Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Chrome MEDIUM 6.5
CVE-2018-18351

Lack of proper validation of ancestor frames site when sending lax cookies in Navigation in Google Chrome prior to 71.0.3578.80 allowed a remote atta…

Fix: 71.0.3578.80+
Fix from $1,600 2018-12-11
Chrome MEDIUM 6.5
CVE-2018-18352

Service works could inappropriately gain access to cross origin audio in Media in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to by…

Fix: 71.0.3578.80+
Fix from $1,600 2018-12-11
Chrome MEDIUM 6.5
CVE-2018-18353

Failure to dismiss http auth dialogs on navigation in Network Authentication in Google Chrome on Android prior to 71.0.3578.80 allowed a remote attac…

Fix: 71.0.3578.80+
Fix from $1,600 2018-12-11
Chrome HIGH 8.8
CVE-2018-17480 KEVEPSS 36%

Execution of user supplied Javascript during array deserialization leading to an out of bounds write in V8 in Google Chrome prior to 71.0.3578.80 all…

Fix: 71.0.3578.80+
Fix from $1,950 2018-12-11
Chrome HIGH 8.8
CVE-2018-17481

Incorrect object lifecycle handling in PDFium in Google Chrome prior to 71.0.3578.98 allowed a remote attacker to potentially exploit heap corruption…

Fix: 71.0.3578.98+
Fix from $1,950 2018-12-11
Chrome HIGH 8.8
CVE-2018-18335

Heap buffer overflow in Skia in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 71.0.3578.80+
Fix from $1,950 2018-12-11
Chrome HIGH 8.8
CVE-2018-18336

Incorrect object lifecycle in PDFium in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 71.0.3578.80+
Fix from $1,950 2018-12-11
Chrome HIGH 8.8
CVE-2018-18337

Incorrect handling of stylesheets leading to a use after free in Blink in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to potentiall…

Fix: 71.0.3578.80+
Fix from $1,950 2018-12-11
Chrome HIGH 8.8
CVE-2018-18338

Incorrect, thread-unsafe use of SkImage in Canvas in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to potentially exploit heap corrup…

Fix: 71.0.3578.80+
Fix from $1,950 2018-12-11
Chrome HIGH 8.8
CVE-2018-18339

Incorrect object lifecycle in WebAudio in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to potentially exploit heap corruption via a …

Fix: 71.0.3578.80+
Fix from $1,950 2018-12-11
Android CRITICAL 9.8
CVE-2018-9578

In ixheaacd_adts_crc_start_reg of ixheaacd_adts_crc_check.c, there is a possible out of bounds write due to a missing bounds check. This could lead t…

Mitigation only
Fix from $2,300 2018-12-07
Android HIGH 8.8
CVE-2018-9569

In impd_init_drc_decode_post_config of impd_drc_gain_decoder.c there is a possible out-of-bound write due to incorrect bounds check. This could lead …

Mitigation only
Fix from $1,950 2018-12-07
Android HIGH 8.8
CVE-2018-9571

In impd_parse_loud_eq_instructions of impd_drc_dynamic_payload.c there is a possible out-of-bound write due to missing bounds check. This could lead …

Mitigation only
Fix from $1,950 2018-12-07
Android HIGH 8.8
CVE-2018-9572

In impd_drc_parse_coeff of impd_drc_static_payload.c there is a possible out of bounds write due to missing bounds check. This could lead to remote c…

Mitigation only
Fix from $1,950 2018-12-07
Android HIGH 7.8
CVE-2018-9570

In impd_parse_drc_ext_v1 of impd_drc_dynamic_payload.c there is a possible out-of-bound write due to missing bounds check. This could lead to remote …

Mitigation only
Fix from $1,950 2018-12-07
Android HIGH 7.8
CVE-2018-9573

In impd_parse_filt_block of impd_drc_dynamic_payload.c there is a possible out of bounds write due to missing bounds check. This could lead to remote…

Mitigation only
Fix from $1,950 2018-12-07
Android HIGH 7.8
CVE-2018-9574

In impd_parse_split_drc_characteristic of impd_drc_static_payload.c there is a possible out of bounds write due to missing bounds check. This could l…

Mitigation only
Fix from $1,950 2018-12-07
Android HIGH 7.8
CVE-2018-9575

In impd_parse_dwnmix_instructions of impd_drc_static_payload.c there is a possible out of bounds write due to missing bounds check. This could lead t…

Mitigation only
Fix from $1,950 2018-12-07
Android HIGH 7.8
CVE-2018-9576

In impd_parse_parametric_drc_instructions of impd_drc_static_payload.c there is a possible out of bounds write due to missing bounds check. This coul…

Mitigation only
Fix from $1,950 2018-12-07
Android HIGH 7.8
CVE-2018-9577

In impd_parametric_drc_parse_gain_set_params of impd_drc_static_payload.c there is a possible out of bounds write due to missing bounds check. This c…

Mitigation only
Fix from $1,950 2018-12-07
Android MEDIUM 6.7
CVE-2018-9517

In pppol2tp_connect, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execut…

Patch available
Fix from $1,600 2018-12-07
Android MEDIUM 6.4
CVE-2018-9519

In easelcomm_hw_build_scatterlist, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege …

Mitigation only
Fix from $1,600 2018-12-07
Android CRITICAL 9.8
CVE-2018-11905

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Possible buffer overflow in WLAN function …

Patch available
Fix from $2,300 2018-12-07
Android HIGH 7.8
CVE-2017-14888

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Userspace can pass IEs to the host driver …

Patch available
Fix from $1,950 2018-12-07
Android MEDIUM 6.5
CVE-2017-15835

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, While processing the RIC Data Descriptor I…

Patch available
Fix from $1,600 2018-12-07
Android CRITICAL 9.8
CVE-2018-9556

In ParsePayloadHeader of payload_metadata.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalatio…

Patch available
Fix from $2,300 2018-12-06
Android HIGH 8.8
CVE-2018-9555

In l2c_lcc_proc_pdu of l2c_fcr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of pri…

Patch available
Fix from $1,950 2018-12-06
Android HIGH 7.8
CVE-2018-9547

In unflatten of GraphicBuffer.cpp, there is a possible bad fd close due to improper input validation. This could lead to local escalation of privileg…

Patch available
Fix from $1,950 2018-12-06
Android HIGH 7.8
CVE-2018-9549

In lppTransposer of lpp_tran.cpp there is a possible out of bounds write due to missing bounds check. This could lead to remote code execution with n…

Patch available
Fix from $1,950 2018-12-06
Android HIGH 7.8
CVE-2018-9550

In CAacDecoder_Init of aacdecoder.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code executio…

Patch available
Fix from $1,950 2018-12-06