Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android HIGH 7.5
CVE-2018-9541

In avrc_pars_vendor_rsp of avcr_pars_ct.cc, there is a possible out-of-bounds read due to a missing bounds check. This could lead to remote informati…

Patch available
Fix from $1,950 2018-11-14
Android HIGH 7.5
CVE-2018-9542

In avrc_pars_vendor_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informati…

Patch available
Fix from $1,950 2018-11-14
Android MEDIUM 5.5
CVE-2018-9543

In trim_device of f2fs_format_utils.c, it is possible that the data partition is not wiped during a factory reset. This could lead to local informati…

Patch available
Fix from $1,600 2018-11-14
Android MEDIUM 5.5
CVE-2018-9544

In register_app of btif_hd.cc, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local information disclosure …

Patch available
Fix from $1,600 2018-11-14
Android HIGH 8.8
CVE-2018-9521

In parseMPEGCCData of NuPlayer2CCDecoder.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote cod…

Patch available
Fix from $1,950 2018-11-14
Android HIGH 8.8
CVE-2018-9528

In ixheaacd_over_lap_add1_armv8 of ixheaacd_overlap_add1.s there is a possible out of bounds write due to a missing bounds check. This could lead to …

Mitigation only
Fix from $1,950 2018-11-14
Android HIGH 8.8
CVE-2018-9529

In ixheaacd_individual_ch_stream of ixheaacd_channel.c there is a possible out of bounds write due to a missing bounds check. This could lead to remo…

Mitigation only
Fix from $1,950 2018-11-14
Android HIGH 8.8
CVE-2018-9530

In ixheaacd_tns_ar_filter_dec of ixheaacd_aac_tns.c there is a possible out of bounds write due to a missing bounds check. This could lead to remote …

Mitigation only
Fix from $1,950 2018-11-14
Android HIGH 8.8
CVE-2018-9532

In ixheaacd_extract_frame_info_ld of ixheaacd_env_extr.c there is a possible out of bounds write due to a missing bounds check. This could lead to re…

Mitigation only
Fix from $1,950 2018-11-14
Android HIGH 8.8
CVE-2018-9533

In ixheaacd_dec_data_init of ixheaacd_create.c there is a possible out of write read due to a missing bounds check. This could lead to remote code ex…

Mitigation only
Fix from $1,950 2018-11-14
Android HIGH 8.8
CVE-2018-9534

In ixheaacd_mps_getstridemap of ixheaacd_mps_parse.c there is a possible out of bounds write due to a missing bounds check. This could lead to remote…

Mitigation only
Fix from $1,950 2018-11-14
Android HIGH 8.8
CVE-2018-9535

In ixheaacd_reset_acelp_data_fix of ixheaacd_lpc.c there is a possible out of bounds write due to a missing bounds check. This could lead to remote c…

Mitigation only
Fix from $1,950 2018-11-14
Android HIGH 8.8
CVE-2018-9537

In CAacDecoder_DecodeFrame of aacdecode.cpp, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote code ex…

Patch available
Fix from $1,950 2018-11-14
Android HIGH 7.8
CVE-2018-9522

In the serialization functions of StatsLogEventWrapper.java, there is a possible out-of-bounds write due to unnecessary functionality which may be ab…

Patch available
Fix from $1,950 2018-11-14
Android HIGH 7.8
CVE-2018-9523

In Parcel.writeMapInternal of Parcel.java, there is a possible parcel serialization/deserialization mismatch due to improper input validation. This c…

Patch available
Fix from $1,950 2018-11-14
Android HIGH 7.8
CVE-2018-9524

In functionality implemented in System UI, there are insufficient protections implemented around overlay windows. This could lead to local escalation…

Patch available
Fix from $1,950 2018-11-14
Android HIGH 7.8
CVE-2018-9525

In the AndroidManifest.xml file defining the SliceBroadcastReceiver handler for com.android.settings.slice.action.WIFI_CHANGED, there is a possible p…

Patch available
Fix from $1,950 2018-11-14
Android HIGH 7.8
CVE-2018-9527

In vorbis_book_decodev_set of codebook.c there is a possible out of bounds write due to missing bounds check. This could lead to remote code executio…

Patch available
Fix from $1,950 2018-11-14
Android HIGH 7.8
CVE-2018-9531

In AudioSpecificConfig_Parse of tpdec_asc.cpp, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote code …

Mitigation only
Fix from $1,950 2018-11-14
Android HIGH 7.8
CVE-2018-9536

In numerous functions of libFDK, there are possible out of bounds writes due to incorrect bounds checks. This could lead to remote code execution wit…

Mitigation only
Fix from $1,950 2018-11-14
Android HIGH 7.5
CVE-2018-9526

In device configuration data, there is an improperly configured setting. This could lead to remote disclosure of device location. User interaction is…

Patch available
Fix from $1,950 2018-11-14
Android HIGH 7.5
CVE-2018-9540

In avrc_ctrl_pars_vendor_rsp of avrc_pars_ct.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote infor…

Patch available
Fix from $1,950 2018-11-14
Android HIGH 7.0
CVE-2018-9539

In the ClearKey CAS descrambler, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no…

Patch available
Fix from $1,950 2018-11-14
Android MEDIUM 6.5
CVE-2018-9347

In function SMF_ParseMetaEvent of file eas_smf.c there is incorrect input validation causing an infinite loop. This could lead to a remote temporary …

Patch available
Fix from $1,600 2018-11-14
Android MEDIUM 5.5
CVE-2018-9457

In onCheckedChanged of BluetoothPairingController.java, there is a possible way to retrieve contact information due to a permissions bypass. This cou…

Patch available
Fix from $1,600 2018-11-14
Chrome HIGH 8.8
CVE-2018-6083

Failure to disallow PWA installation from CSP sandboxed pages in AppManifest in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to acc…

Fix: 65.0.3325.146+
Fix from $1,950 2018-11-14
Chrome MEDIUM 6.1
CVE-2018-6081

XSS vulnerabilities in Interstitials in Google Chrome prior to 65.0.3325.146 allowed an attacker who convinced a user to install a malicious extensio…

Fix: 65.0.3325.146+
Fix from $1,600 2018-11-14
Chrome HIGH 8.8
CVE-2018-6060

Use after free in WebAudio in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 65.0.3325.146+
Fix from $1,950 2018-11-14
Chrome HIGH 8.8
CVE-2018-6062

Heap overflow write in Skia in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to perform an out of bounds memory write via a crafted …

Fix: 65.0.3325.146+
Fix from $1,950 2018-11-14
Chrome HIGH 8.8
CVE-2018-6063

Incorrect use of mojo::WrapSharedMemoryHandle in Mojo in Google Chrome prior to 65.0.3325.146 allowed a remote attacker who had compromised the rende…

Fix: 65.0.3325.146+
Fix from $1,950 2018-11-14