019-02-11