Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2022-35941 TensorFlow is an open source platform for machine learning. The `AvgPoolOp` function takes an argument `ksize` that must be positive but is not check… Tensorflow 2.7.2 / 2.8.1+ Fix from $1,9502022-09-16 HIGH 7.5 CVE-2022-35952 TensorFlow is an open source platform for machine learning. The `UnbatchGradOp` function takes an argument `id` that is assumed to be a scalar. A non… Tensorflow 2.7.2 / 2.8.1+ Fix from $1,9502022-09-16 HIGH 7.5 CVE-2022-35959 TensorFlow is an open source platform for machine learning. The implementation of `AvgPool3DGradOp` does not fully validate the input `orig_input_sha… Tensorflow 2.7.2+ Fix from $1,9502022-09-16 HIGH 7.5 CVE-2022-35960 TensorFlow is an open source platform for machine learning. In `core/kernels/list_kernels.cc's TensorListReserve`, `num_elements` is assumed to be a … Tensorflow 2.7.2+ Fix from $1,9502022-09-16 HIGH 7.5 CVE-2022-35963 TensorFlow is an open source platform for machine learning. The implementation of `FractionalAvgPoolGrad` does not fully validate the input `orig_inp… Tensorflow 2.7.2+ Fix from $1,9502022-09-16 HIGH 7.5 CVE-2022-35934 TensorFlow is an open source platform for machine learning. The implementation of tf.reshape op in TensorFlow is vulnerable to a denial of service vi… Tensorflow 2.7.2 / 2.8.1+ Fix from $1,9502022-09-16 HIGH 7.8 CVE-2022-20364 In sysmmu_unmap of TBD, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with … Android Mitigation only Fix from $1,9502022-09-14 MEDIUM 6.7 CVE-2022-20231 In smc_intc_request_fiq of arm_gic.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation o… Android Mitigation only Fix from $1,6002022-09-14 CRITICAL 9.8 CVE-2022-20385 a function called 'nla_parse', do not check the len of para, it will check nla_type (which can be controlled by userspace) with 'maxtype' (in this ca… Android Mitigation only Fix from $2,3002022-09-13 CRITICAL 9.8 CVE-2022-20386 Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227328 Android No fix yet Fix from $2,3002022-09-13 CRITICAL 9.8 CVE-2022-20387 Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227324 Android No fix yet Fix from $2,3002022-09-13 CRITICAL 9.8 CVE-2022-20388 Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227323 Android No fix yet Fix from $2,3002022-09-13 CRITICAL 9.8 CVE-2022-20389 Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257004 Android No fix yet Fix from $2,3002022-09-13 CRITICAL 9.8 CVE-2022-20390 Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257002 Android No fix yet Fix from $2,3002022-09-13 CRITICAL 9.8 CVE-2022-20391 Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257000 Android No fix yet Fix from $2,3002022-09-13 HIGH 7.8 CVE-2021-0943 In MMU_MapPages of TBD, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege wi… Android Mitigation only Fix from $1,9502022-09-13 HIGH 7.8 CVE-2022-20392 In declareDuplicatePermission of ParsedPermissionUtils.java, there is a possible way to obtain a dangerous permission without user consent due to imp… Android Patch available Fix from $1,9502022-09-13 HIGH 7.8 CVE-2022-20395 In checkAccess of MediaProvider.java, there is a possible file deletion due to a path traversal error. This could lead to local escalation of privile… Android Mitigation only Fix from $1,9502022-09-13 HIGH 7.8 CVE-2022-20398 In addOrUpdateNetwork of WifiServiceImpl.java, there is a possible way for a guest user to configure Wi-Fi due to a permissions bypass. This could le… Android Patch available Fix from $1,9502022-09-13 MEDIUM 5.5 CVE-2022-20393 In extract3GPPGlobalDescriptions of TextDescriptions.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to local… Android Patch available Fix from $1,6002022-09-13 MEDIUM 5.5 CVE-2022-20396 In SettingsActivity.java, there is a possible way to make a device discoverable over Bluetooth, without permission or user interaction, due to a perm… Android Patch available Fix from $1,6002022-09-13 MEDIUM 5.5 CVE-2022-20399 In the SEPolicy configuration of system apps, there is a possible access to the 'ip' utility due to an insecure default value. This could lead to loc… Android Patch available Fix from $1,6002022-09-13 CRITICAL 9.8 CVE-2021-0942 The path in this case is a little bit convoluted. The end result is that via an ioctl an untrusted app can control the ui32PageIndex offset in the ex… Android Mitigation only Fix from $2,3002022-09-13 HIGH 7.8 CVE-2021-0871 In PVRSRVBridgePMRPDumpSymbolicAddr of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow ou… Android Mitigation only Fix from $1,9502022-09-13 HIGH 7.0 CVE-2021-0697 In PVRSRVRGXSubmitTransferKM of rgxtransfer.c, there is a possible user after free due to a race condition. This could lead to local escalation of pr… Android Mitigation only Fix from $1,9502022-09-13 HIGH 7.8 CVE-2022-39119 In network service, there is a missing permission check. This could lead to local escalation of privilege with no additional execution privileges nee… Android Mitigation only Fix from $1,9502022-09-09 HIGH 7.8 CVE-2022-36858 A heap-based overflow vulnerability in GetCorrectDbLanguageTypeEsPKc() function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-… Android Mitigation only Fix from $1,9502022-09-09 HIGH 7.8 CVE-2022-36860 A heap-based overflow vulnerability in LoadEnvironment function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Release 1 a… Android Mitigation only Fix from $1,9502022-09-09 HIGH 7.8 CVE-2022-36862 A heap-based overflow vulnerability in HWR::EngineCJK::Impl::Construct() in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-2022 Re… Android Mitigation only Fix from $1,9502022-09-09 HIGH 7.8 CVE-2022-36863 A heap-based overflow vulnerability in GetCorrectDbLanguageTypeEsPKc function in libSDKRecognitionText.spensdk.samsung.so library prior to SMR Sep-20… Android Mitigation only Fix from $1,9502022-09-09