Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2021-25346 A possible arbitrary memory overwrite vulnerabilities in quram library version prior to SMR Jan-2021 Release 1 allow arbitrary code execution. Android Mitigation only Fix from $2,3002021-03-04 MEDIUM 5.5 CVE-2021-25344 Missing permission check in knox_custom service prior to SMR Mar-2021 Release 1 allows attackers to gain access to device's serial number without per… Android Mitigation only Fix from $1,6002021-03-04 MEDIUM 5.5 CVE-2021-25345 Graphic format mismatch while converting video format in hwcomposer prior to SMR Mar-2021 Release 1 results in kernel panic due to unsupported format. Android Mitigation only Fix from $1,6002021-03-04 MEDIUM 5.3 CVE-2021-25347 Hijacking vulnerability in Samsung Email application version prior to SMR Feb-2021 Release 1 allows attackers to intercept when the provider is execu… Android No fix yet Fix from $1,6002021-03-04 MEDIUM 5.5 CVE-2021-25334 Improper input check in wallpaper service in Samsung mobile devices prior to SMR Feb-2021 Release 1 allows untrusted application to cause permanent d… Android Mitigation only Fix from $1,6002021-03-04 MEDIUM 5.2 CVE-2021-25338 Improper memory access control in RKP in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows an attacker, given a compromised kernel, to wr… Android Mitigation only Fix from $1,6002021-03-04 MEDIUM 5.2 CVE-2021-25339 Improper address validation in HArx in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows an attacker, given a compromised kernel, to corr… Android Mitigation only Fix from $1,6002021-03-04 HIGH 7.5 CVE-2021-25330 Calling of non-existent provider in MobileWips application prior to SMR Feb-2021 Release 1 allows unauthorized actions including denial of service at… Android Mitigation only Fix from $1,9502021-03-02 MEDIUM 6.8 CVE-2021-27901 An issue was discovered on LG mobile devices with Android OS 11 software. They mishandle fingerprint recognition because local high beam mode (LHBM) … Android No fix yet Fix from $1,6002021-03-02 MEDIUM 6.7 CVE-2021-0402 In jpeg, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execu… Android Mitigation only Fix from $1,6002021-02-26 MEDIUM 6.7 CVE-2021-0405 In performance driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with S… Android Mitigation only Fix from $1,6002021-02-26 MEDIUM 6.7 CVE-2021-0406 In cameraisp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System exe… Android Mitigation only Fix from $1,6002021-02-26 MEDIUM 6.4 CVE-2021-0366 In vpu, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privile… Android Mitigation only Fix from $1,6002021-02-26 MEDIUM 6.4 CVE-2021-0367 In vpu, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privile… Android Mitigation only Fix from $1,6002021-02-26 MEDIUM 6.4 CVE-2021-0401 In vow, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privile… Android Mitigation only Fix from $1,6002021-02-26 CRITICAL 9.6 CVE-2021-21150 Use after free in Downloads in Google Chrome on Windows prior to 88.0.4324.182 allowed a remote attacker who had compromised the renderer process to … Chrome 88.0.4324.182+ Fix from $2,3002021-02-22 CRITICAL 9.6 CVE-2021-21151 Use after free in Payments in Google Chrome prior to 88.0.4324.182 allowed a remote attacker to potentially perform a sandbox escape via a crafted HT… Chrome 88.0.4324.182+ Fix from $2,3002021-02-22 CRITICAL 9.6 CVE-2021-21154 Heap buffer overflow in Tab Strip in Google Chrome prior to 88.0.4324.182 allowed a remote attacker who had compromised the renderer process to poten… Chrome 88.0.4324.182+ Fix from $2,3002021-02-22 CRITICAL 9.6 CVE-2021-21155 Heap buffer overflow in Tab Strip in Google Chrome on Windows prior to 88.0.4324.182 allowed a remote attacker who had compromised the renderer proce… Chrome 88.0.4324.182+ Fix from $2,3002021-02-22 HIGH 8.8 CVE-2021-21149 Stack buffer overflow in Data Transfer in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to perform out of bounds memory acc… Chrome 88.0.4324.182+ Fix from $1,9502021-02-22 HIGH 8.8 CVE-2021-21152 Heap buffer overflow in Media in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially exploit heap corruption via a… Chrome 88.0.4324.182+ Fix from $1,9502021-02-22 HIGH 8.8 CVE-2021-21153 Stack buffer overflow in GPU Process in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially perform out of bounds … Chrome 88.0.4324.182+ Fix from $1,9502021-02-22 HIGH 8.8 CVE-2021-21156 Heap buffer overflow in V8 in Google Chrome prior to 88.0.4324.182 allowed a remote attacker to potentially exploit heap corruption via a crafted scr… Chrome 88.0.4324.182+ Fix from $1,9502021-02-22 MEDIUM 6.1 CVE-2021-3189 The slashify package 1.0.0 for Node.js allows open-redirect attacks, as demonstrated by a localhost:3000///example.com/ substring. Slashify No fix yet Fix from $1,6002021-02-19 HIGH 7.5 CVE-2021-22553 Any git operation is passed through Jetty and a session is created. No expiry is set for the session and Jetty does not automatically dispose of the … Gerrit 2.15.22 / 2.16.26+ Fix from $1,9502021-02-17 HIGH 7.5 CVE-2021-0341 In verifyHostName of OkHostnameVerifier.java, there is a possible way to accept a certificate for the wrong domain due to improperly used crypto. Thi… Android Patch available Fix from $1,9502021-02-10 HIGH 8.8 CVE-2021-0340 In parseNextBox of IsoInterface.java, there is a possible leak of unredacted location information due to improper input validation. This could lead t… Android Patch available Fix from $1,9502021-02-10 HIGH 7.8 CVE-2021-0336 In onReceive of BluetoothPermissionRequest.java, there is a possible permissions bypass due to a mutable PendingIntent. This could lead to local esca… Android Patch available Fix from $1,9502021-02-10 HIGH 7.8 CVE-2021-0337 In moveInMediaStore of FileSystemProvider.java, there is a possible file exposure due to stale metadata. This could lead to local escalation of privi… Android Patch available Fix from $1,9502021-02-10 HIGH 7.8 CVE-2021-0339 In loadAnimation of WindowContainer.java, there is a possible way to keep displaying a malicious app while a target app is brought to the foreground.… Android Patch available Fix from $1,9502021-02-10