Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2024-34734 In onForegroundServiceButtonClicked of FooterActionsViewModel.kt, there is a possible way to disable the active VPN app from the lockscreen due to an… Android Patch available Fix from $1,9502024-08-15 HIGH 7.8 CVE-2024-34736 In setupVideoEncoder of StagefrightRecorder.cpp, there is a possible asynchronous playback when B-frame support is enabled. This could lead to local … Android Patch available Fix from $1,9502024-08-15 HIGH 7.8 CVE-2024-34737 In ensureSetPipAspectRatioQuotaTracker of ActivityClientController.java, there is a possible way to generate unmovable and undeletable pip windows du… Android Patch available Fix from $1,9502024-08-15 HIGH 7.8 CVE-2024-34738 In multiple functions of AppOpsService.java, there is a possible way for unprivileged apps to read their own restrictRead app-op states due to a logi… Android Patch available Fix from $1,9502024-08-15 HIGH 7.8 CVE-2024-34739 In shouldRestrictOverlayActivities of UsbProfileGroupSettingsManager.java, there is a possible escape from SUW due to a logic error in the code. This… Android Patch available Fix from $1,9502024-08-15 HIGH 7.8 CVE-2024-34740 In attributeBytesBase64 and attributeBytesHex of BinaryXmlSerializer.java, there is a possible arbitrary XML injection due to an integer overflow. Th… Android Patch available Fix from $1,9502024-08-15 HIGH 7.8 CVE-2024-34741 In setForceHideNonSystemOverlayWindowIfNeeded of WindowState.java, there is a possible way for message content to be visible on the screensaver while… Android Patch available Fix from $1,9502024-08-15 HIGH 7.8 CVE-2024-34743 In setTransactionState of SurfaceFlinger.cpp, there is a possible way to perform tapjacking due to a logic error in the code. This could lead to loca… Android Patch available Fix from $1,9502024-08-15 HIGH 7.5 CVE-2024-34727 In sdpu_compare_uuid_with_attr of sdp_utils.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote infor… Android Mitigation only Fix from $1,9502024-08-15 HIGH 7.0 CVE-2024-34731 In multiple functions of TranscodingResourcePolicy.cpp, there is a possible memory corruption due to a race condition. This could lead to local escal… Android Patch available Fix from $1,9502024-08-15 MEDIUM 5.5 CVE-2024-34742 In shouldWrite of OwnersData.java, there is a possible edge case that prevents MDM policies from being persisted due to a logic error in the code. Th… Android Patch available Fix from $1,6002024-08-15 CRITICAL 9.8 CVE-2024-20083 In venc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System executio… Android Mitigation only Fix from $2,3002024-08-14 HIGH 8.8 CVE-2024-7534 Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted… Chrome 127.0.6533.99+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-7535 Inappropriate implementation in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a cra… Chrome 127.0.6533.99+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-7536 Use after free in WebAudio in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM… Chrome 127.0.6533.99+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-7550 Type Confusion in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… Chrome 127.0.6533.99+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-7532 Out of bounds memory access in ANGLE in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a c… Chrome 127.0.6533.99+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-7533 Use after free in Sharing in Google Chrome on iOS prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a craft… Chrome 127.0.6533.99+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-6991 Use after free in Dawn in Google Chrome prior to 127.0.6533.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa… Chrome 127.0.6533.72+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-6994 Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.72 allowed a remote attacker to potentially exploit heap corruption via a crafted… Chrome 127.0.6533.72+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-6997 Use after free in Tabs in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to po… Chrome 127.0.6533.72+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-6998 Use after free in User Education in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gest… Chrome 127.0.6533.72+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-7000 Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to pot… Chrome 127.0.6533.72+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-6988 Use after free in Downloads in Google Chrome on iOS prior to 127.0.6533.72 allowed a remote attacker to potentially exploit heap corruption via a cra… Chrome 127.0.6533.72+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-6989 Use after free in Loader in Google Chrome prior to 127.0.6533.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML … Chrome 127.0.6533.72+ Fix from $1,9502024-08-06 HIGH 8.8 CVE-2024-6990 Uninitialized Use in Dawn in Google Chrome on Android prior to 127.0.6533.88 allowed a remote attacker to potentially perform out of bounds memory ac… Chrome 127.0.6533.88+ Fix from $1,9502024-08-01 HIGH 8.8 CVE-2024-7255 Out of bounds read in WebTransport in Google Chrome prior to 127.0.6533.88 allowed a remote attacker to potentially perform out of bounds memory acce… Chrome 127.0.6533.88+ Fix from $1,9502024-08-01 HIGH 8.8 CVE-2024-7256 Insufficient data validation in Dawn in Google Chrome on Android prior to 127.0.6533.88 allowed a remote attacker to execute arbitrary code via a cra… Chrome 127.0.6533.88+ Fix from $1,9502024-08-01 HIGH 7.5 CVE-2023-33976 TensorFlow is an end-to-end open source platform for machine learning. `array_ops.upper_bound` causes a segfault when not given a rank 2 tensor. The … Tensorflow 2.13.0+ Fix from $1,9502024-07-30 HIGH 8.8 CVE-2024-3173 Insufficient data validation in Updater in Google Chrome prior to 120.0.6099.62 allowed a remote attacker to perform OS-level privilege escalation vi… Chrome 120.0.6099.62+ Fix from $1,9502024-07-16