Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android MEDIUM 6.5
CVE-2018-9507

In bta_av_proc_meta_cmd of bta_av_act.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote informat…

Patch available
Fix from $1,600 2018-10-02
Android MEDIUM 6.5
CVE-2018-9508

In smp_process_keypress_notification of smp_act.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remot…

Patch available
Fix from $1,600 2018-10-02
Android MEDIUM 6.5
CVE-2018-9505

In mca_ccb_hdl_req of mca_cact.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclo…

Patch available
Fix from $1,600 2018-10-02
Android MEDIUM 6.5
CVE-2018-9506

In avrc_msg_cback of avrc_api.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to remote information disclosu…

Patch available
Fix from $1,600 2018-10-02
Android HIGH 8.8
CVE-2018-9504

In sdp_copy_raw_data of sdp_discovery.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code ex…

Patch available
Fix from $1,950 2018-10-02
Android HIGH 7.5
CVE-2018-9503

In rfc_process_mx_message of rfc_ts_frames.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote inform…

Patch available
Fix from $1,950 2018-10-02
Android MEDIUM 6.5
CVE-2018-9502

In rfc_process_mx_message of rfc_ts_frames.cc, there is a possible out-of-bounds read due to a missing bounds check. This could lead to remote inform…

Patch available
Fix from $1,600 2018-10-02
Android HIGH 7.8
CVE-2018-9501

In the SetupWizard, there is a possible Factory Reset Protection bypass due to a permissions bypass. This could lead to local escalation of privilege…

Patch available
Fix from $1,950 2018-10-02
Android MEDIUM 5.5
CVE-2018-9499

In readVector of iCrypto.cpp, there is a possible invalid read due to uninitialized data. This could lead to local information disclosure from the DR…

Patch available
Fix from $1,600 2018-10-02
Android HIGH 7.8
CVE-2018-9497

In impeg2_fmt_conv_yuv420p_to_yuv420sp_uv_av8 of impeg2_format_conv.s there is a possible out of bounds write due to missing bounds check. This could…

Patch available
Fix from $1,950 2018-10-02
Android HIGH 7.8
CVE-2018-9498

In SkSampler::Fill of SkSampler.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution wit…

Patch available
Fix from $1,950 2018-10-02
Android HIGH 7.8
CVE-2018-9496

In ixheaacd_real_synth_fft_p3 of ixheaacd_esbr_fft.c there is a possible out of bounds write due to a missing bounds check. This could lead to remote…

Patch available
Fix from $1,950 2018-10-02
Android MEDIUM 5.5
CVE-2018-9493

In the content provider of the download manager, there is a possible SQL injection due to improper input validation. This could lead to local informa…

Patch available
Fix from $1,600 2018-10-02
Android HIGH 7.8
CVE-2018-9491

In AMediaCodecCryptoInfo_new of NdkMediaCodec.cpp, there is a possible out-of-bounds write due to an integer overflow. This could lead to remote code…

Patch available
Fix from $1,950 2018-10-02
Android HIGH 7.8
CVE-2018-9492

In checkGrantUriPermissionLocked of ActivityManagerService.java, there is a possible permissions bypass. This could lead to local escalation of privi…

Patch available
Fix from $1,950 2018-10-02
Android HIGH 7.8
CVE-2018-9490

In CollectValuesOrEntriesImpl of elements.cc, there is possible remote code execution due to type confusion. This could lead to remote escalation of …

Patch available
Fix from $1,950 2018-10-02
Android CRITICAL 9.8
CVE-2018-9476

In avrc_pars_browsing_cmd of avrc_pars_tg.cc, there is a possible use-after-free due to improper locking. This could lead to remote escalation of pri…

Patch available
Fix from $2,300 2018-10-02
Android HIGH 7.8
CVE-2018-9473

In ihevcd_parse_sei_payload of ihevcd_parse_headers.c, there is a possible out-of-bounds write due to an integer overflow. This could lead to remote …

Patch available
Fix from $1,950 2018-10-02
Android MEDIUM 5.5
CVE-2018-9452

In getOffsetForHorizontal of Layout.java, there is a possible application hang due to a slow width calculation. This could lead to remote denial of s…

Patch available
Fix from $1,600 2018-10-02
Chrome HIGH 8.8
CVE-2018-6054

Use after free in WebUI in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially exploit heap corruption via a crafted Chrome…

Fix: 64.0.3282.119+
Fix from $1,950 2018-09-25
Chrome HIGH 8.8
CVE-2018-6055

Insufficient policy enforcement in Catalog Service in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially run arbitrary cod…

Fix: 64.0.3282.119+
Fix from $1,950 2018-09-25
Chrome MEDIUM 6.5
CVE-2018-6119

Incorrect security UI in Omnibox in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via…

Fix: 64.0.3282.119+
Fix from $1,600 2018-09-25
Chrome MEDIUM 6.5
CVE-2018-6049

Incorrect security UI in permissions prompt in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to spoof the origin to which permission…

Fix: 64.0.3282.119+
Fix from $1,600 2018-09-25
Chrome MEDIUM 6.5
CVE-2018-6050

Incorrect security UI in Omnibox in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via…

Fix: 64.0.3282.119+
Fix from $1,600 2018-09-25
Chrome HIGH 8.8
CVE-2018-6043

Insufficient data validation in External Protocol Handler in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially execute ar…

Fix: 64.0.3282.119+
Fix from $1,950 2018-09-25
Chrome MEDIUM 6.5
CVE-2018-6045

Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file dat…

Fix: 64.0.3282.119+
Fix from $1,600 2018-09-25
Chrome MEDIUM 6.1
CVE-2018-6046

Insufficient data validation in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user cross-origin data…

Fix: 64.0.3282.119+
Fix from $1,600 2018-09-25
Chrome MEDIUM 6.5
CVE-2018-6036

Insufficient data validation in V8 in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user data via a crafted HTML…

Fix: 64.0.3282.119+
Fix from $1,600 2018-09-25
Chrome MEDIUM 6.5
CVE-2018-6037

Inappropriate implementation in autofill in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to obtain autofill data with insufficient …

Fix: 64.0.3282.119+
Fix from $1,600 2018-09-25
Chrome MEDIUM 6.5
CVE-2018-6038

Heap buffer overflow in WebGL in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to perform an out of bounds memory read via a crafted…

Fix: 64.0.3282.119+
Fix from $1,600 2018-09-25