Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Tensorflow HIGH 7.1
CVE-2021-41205

TensorFlow is an open source platform for machine learning. In affected versions the shape inference functions for the `QuantizeAndDequantizeV*` oper…

Fix: 2.4.4 / 2.5.2+
Fix from $1,950 2021-11-05
Tensorflow HIGH 7.1
CVE-2021-41211

TensorFlow is an open source platform for machine learning. In affected versions the shape inference code for `QuantizeV2` can trigger a read outside…

Patch available
Fix from $1,950 2021-11-05
Tensorflow HIGH 7.1
CVE-2021-41212

TensorFlow is an open source platform for machine learning. In affected versions the shape inference code for `tf.ragged.cross` can trigger a read ou…

Fix: 2.4.4 / 2.5.2+
Fix from $1,950 2021-11-05
Tensorflow MEDIUM 5.5
CVE-2021-41204

TensorFlow is an open source platform for machine learning. In affected versions during TensorFlow's Grappler optimizer phase, constant folding might…

Fix: 2.4.4 / 2.5.2+
Fix from $1,600 2021-11-05
Tensorflow HIGH 7.8
CVE-2021-41201

TensorFlow is an open source platform for machine learning. In affeced versions during execution, `EinsumHelper::ParseEquation()` is supposed to set …

Fix: 2.4.4 / 2.5.2+
Fix from $1,950 2021-11-05
Tensorflow HIGH 7.1
CVE-2021-41210

TensorFlow is an open source platform for machine learning. In affected versions the shape inference functions for `SparseCountSparseOutput` can trig…

Fix: 2.4.4 / 2.5.2+
Fix from $1,950 2021-11-05
Tensorflow MEDIUM 5.5
CVE-2021-41200

TensorFlow is an open source platform for machine learning. In affected versions if `tf.summary.create_file_writer` is called with non-scalar argumen…

Fix: 2.4.4 / 2.5.2+
Fix from $1,600 2021-11-05
Tensorflow MEDIUM 5.5
CVE-2021-41195

TensorFlow is an open source platform for machine learning. In affected versions the implementation of `tf.math.segment_*` operations results in a `C…

Fix: 2.4.4 / 2.5.2+
Fix from $1,600 2021-11-05
Tensorflow MEDIUM 5.5
CVE-2021-41196

TensorFlow is an open source platform for machine learning. In affected versions the Keras pooling layers can trigger a segfault if the size of the p…

Fix: 2.4.4 / 2.5.2+
Fix from $1,600 2021-11-05
Tensorflow MEDIUM 5.5
CVE-2021-41197

TensorFlow is an open source platform for machine learning. In affected versions TensorFlow allows tensor to have a large number of dimensions and ea…

Fix: 2.4.4 / 2.5.2+
Fix from $1,600 2021-11-05
Tensorflow MEDIUM 5.5
CVE-2021-41198

TensorFlow is an open source platform for machine learning. In affected versions if `tf.tile` is called with a large input argument then the TensorFl…

Fix: 2.4.4 / 2.5.2+
Fix from $1,600 2021-11-05
Tensorflow MEDIUM 5.5
CVE-2021-41199

TensorFlow is an open source platform for machine learning. In affected versions if `tf.image.resize` is called with a large input argument then the …

Fix: 2.4.4 / 2.5.2+
Fix from $1,600 2021-11-05
Android MEDIUM 6.7
CVE-2021-25503

Improper input validation vulnerability in HDCP prior to SMR Nov-2021 Release 1 allows attackers to arbitrary code execution.

Mitigation only
Fix from $1,600 2021-11-05
Android MEDIUM 5.5
CVE-2021-25502

A vulnerability of storing sensitive information insecurely in Property Settings prior to SMR Nov-2021 Release 1 allows attackers to read ESN value w…

Mitigation only
Fix from $1,600 2021-11-05
Chrome CRITICAL 9.6
CVE-2020-6492

Use after free in ANGLE in Google Chrome prior to 83.0.4103.97 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML p…

Fix: 83.0.4103.97+
Fix from $2,300 2021-11-02
Chrome HIGH 8.8
CVE-2018-6122

Type confusion in WebAssembly in Google Chrome prior to 66.0.3359.139 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 66.0.3359.139+
Fix from $1,950 2021-11-02
Chrome MEDIUM 6.5
CVE-2018-6125

Insufficient policy enforcement in USB in Google Chrome on Windows prior to 67.0.3396.62 allowed a remote attacker to obtain potentially sensitive in…

Fix: 67.0.3396.62+
Fix from $1,600 2021-11-02
Angle MEDIUM 6.5
CVE-2020-16048

Out of bounds read in ANGLE allowed a remote attacker to obtain sensitive data via a crafted HTML page.

Mitigation only
Fix from $1,600 2021-11-02
Chrome CRITICAL 9.6
CVE-2021-37981

Heap buffer overflow in Skia in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who had compromised the renderer process to potentially…

Fix: 95.0.4638.54+
Fix from $2,300 2021-11-02
Chrome HIGH 8.8
CVE-2021-37982

Use after free in Incognito in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37983

Use after free in Dev Tools in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37984

Heap buffer overflow in PDFium in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37985

Use after free in V8 in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who had convinced a user to allow for connection to debugger to…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37986

Heap buffer overflow in Settings in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to engage with Dev Tools to potentially exploit hea…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37987

Use after free in Network APIs in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37988

Use after free in Profiles in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who convinced a user to engage in specific gestures to po…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37992

Out of bounds read in WebAudio in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37993

Use after free in PDF Accessibility in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 7.5
CVE-2021-37991

Race in V8 in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome MEDIUM 6.5
CVE-2021-37989

Inappropriate implementation in Blink in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to abuse content security policy via a crafted…

Fix: 95.0.4638.54+
Fix from $1,600 2021-11-02