Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2018-9507 In bta_av_proc_meta_cmd of bta_av_act.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote informat… Android Patch available Fix from $1,6002018-10-02 MEDIUM 6.5 CVE-2018-9508 In smp_process_keypress_notification of smp_act.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remot… Android Patch available Fix from $1,6002018-10-02 MEDIUM 6.5 CVE-2018-9505 In mca_ccb_hdl_req of mca_cact.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclo… Android Patch available Fix from $1,6002018-10-02 MEDIUM 6.5 CVE-2018-9506 In avrc_msg_cback of avrc_api.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to remote information disclosu… Android Patch available Fix from $1,6002018-10-02 HIGH 8.8 CVE-2018-9504 In sdp_copy_raw_data of sdp_discovery.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code ex… Android Patch available Fix from $1,9502018-10-02 HIGH 7.5 CVE-2018-9503 In rfc_process_mx_message of rfc_ts_frames.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote inform… Android Patch available Fix from $1,9502018-10-02 MEDIUM 6.5 CVE-2018-9502 In rfc_process_mx_message of rfc_ts_frames.cc, there is a possible out-of-bounds read due to a missing bounds check. This could lead to remote inform… Android Patch available Fix from $1,6002018-10-02 HIGH 7.8 CVE-2018-9501 In the SetupWizard, there is a possible Factory Reset Protection bypass due to a permissions bypass. This could lead to local escalation of privilege… Android Patch available Fix from $1,9502018-10-02 MEDIUM 5.5 CVE-2018-9499 In readVector of iCrypto.cpp, there is a possible invalid read due to uninitialized data. This could lead to local information disclosure from the DR… Android Patch available Fix from $1,6002018-10-02 HIGH 7.8 CVE-2018-9497 In impeg2_fmt_conv_yuv420p_to_yuv420sp_uv_av8 of impeg2_format_conv.s there is a possible out of bounds write due to missing bounds check. This could… Android Patch available Fix from $1,9502018-10-02 HIGH 7.8 CVE-2018-9498 In SkSampler::Fill of SkSampler.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution wit… Android Patch available Fix from $1,9502018-10-02 HIGH 7.8 CVE-2018-9496 In ixheaacd_real_synth_fft_p3 of ixheaacd_esbr_fft.c there is a possible out of bounds write due to a missing bounds check. This could lead to remote… Android Patch available Fix from $1,9502018-10-02 MEDIUM 5.5 CVE-2018-9493 In the content provider of the download manager, there is a possible SQL injection due to improper input validation. This could lead to local informa… Android Patch available Fix from $1,6002018-10-02 HIGH 7.8 CVE-2018-9491 In AMediaCodecCryptoInfo_new of NdkMediaCodec.cpp, there is a possible out-of-bounds write due to an integer overflow. This could lead to remote code… Android Patch available Fix from $1,9502018-10-02 HIGH 7.8 CVE-2018-9492 In checkGrantUriPermissionLocked of ActivityManagerService.java, there is a possible permissions bypass. This could lead to local escalation of privi… Android Patch available Fix from $1,9502018-10-02 HIGH 7.8 CVE-2018-9490 In CollectValuesOrEntriesImpl of elements.cc, there is possible remote code execution due to type confusion. This could lead to remote escalation of … Android Patch available Fix from $1,9502018-10-02 CRITICAL 9.8 CVE-2018-9476 In avrc_pars_browsing_cmd of avrc_pars_tg.cc, there is a possible use-after-free due to improper locking. This could lead to remote escalation of pri… Android Patch available Fix from $2,3002018-10-02 HIGH 7.8 CVE-2018-9473 In ihevcd_parse_sei_payload of ihevcd_parse_headers.c, there is a possible out-of-bounds write due to an integer overflow. This could lead to remote … Android Patch available Fix from $1,9502018-10-02 MEDIUM 5.5 CVE-2018-9452 In getOffsetForHorizontal of Layout.java, there is a possible application hang due to a slow width calculation. This could lead to remote denial of s… Android Patch available Fix from $1,6002018-10-02 HIGH 8.8 CVE-2018-6054 Use after free in WebUI in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially exploit heap corruption via a crafted Chrome… Chrome 64.0.3282.119+ Fix from $1,9502018-09-25 HIGH 8.8 CVE-2018-6055 Insufficient policy enforcement in Catalog Service in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially run arbitrary cod… Chrome 64.0.3282.119+ Fix from $1,9502018-09-25 MEDIUM 6.5 CVE-2018-6119 Incorrect security UI in Omnibox in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via… Chrome 64.0.3282.119+ Fix from $1,6002018-09-25 MEDIUM 6.5 CVE-2018-6049 Incorrect security UI in permissions prompt in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to spoof the origin to which permission… Chrome 64.0.3282.119+ Fix from $1,6002018-09-25 MEDIUM 6.5 CVE-2018-6050 Incorrect security UI in Omnibox in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via… Chrome 64.0.3282.119+ Fix from $1,6002018-09-25 HIGH 8.8 CVE-2018-6043 Insufficient data validation in External Protocol Handler in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially execute ar… Chrome 64.0.3282.119+ Fix from $1,9502018-09-25 MEDIUM 6.5 CVE-2018-6045 Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file dat… Chrome 64.0.3282.119+ Fix from $1,6002018-09-25 MEDIUM 6.1 CVE-2018-6046 Insufficient data validation in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user cross-origin data… Chrome 64.0.3282.119+ Fix from $1,6002018-09-25 MEDIUM 6.5 CVE-2018-6036 Insufficient data validation in V8 in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user data via a crafted HTML… Chrome 64.0.3282.119+ Fix from $1,6002018-09-25 MEDIUM 6.5 CVE-2018-6037 Inappropriate implementation in autofill in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to obtain autofill data with insufficient … Chrome 64.0.3282.119+ Fix from $1,6002018-09-25 MEDIUM 6.5 CVE-2018-6038 Heap buffer overflow in WebGL in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to perform an out of bounds memory read via a crafted… Chrome 64.0.3282.119+ Fix from $1,6002018-09-25