Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Tensorflow HIGH 7.5
CVE-2022-35941

TensorFlow is an open source platform for machine learning. The `AvgPoolOp` function takes an argument `ksize` that must be positive but is not check…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-35952

TensorFlow is an open source platform for machine learning. The `UnbatchGradOp` function takes an argument `id` that is assumed to be a scalar. A non…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-35959

TensorFlow is an open source platform for machine learning. The implementation of `AvgPool3DGradOp` does not fully validate the input `orig_input_sha…

Fix: 2.7.2+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-35960

TensorFlow is an open source platform for machine learning. In `core/kernels/list_kernels.cc's TensorListReserve`, `num_elements` is assumed to be a …

Fix: 2.7.2+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-35963

TensorFlow is an open source platform for machine learning. The implementation of `FractionalAvgPoolGrad` does not fully validate the input `orig_inp…

Fix: 2.7.2+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-35934

TensorFlow is an open source platform for machine learning. The implementation of tf.reshape op in TensorFlow is vulnerable to a denial of service vi…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Android HIGH 7.8
CVE-2022-20364

In sysmmu_unmap of TBD, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …

Mitigation only
Fix from $1,950 2022-09-14
Android MEDIUM 6.7
CVE-2022-20231

In smc_intc_request_fiq of arm_gic.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation o…

Mitigation only
Fix from $1,600 2022-09-14
Android CRITICAL 9.8
CVE-2022-20385

a function called 'nla_parse', do not check the len of para, it will check nla_type (which can be controlled by userspace) with 'maxtype' (in this ca…

Mitigation only
Fix from $2,300 2022-09-13
Android CRITICAL 9.8
CVE-2022-20386

Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227328

No fix yet
Fix from $2,300 2022-09-13
Android CRITICAL 9.8
CVE-2022-20387

Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227324

No fix yet
Fix from $2,300 2022-09-13
Android CRITICAL 9.8
CVE-2022-20388

Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227323

No fix yet
Fix from $2,300 2022-09-13
Android CRITICAL 9.8
CVE-2022-20389

Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257004

No fix yet
Fix from $2,300 2022-09-13
Android CRITICAL 9.8
CVE-2022-20390

Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257002

No fix yet
Fix from $2,300 2022-09-13
Android CRITICAL 9.8
CVE-2022-20391

Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257000

No fix yet
Fix from $2,300 2022-09-13
Android HIGH 7.8
CVE-2021-0943

In MMU_MapPages of TBD, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege wi…

Mitigation only
Fix from $1,950 2022-09-13
Android HIGH 7.8
CVE-2022-20392

In declareDuplicatePermission of ParsedPermissionUtils.java, there is a possible way to obtain a dangerous permission without user consent due to imp…

Patch available
Fix from $1,950 2022-09-13
Android HIGH 7.8
CVE-2022-20395

In checkAccess of MediaProvider.java, there is a possible file deletion due to a path traversal error. This could lead to local escalation of privile…

Mitigation only
Fix from $1,950 2022-09-13
Android HIGH 7.8
CVE-2022-20398

In addOrUpdateNetwork of WifiServiceImpl.java, there is a possible way for a guest user to configure Wi-Fi due to a permissions bypass. This could le…

Patch available
Fix from $1,950 2022-09-13
Android MEDIUM 5.5
CVE-2022-20393

In extract3GPPGlobalDescriptions of TextDescriptions.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to local…

Patch available
Fix from $1,600 2022-09-13
Android MEDIUM 5.5
CVE-2022-20396

In SettingsActivity.java, there is a possible way to make a device discoverable over Bluetooth, without permission or user interaction, due to a perm…

Patch available
Fix from $1,600 2022-09-13
Android MEDIUM 5.5
CVE-2022-20399

In the SEPolicy configuration of system apps, there is a possible access to the 'ip' utility due to an insecure default value. This could lead to loc…

Patch available
Fix from $1,600 2022-09-13
Android CRITICAL 9.8
CVE-2021-0942

The path in this case is a little bit convoluted. The end result is that via an ioctl an untrusted app can control the ui32PageIndex offset in the ex…

Mitigation only
Fix from $2,300 2022-09-13
Android HIGH 7.8
CVE-2021-0871

In PVRSRVBridgePMRPDumpSymbolicAddr of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow ou…

Mitigation only
Fix from $1,950 2022-09-13
Android HIGH 7.0
CVE-2021-0697

In PVRSRVRGXSubmitTransferKM of rgxtransfer.c, there is a possible user after free due to a race condition. This could lead to local escalation of pr…

Mitigation only
Fix from $1,950 2022-09-13
Android HIGH 7.8
CVE-2022-39119

In network service, there is a missing permission check. This could lead to local escalation of privilege with no additional execution privileges nee…

Mitigation only
Fix from $1,950 2022-09-09
Android HIGH 7.8
CVE-2022-36858

A heap-based overflow vulnerability in GetCorrectDbLanguageTypeEsPKc() function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-…

Mitigation only
Fix from $1,950 2022-09-09
Android HIGH 7.8
CVE-2022-36860

A heap-based overflow vulnerability in LoadEnvironment function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Release 1 a…

Mitigation only
Fix from $1,950 2022-09-09
Android HIGH 7.8
CVE-2022-36862

A heap-based overflow vulnerability in HWR::EngineCJK::Impl::Construct() in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Re…

Mitigation only
Fix from $1,950 2022-09-09
Android HIGH 7.8
CVE-2022-36863

A heap-based overflow vulnerability in GetCorrectDbLanguageTypeEsPKc function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-20…

Mitigation only
Fix from $1,950 2022-09-09