Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android HIGH 7.8
CVE-2018-9551

In CAacDecoder_Init of aacdecoder.cpp, there is a possible out-of-bound write due to a missing bounds check. This could lead to remote code execution…

Patch available
Fix from $1,950 2018-12-06
Android HIGH 7.8
CVE-2018-9553

In MasteringMetadata::Parse of mkvparser.cc there is a possible double free due to an insecure default value. This could lead to remote code executio…

Patch available
Fix from $1,950 2018-12-06
Android HIGH 7.8
CVE-2018-9557

In really_install_package of install.cpp, there is a possible free of arbitrary memory due to uninitialized data. This could lead to local escalation…

Mitigation only
Fix from $1,950 2018-12-06
Android HIGH 7.8
CVE-2018-9558

In rw_t2t_handle_tlv_detect of rw_t2t_ndef.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escala…

Mitigation only
Fix from $1,950 2018-12-06
Android HIGH 7.8
CVE-2018-9559

In persist_set_key and other functions of cryptfs.cpp, there is a possible out-of-bounds write due to an uncaught error. This could lead to local esc…

Mitigation only
Fix from $1,950 2018-12-06
Android HIGH 7.8
CVE-2018-9560

In HID_DevAddRecord of hidd_api.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of pri…

Mitigation only
Fix from $1,950 2018-12-06
Android HIGH 7.8
CVE-2018-9567

On Pixel devices there is a bug causing verified boot to show the same certificate fingerprint despite using different signing keys. This may lead to…

Mitigation only
Fix from $1,950 2018-12-06
Android HIGH 7.5
CVE-2018-9562

In bta_ag_do_disc of bta_ag_sdp.cc, there is a possible out-of-bound read due to an incorrect parameter size. This could lead to remote information d…

Mitigation only
Fix from $1,950 2018-12-06
Android HIGH 7.5
CVE-2018-9565

In readBytes of xltdecwbxml.c, there is a possible out of bounds read due to an integer overflow. This could lead to remote information disclosure wi…

Mitigation only
Fix from $1,950 2018-12-06
Android MEDIUM 5.7
CVE-2018-9566

In process_service_search_rsp of sdp_discovery.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote inf…

Mitigation only
Fix from $1,600 2018-12-06
Android MEDIUM 5.5
CVE-2018-9548

In multiple functions of ContentProvider.java, there is a possible permission bypass due to a missing URI validation. This could lead to local inform…

Patch available
Fix from $1,600 2018-12-06
Android MEDIUM 5.5
CVE-2018-9552

In ihevcd_sao_shift_ctb of ihevcd_sao.c there is a possible out of bounds write due to missing bounds check. This could lead to information disclosur…

Patch available
Fix from $1,600 2018-12-06
Android MEDIUM 5.5
CVE-2018-9554

In dumpExtractors of IMediaExtractor.cp, there is a possible disclosure of recently accessed media files due to a permissions bypass. This could lead…

Mitigation only
Fix from $1,600 2018-12-06
Android HIGH 7.8
CVE-2018-9538

In V4L2SliceVideoDecodeAccelerator::Dequeue of v4l2_slice_video_decode_accelerator.cc, there is a possible out of bounds read of a function pointer d…

Patch available
Fix from $1,950 2018-12-06
Chrome CRITICAL 9.6
CVE-2018-6152

The implementation of the Page.downloadBehavior backend unconditionally marked downloaded files as safe, regardless of file type in Google Chrome pri…

Fix: 66.0.3359.106+
Fix from $2,300 2018-12-04
Chrome HIGH 8.8
CVE-2018-6086

A double-eviction in the Incognito mode cache that lead to a user-after-free in Networking Disk Cache in Google Chrome prior to 66.0.3359.117 allowed…

Fix: 66.0.3359.117+
Fix from $1,950 2018-12-04
Chrome HIGH 8.8
CVE-2018-6087

A use-after-free in WebAssembly in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code inside a sandbox via a cr…

Fix: 66.0.3359.117+
Fix from $1,950 2018-12-04
Chrome HIGH 8.8
CVE-2018-6088

An iterator-invalidation bug in PDFium in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code inside a sandbox v…

Fix: 66.0.3359.117+
Fix from $1,950 2018-12-04
Chrome HIGH 8.8
CVE-2018-6090

An integer overflow that lead to a heap buffer-overflow in Skia in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrar…

Fix: 66.0.3359.117+
Fix from $1,950 2018-12-04
Chrome HIGH 8.8
CVE-2018-6092EPSS 9%

An integer overflow on 32-bit systems in WebAssembly in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code insi…

Fix: 66.0.3359.117+
Fix from $1,950 2018-12-04
Chrome HIGH 8.8
CVE-2018-6094

Inline metadata in GarbageCollection in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to potentially exploit heap corruption via a c…

Fix: 66.0.3359.117+
Fix from $1,950 2018-12-04
Chrome MEDIUM 6.5
CVE-2018-6089

A lack of CORS checks, after a Service Worker redirected to a cross-origin PDF, in Service Worker in Google Chrome prior to 66.0.3359.117 allowed a r…

Fix: 66.0.3359.117+
Fix from $1,600 2018-12-04
Chrome MEDIUM 6.5
CVE-2018-6115

Inappropriate setting of the SEE_MASK_FLAG_NO_UI flag in file downloads in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to potentia…

Fix: 66.0.3359.117+
Fix from $1,600 2018-12-04
Chrome MEDIUM 6.5
CVE-2018-6116

A nullptr dereference in WebAssembly in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to potentially perform out of bounds memory ac…

Fix: 66.0.3359.117+
Fix from $1,600 2018-12-04
Chrome HIGH 8.8
CVE-2018-6085

Re-entry of a destructor in Networking Disk Cache in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code via a c…

Fix: 66.0.3359.117+
Fix from $1,950 2018-12-04
Android HIGH 7.5
CVE-2018-15835

Android 1.0 through 9.0 has Insecure Permissions. The Android bug ID is 77286983.

Fix: after 9.0
Fix from $1,950 2018-11-30
Android HIGH 7.8
CVE-2018-11914

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device…

Patch available
Fix from $1,950 2018-11-27
Android HIGH 7.8
CVE-2018-11918

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, memory allocated is automatically released…

Patch available
Fix from $1,950 2018-11-27
Android HIGH 7.8
CVE-2018-11919

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a potential heap overflow and mem…

Patch available
Fix from $1,950 2018-11-27
Android HIGH 7.8
CVE-2018-11943

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing fastboot flash command, m…

Patch available
Fix from $1,950 2018-11-27