Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android CRITICAL 9.8
CVE-2021-25346

A possible arbitrary memory overwrite vulnerabilities in quram library version prior to SMR Jan-2021 Release 1 allow arbitrary code execution.

Mitigation only
Fix from $2,300 2021-03-04
Android MEDIUM 5.5
CVE-2021-25344

Missing permission check in knox_custom service prior to SMR Mar-2021 Release 1 allows attackers to gain access to device's serial number without per…

Mitigation only
Fix from $1,600 2021-03-04
Android MEDIUM 5.5
CVE-2021-25345

Graphic format mismatch while converting video format in hwcomposer prior to SMR Mar-2021 Release 1 results in kernel panic due to unsupported format.

Mitigation only
Fix from $1,600 2021-03-04
Android MEDIUM 5.3
CVE-2021-25347

Hijacking vulnerability in Samsung Email application version prior to SMR Feb-2021 Release 1 allows attackers to intercept when the provider is execu…

No fix yet
Fix from $1,600 2021-03-04
Android MEDIUM 5.5
CVE-2021-25334

Improper input check in wallpaper service in Samsung mobile devices prior to SMR Feb-2021 Release 1 allows untrusted application to cause permanent d…

Mitigation only
Fix from $1,600 2021-03-04
Android MEDIUM 5.2
CVE-2021-25338

Improper memory access control in RKP in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows an attacker, given a compromised kernel, to wr…

Mitigation only
Fix from $1,600 2021-03-04
Android MEDIUM 5.2
CVE-2021-25339

Improper address validation in HArx in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows an attacker, given a compromised kernel, to corr…

Mitigation only
Fix from $1,600 2021-03-04
Android HIGH 7.5
CVE-2021-25330

Calling of non-existent provider in MobileWips application prior to SMR Feb-2021 Release 1 allows unauthorized actions including denial of service at…

Mitigation only
Fix from $1,950 2021-03-02
Android MEDIUM 6.8
CVE-2021-27901

An issue was discovered on LG mobile devices with Android OS 11 software. They mishandle fingerprint recognition because local high beam mode (LHBM) …

No fix yet
Fix from $1,600 2021-03-02
Android MEDIUM 6.7
CVE-2021-0402

In jpeg, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execu…

Mitigation only
Fix from $1,600 2021-02-26
Android MEDIUM 6.7
CVE-2021-0405

In performance driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with S…

Mitigation only
Fix from $1,600 2021-02-26
Android MEDIUM 6.7
CVE-2021-0406

In cameraisp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System exe…

Mitigation only
Fix from $1,600 2021-02-26
Android MEDIUM 6.4
CVE-2021-0366

In vpu, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privile…

Mitigation only
Fix from $1,600 2021-02-26
Android MEDIUM 6.4
CVE-2021-0367

In vpu, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privile…

Mitigation only
Fix from $1,600 2021-02-26
Android MEDIUM 6.4
CVE-2021-0401

In vow, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privile…

Mitigation only
Fix from $1,600 2021-02-26
Chrome CRITICAL 9.6
CVE-2021-21150

Use after free in Downloads in Google Chrome on Windows prior to 88.0.4324.182 allowed a remote attacker who had compromised the renderer process to …

Fix: 88.0.4324.182+
Fix from $2,300 2021-02-22
Chrome CRITICAL 9.6
CVE-2021-21151

Use after free in Payments in Google Chrome prior to 88.0.4324.182 allowed a remote attacker to potentially perform a sandbox escape via a crafted HT…

Fix: 88.0.4324.182+
Fix from $2,300 2021-02-22
Chrome CRITICAL 9.6
CVE-2021-21154

Heap buffer overflow in Tab Strip in Google Chrome prior to 88.0.4324.182 allowed a remote attacker who had compromised the renderer process to poten…

Fix: 88.0.4324.182+
Fix from $2,300 2021-02-22
Chrome CRITICAL 9.6
CVE-2021-21155

Heap buffer overflow in Tab Strip in Google Chrome on Windows prior to 88.0.4324.182 allowed a remote attacker who had compromised the renderer proce…

Fix: 88.0.4324.182+
Fix from $2,300 2021-02-22
Chrome HIGH 8.8
CVE-2021-21149

Stack buffer overflow in Data Transfer in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to perform out of bounds memory acc…

Fix: 88.0.4324.182+
Fix from $1,950 2021-02-22
Chrome HIGH 8.8
CVE-2021-21152

Heap buffer overflow in Media in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially exploit heap corruption via a…

Fix: 88.0.4324.182+
Fix from $1,950 2021-02-22
Chrome HIGH 8.8
CVE-2021-21153

Stack buffer overflow in GPU Process in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially perform out of bounds …

Fix: 88.0.4324.182+
Fix from $1,950 2021-02-22
Chrome HIGH 8.8
CVE-2021-21156

Heap buffer overflow in V8 in Google Chrome prior to 88.0.4324.182 allowed a remote attacker to potentially exploit heap corruption via a crafted scr…

Fix: 88.0.4324.182+
Fix from $1,950 2021-02-22
Slashify MEDIUM 6.1
CVE-2021-3189

The slashify package 1.0.0 for Node.js allows open-redirect attacks, as demonstrated by a localhost:3000///example.com/ substring.

No fix yet
Fix from $1,600 2021-02-19
Gerrit HIGH 7.5
CVE-2021-22553

Any git operation is passed through Jetty and a session is created. No expiry is set for the session and Jetty does not automatically dispose of the …

Fix: 2.15.22 / 2.16.26+
Fix from $1,950 2021-02-17
Android HIGH 7.5
CVE-2021-0341

In verifyHostName of OkHostnameVerifier.java, there is a possible way to accept a certificate for the wrong domain due to improperly used crypto. Thi…

Patch available
Fix from $1,950 2021-02-10
Android HIGH 8.8
CVE-2021-0340

In parseNextBox of IsoInterface.java, there is a possible leak of unredacted location information due to improper input validation. This could lead t…

Patch available
Fix from $1,950 2021-02-10
Android HIGH 7.8
CVE-2021-0336

In onReceive of BluetoothPermissionRequest.java, there is a possible permissions bypass due to a mutable PendingIntent. This could lead to local esca…

Patch available
Fix from $1,950 2021-02-10
Android HIGH 7.8
CVE-2021-0337

In moveInMediaStore of FileSystemProvider.java, there is a possible file exposure due to stale metadata. This could lead to local escalation of privi…

Patch available
Fix from $1,950 2021-02-10
Android HIGH 7.8
CVE-2021-0339

In loadAnimation of WindowContainer.java, there is a possible way to keep displaying a malicious app while a target app is brought to the foreground.…

Patch available
Fix from $1,950 2021-02-10