Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android MEDIUM 6.7
CVE-2021-0361

In kisd, there is a possible out of bounds read due to improper input validation. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 6.7
CVE-2021-0362

In aee, there is a possible memory corruption due to a stack buffer overflow. This could lead to local escalation of privilege with System execution …

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 6.7
CVE-2021-0363

In mobile_log_d, there is a possible command injection due to a missing bounds check. This could lead to local escalation of privilege with System ex…

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 6.7
CVE-2021-0364

In mobile_log_d, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with System…

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 6.7
CVE-2021-0353

In kisd, there is a possible memory corruption due to a heap buffer overflow. This could lead to local escalation of privilege with System execution …

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 6.7
CVE-2021-0354

In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution pr…

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 6.7
CVE-2021-0355

In kisd, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution p…

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 6.7
CVE-2021-0356

In netdiag, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with System exec…

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 6.7
CVE-2021-0357

In netdiag, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execu…

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 6.7
CVE-2021-0358

In netdiag, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with System exec…

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 5.5
CVE-2020-27097

In checkGrantUriPermission of UriGrantsManagerService.java, there is a possible permissions bypass. This could lead to local information disclosure w…

Mitigation only
Fix from $1,600 2021-01-26
Android MEDIUM 5.5
CVE-2020-27098

In checkGrantUriPermission of UriGrantsManagerService.java, there is a possible way to access contacts due to a permissions bypass. This could lead t…

Mitigation only
Fix from $1,600 2021-01-26
Android HIGH 7.5
CVE-2020-0236

In A2DP_GetCodecType of a2dp_codec_config, there is a possible out-of-bounds read due to improper input validation. This could lead to remote informa…

Mitigation only
Fix from $1,950 2021-01-26
Secret Manager Provider For Secret Store Csi Driver MEDIUM 6.5
CVE-2020-8567

Kubernetes Secrets Store CSI Driver Vault Plugin prior to v0.0.6, Azure Plugin prior to v0.0.10, and GCP Plugin prior to v0.2.0 allow an attacker who…

Fix: 0.0.6 / 0.0.10+
Fix from $1,600 2021-01-21
Chrome CRITICAL 9.6
CVE-2020-16045

Use after Free in Payments in Google Chrome on Android prior to 87.0.4280.66 allowed a remote attacker who had compromised the renderer process to po…

Fix: 87.0.4280.66+
Fix from $2,300 2021-01-14
Chrome HIGH 8.8
CVE-2020-6572 KEVEPSS 11%

Use after free in Media in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to execute arbitrary code via a crafted HTML page.

Fix: 81.0.4044.92+
Fix from $1,950 2021-01-14
Chrome MEDIUM 6.1
CVE-2020-16046

Script injection in iOSWeb in Google Chrome on iOS prior to 84.0.4147.105 allowed a remote attacker to execute arbitrary code via a crafted HTML page.

Fix: 84.0.4147.105+
Fix from $1,600 2021-01-14
Android CRITICAL 9.8
CVE-2021-0316

In avrc_pars_vendor_cmd of avrc_pars_tg.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code exe…

Patch available
Fix from $2,300 2021-01-11
Android HIGH 7.8
CVE-2021-0306

In addAllPermissions of PermissionManagerService.java, there is a possible permissions bypass when upgrading major Android versions which allows an a…

Mitigation only
Fix from $1,950 2021-01-11
Android HIGH 7.8
CVE-2021-0307

In updatePermissionSourcePackage of PermissionManagerService.java, there is a possible automatic runtime permission grant due to a confused deputy. T…

Mitigation only
Fix from $1,950 2021-01-11
Android HIGH 7.8
CVE-2021-0310

In LazyServiceRegistrar of LazyServiceRegistrar.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalati…

Mitigation only
Fix from $1,950 2021-01-11
Android HIGH 7.8
CVE-2021-0317

In createOrUpdate of Permission.java and related code, there is possible permission escalation due to a logic error. This could lead to local escalat…

Patch available
Fix from $1,950 2021-01-11
Android HIGH 7.8
CVE-2021-0318

In appendEventsToCacheLocked of SensorEventConnection.cpp, there is a possible out of bounds write due to a use-after-free. This could lead to local …

Mitigation only
Fix from $1,950 2021-01-11
Android HIGH 7.5
CVE-2021-0313

In isWordBreakAfter of LayoutUtils.cpp, there is a possible way to slow or crash a TextView due to improper input validation. This could lead to remo…

Patch available
Fix from $1,950 2021-01-11
Android HIGH 7.3
CVE-2021-0315

In onCreate of GrantCredentialsPermissionActivity.java, there is a possible way to convince the user to grant an app access to an account due to a ta…

Patch available
Fix from $1,950 2021-01-11
Android HIGH 7.3
CVE-2021-0319

In checkCallerIsSystemOr of CompanionDeviceManagerService.java, there is a possible way to get a nearby Bluetooth device's MAC address without approp…

Patch available
Fix from $1,950 2021-01-11
Android MEDIUM 6.5
CVE-2021-0311

In ElementaryStreamQueue::dequeueAccessUnitH264() of ESQueue.cpp, there is a possible out of bounds write due to a missing bounds check. This could l…

Mitigation only
Fix from $1,600 2021-01-11
Android MEDIUM 6.5
CVE-2021-0312

In WAVSource::read of WAVExtractor.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote information dis…

Mitigation only
Fix from $1,600 2021-01-11
Android MEDIUM 5.5
CVE-2021-0304

In several functions of GlobalScreenshot.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local informa…

Mitigation only
Fix from $1,600 2021-01-11
Android MEDIUM 5.5
CVE-2021-0309

In onCreate of grantCredentialsPermissionActivity, there is a confused deputy. This could lead to local information disclosure and account access wit…

Mitigation only
Fix from $1,600 2021-01-11