Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android MEDIUM 5.5
CVE-2019-9464

In various functions of RecentLocationApps.java, DevicePolicyManagerService.java, and RecognitionService.java, there is an incorrect warning indicati…

Patch available
Fix from $1,600 2019-12-06
Android HIGH 8.8
CVE-2019-2225

When pairing with a Bluetooth device, it may be possible to pair a malicious device without any confirmation from the user, and that device may be ab…

Patch available
Fix from $1,950 2019-12-06
Android HIGH 7.8
CVE-2019-2221

In hasActivityInVisibleTask of WindowProcessController.java there’s a possible bypass of user interaction requirements due to incorrect handling of t…

Patch available
Fix from $1,950 2019-12-06
Android HIGH 7.8
CVE-2019-2222

n ihevcd_parse_slice_data of ihevcd_parse_slice.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote c…

Mitigation only
Fix from $1,950 2019-12-06
Android HIGH 7.8
CVE-2019-2223

In ihevcd_ref_list of ihevcd_ref_list.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execut…

Mitigation only
Fix from $1,950 2019-12-06
Android HIGH 7.5
CVE-2019-2230

In nfcManager_routeAid and nfcManager_unrouteAid of NativeNfcManager.cpp, there is possible memory reuse due to a use after free. This could lead to …

Patch available
Fix from $1,950 2019-12-06
Android HIGH 7.5
CVE-2019-2232

In handleRun of TextLine.java, there is a possible application crash due to improper input validation. This could lead to remote denial of service wh…

Patch available
Fix from $1,950 2019-12-06
Android MEDIUM 6.5
CVE-2019-2227

In DeepCopy of btif_av.cc, there is a possible out of bounds read due to improper casting. This could lead to remote information disclosure over Blue…

Patch available
Fix from $1,600 2019-12-06
Android MEDIUM 5.5
CVE-2019-2220

In checkOperation of AppOpsService.java, there is a possible bypass of user interaction requirements due to mishandling application suspend. This cou…

Mitigation only
Fix from $1,600 2019-12-06
Android MEDIUM 5.5
CVE-2019-2226

In device_class_to_int of device_class.cc, there is a possible out of bounds read due to improper casting. This could lead to local information discl…

Mitigation only
Fix from $1,600 2019-12-06
Android MEDIUM 5.5
CVE-2019-2228

In array_find of array.c, there is a possible out-of-bounds read due to an incorrect bounds check. This could lead to local information disclosure in…

Mitigation only
Fix from $1,600 2019-12-06
Android MEDIUM 5.5
CVE-2019-2229

In updateWidget of BaseWidgetProvider.java, there is a possible leak of user data due to a missing permission check. This could lead to local informa…

Patch available
Fix from $1,600 2019-12-06
Android HIGH 7.8
CVE-2019-2217

In setCpuVulkanInUse of GpuStats.cpp, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege w…

Mitigation only
Fix from $1,950 2019-12-06
Android HIGH 7.8
CVE-2019-2218

In createSessionInternal of PackageInstallerService.java, there is a possible improper permission grant due to a missing permission check. This could…

Mitigation only
Fix from $1,950 2019-12-06
Chrome MEDIUM 6.5
CVE-2019-5825 KEVEPSS 56%

Out of bounds write in JavaScript in Google Chrome prior to 73.0.3683.86 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 73.0.3683.86+
Fix from $1,600 2019-11-25
Chrome MEDIUM 6.5
CVE-2019-5826

Use after free in IndexedDB in Google Chrome prior to 73.0.3683.86 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 73.0.3683.86+
Fix from $1,600 2019-11-25
Chrome HIGH 8.8
CVE-2019-5871

Heap buffer overflow in Skia in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 77.0.3865.75+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-5874

Insufficient filtering in URI schemes in Google Chrome on Windows prior to 77.0.3865.75 allowed a remote attacker to bypass navigation restrictions v…

Fix: 77.0.3865.75+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-5876

Use after free in media in Google Chrome on Android prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 77.0.3865.75+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-5877

Out of bounds memory access in JavaScript in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via…

Fix: 77.0.3865.75+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-5878

Use after free in V8 in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 77.0.3865.75+
Fix from $1,950 2019-11-25
Chrome HIGH 8.1
CVE-2019-5881

Out of bounds read in SwiftShader in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to obtain potentially sensitive information from p…

Fix: 77.0.3865.75+
Fix from $1,950 2019-11-25
Chrome HIGH 7.4
CVE-2019-5880

Insufficient policy enforcement in Blink in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to leak cross-origin data via a crafted HTM…

Fix: 77.0.3865.75+
Fix from $1,950 2019-11-25
Chrome MEDIUM 6.5
CVE-2019-5872

Use after free in Mojo in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 77.0.3865.75+
Fix from $1,600 2019-11-25
Chrome MEDIUM 6.5
CVE-2019-5879

Insufficient policy enforcement in extensions in Google Chrome prior to 77.0.3865.75 allowed an attacker who convinced a user to install a malicious …

Fix: 77.0.3865.75+
Fix from $1,600 2019-11-25
Chrome CRITICAL 9.8
CVE-2019-5866

Out of bounds memory access in JavaScript in Google Chrome prior to 75.0.3770.142 allowed a remote attacker to potentially exploit heap corruption vi…

Fix: 75.0.3770.142+
Fix from $2,300 2019-11-25
Chrome CRITICAL 9.6
CVE-2019-5870

Use after free in media in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML p…

Fix: 77.0.3865.75+
Fix from $2,300 2019-11-25
Chrome HIGH 8.8
CVE-2019-5854

Integer overflow in PDFium in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF …

Fix: 76.0.3809.87+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-5856

Insufficient policy enforcement in storage in Google Chrome prior to 76.0.3809.87 allowed a remote attacker who had compromised the renderer process …

Fix: 76.0.3809.87+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-5858

Incorrect security UI in MacOS services integration in Google Chrome on OS X prior to 76.0.3809.87 allowed a local attacker to execute arbitrary code…

Fix: 76.0.3809.87+
Fix from $1,950 2019-11-25