Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android MEDIUM 5.5
CVE-2020-0448

In getPhoneAccountsForPackage of TelecomServiceImpl.java, there is a possible way to access a tracking identifier due to a missing permission check. …

Patch available
Fix from $1,600 2020-11-10
Android MEDIUM 5.5
CVE-2020-0453

In updateNotification of BeamTransferManager.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local inf…

Patch available
Fix from $1,600 2020-11-10
Android HIGH 7.8
CVE-2020-0409

In create of FileMap.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with n…

Patch available
Fix from $1,950 2020-11-10
Android HIGH 7.8
CVE-2020-0418

In getPermissionInfosForGroup of Utils.java, there is a logic error. This could lead to local escalation of privilege with User execution privileges …

Patch available
Fix from $1,950 2020-11-10
Android HIGH 7.8
CVE-2020-0438

In the AIBinder_Class constructor of ibinder.cpp, there is a possible arbitrary code execution due to uninitialized data. This could lead to local es…

Mitigation only
Fix from $1,950 2020-11-10
Android HIGH 7.8
CVE-2020-0439

In generatePackageInfo of PackageManagerService.java, there is a possible permissions bypass due to an incorrect permission check. This could lead to…

Patch available
Fix from $1,950 2020-11-10
Android MEDIUM 5.5
CVE-2020-0424

In send_vc of res_send.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure …

Patch available
Fix from $1,600 2020-11-10
Android MEDIUM 5.5
CVE-2020-0437

In CellBroadcastReceiver's intent handlers, there is a possible denial of service due to a missing permission check. This could lead to local denial …

Patch available
Fix from $1,600 2020-11-10
Android CRITICAL 9.8
CVE-2020-28340

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. Attackers can bypass Factory Reset Protection (…

Mitigation only
Fix from $2,300 2020-11-08
Android HIGH 7.8
CVE-2020-28341

An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos990 chipsets) software. The S3K250AF Secure Element CC EAL 5+ chip allows attac…

Mitigation only
Fix from $1,950 2020-11-08
Android HIGH 7.8
CVE-2020-28342

An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (China / India) software. The S Secure application allows attackers to bypa…

Mitigation only
Fix from $1,950 2020-11-08
Android HIGH 7.8
CVE-2020-28343

An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 980, 9820, and 9830 chipsets) software. The NPU driver allows attac…

Mitigation only
Fix from $1,950 2020-11-08
Android HIGH 7.5
CVE-2020-28344

An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software. System services may crash because of the lack of a NULL …

Mitigation only
Fix from $1,950 2020-11-08
Android HIGH 7.5
CVE-2020-28345

An issue was discovered on LG mobile devices with Android OS 10 software. The Wi-Fi subsystem may crash because of the lack of a NULL parameter check…

Mitigation only
Fix from $1,950 2020-11-08
Chrome MEDIUM 6.5
CVE-2020-6557

Inappropriate implementation in networking in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to perform domain spoofing via a crafted …

Fix: 86.0.4240.75+
Fix from $1,600 2020-11-03
Chrome CRITICAL 9.6
CVE-2020-16010 KEVEPSS 6%

Heap buffer overflow in UI in Google Chrome on Android prior to 86.0.4240.185 allowed a remote attacker who had compromised the renderer process to p…

Fix: 86.0.4240.185+
Fix from $2,300 2020-11-03
Chrome CRITICAL 9.6
CVE-2020-16011

Heap buffer overflow in UI in Google Chrome on Windows prior to 86.0.4240.183 allowed a remote attacker who had compromised the renderer process to p…

Fix: 86.0.4240.183+
Fix from $2,300 2020-11-03
Chrome HIGH 8.8
CVE-2020-16002

Use after free in PDFium in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF f…

Fix: 86.0.4240.111+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-16003

Use after free in printing in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 86.0.4240.111+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-16004

Use after free in user interface in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 86.0.4240.183+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-16005

Insufficient policy enforcement in ANGLE in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption via…

Fix: 86.0.4240.183+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-16006

Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 86.0.4240.183+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-16008

Stack buffer overflow in WebRTC in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit stack corruption via a craft…

Fix: 86.0.4240.183+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-16009 KEVEPSS 49%

Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 86.0.241 / 86.0.622.63+
Fix from $1,950 2020-11-03
Chrome HIGH 7.8
CVE-2020-16007

Insufficient data validation in installer in Google Chrome prior to 86.0.4240.183 allowed a local attacker to potentially elevate privilege via a cra…

Fix: 86.0.4240.183+
Fix from $1,950 2020-11-03
Chrome CRITICAL 9.8
CVE-2020-15993

Use after free in printing in Google Chrome prior to 86.0.4240.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 86.0.4240.99+
Fix from $2,300 2020-11-03
Chrome CRITICAL 9.6
CVE-2020-15999 KEVEPSS 44%

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 2.10.4 / 86.0.4240.111+
Fix from $2,300 2020-11-03
Chrome HIGH 8.8
CVE-2020-15987

Use after free in WebRTC in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted WebRTC…

Fix: 86.0.4240.75+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15990

Use after free in autofill in Google Chrome prior to 86.0.4240.75 allowed a remote attacker who had compromised the renderer process to potentially p…

Fix: 86.0.4240.75+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15991

Use after free in password manager in Google Chrome prior to 86.0.4240.75 allowed a remote attacker who had compromised the renderer process to poten…

Fix: 86.0.4240.75+
Fix from $1,950 2020-11-03