Search Results (13942 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-21732 1 Google 1 Tensorflow 2025-02-12 4.3 Medium
Tensorflow is an Open Source Machine Learning Framework. The implementation of `ThreadPoolHandle` can be used to trigger a denial of service attack by allocating too much memory. This is because the `num_threads` argument is only checked to not be negative, but there is no upper bound on its value. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.
CVE-2022-47465 2 Google, Unisoc 14 Android, S8000, Sc7731e and 11 more 2025-02-11 5.5 Medium
In vdsp service, there is a missing permission check. This could lead to local denial of service in vdsp service.
CVE-2025-0291 1 Google 1 Chrome 2025-02-11 8.3 High
Type Confusion in V8 in Google Chrome prior to 131.0.6778.264 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2024-12695 1 Google 1 Chrome 2025-02-11 8.8 High
Out of bounds write in V8 in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2024-12694 1 Google 1 Chrome 2025-02-11 8.8 High
Use after free in Compositing in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2024-12692 1 Google 1 Chrome 2025-02-11 8.8 High
Type Confusion in V8 in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2022-47468 2 Google, Unisoc 14 Android, S8000, Sc7731e and 11 more 2025-02-10 5.5 Medium
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
CVE-2022-47467 2 Google, Unisoc 14 Android, S8000, Sc7731e and 11 more 2025-02-10 5.5 Medium
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
CVE-2022-47466 2 Google, Unisoc 14 Android, S8000, Sc7731e and 11 more 2025-02-10 5.5 Medium
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
CVE-2022-47336 2 Google, Unisoc 14 Android, S8000, Sc7731e and 11 more 2025-02-10 5.5 Medium
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
CVE-2022-47335 2 Google, Unisoc 14 Android, S8000, Sc7731e and 11 more 2025-02-10 5.5 Medium
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
CVE-2022-47337 2 Google, Unisoc 14 Android, S8000, Sc7731e and 11 more 2025-02-10 5.5 Medium
In media service, there is a missing permission check. This could lead to local denial of service in media service.
CVE-2022-47464 2 Google, Unisoc 14 Android, S8000, Sc7731e and 11 more 2025-02-10 5.5 Medium
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
CVE-2022-47463 2 Google, Unisoc 14 Android, S8000, Sc7731e and 11 more 2025-02-10 5.5 Medium
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
CVE-2022-47362 2 Google, Unisoc 14 Android, S8000, Sc7731e and 11 more 2025-02-10 5.5 Medium
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
CVE-2022-47338 2 Google, Unisoc 14 Android, S8000, Sc7731e and 11 more 2025-02-10 7.1 High
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
CVE-2023-24513 5 Amazon, Arista, Equinix and 2 more 6 Aws Marketplace, Cloudeos, Dca-200-veos and 3 more 2025-02-07 6.5 Medium
On affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can lead to a potential denial of service attack by sending malformed packets to the switch. This causes a leak of packet buffers and if enough malformed packets are received, the switch may eventually stop forwarding traffic.
CVE-2021-0880 1 Google 1 Android 2025-02-06 7.8 High
In PVRSRVBridgeRGXKickTA3D of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-270396792
CVE-2021-0879 1 Google 1 Android 2025-02-06 7.8 High
In PVRSRVBridgeRGXTDMSubmitTransfer of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-270397970
CVE-2021-0878 1 Google 1 Android 2025-02-06 7.8 High
In PVRSRVBridgeServerSyncGetStatus of the PowerVR kernel driver, a missing size check means there is a possible integer overflow that could allow out-of-bounds heap access. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-270399153