17,305 vulnerabilities published in 2019
In tzdata there is possible memory corruption due to a mismatch between allocation and deallocation functions. This coul
In com.android.apps.tag, there is a possible bypass of user interaction requirements due to a missing permission check.
In Keymaster, there is a possible EoP due to a use after free. This could lead to local escalation of privilege with no
In the Activity Manager service, there is a possible permission bypass due to incorrect permission check. This could lea
In notification management of the service manager, there is a possible permissions bypass. This could lead to local esca
In opencv calls that use libpng, there is a possible out of bounds write due to a missing bounds check. This could lead
In profman, there is a possible out of bounds write due to memory corruption. This could lead to local escalation of pri
An integer overflow in WhatsApp media parsing libraries allows a remote attacker to perform an out-of-bounds write on th
Boot image not getting verified by AVB in Snapdragon Auto, Snapdragon Mobile, Snapdragon Wearables in MDM9607, MSM8909W,
Use after free issue occurs If another instance of open for voice_svc node has been called from application without clos
Buffer overflow scenario if the client sends more than 5 io_vec requests to the server in Snapdragon Auto, Snapdragon Co
Improper validation of read and write index of tx and rx fifo`s before using for data copy from fifo can lead to out-of-
Possible use after free issue due to improper input validation in volume listener library in Snapdragon Auto, Snapdragon
While processing QCA_NL80211_VENDOR_SUBCMD_AVOID_FREQUENCY vendor command, driver does not validate the data obtained fr
Lack of check of extscan change results received from firmware can lead to an out of buffer read in Snapdragon Auto, Sna
Lack of input validation for data received from user space can lead to OOB access in WLAN in Snapdragon Auto, Snapdragon
Buffer overflow due to improper validation of buffer size while IPA driver processing to perform read operation in Snapd
Buffer overflow when the audio buffer size provided by user is larger than the maximum allowable audio buffer size. in S
Evernote before 7.13 GA on macOS allows code execution because the com.apple.quarantine attribute is not used for attach
The Imagination Technologies driver for Chrome OS before R74-11895.B, R75 before R75-12105.B, and R76 before R76-12208.0
JetBrains Rider before 2019.1.2 was using an unsigned JetBrains.Rider.Unity.Editor.Plugin.Repacked.dll file.
mintinstall (aka Software Manager) 7.9.9 for Linux Mint allows code execution if a REVIEWS_CACHE file is controlled by a
Multiple vulnerabilities in the CLI of Cisco FXOS Software and Cisco Firepower Threat Defense (FTD) Software could allow
The command-line argument parser in tcpdump before 4.99.0 has a buffer overflow in tcpdump.c:read_infile(). To trigger t
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.207
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.207
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.207
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5. User
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.207
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.207
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.6.0.251
This vulnerability allows remote atackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.2072
This vulnerability allows remote atackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0.
This vulnerability allows remote atackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0.
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.207
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.207
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.4.1.168
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.207
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0
Valve Steam Client before 2019-09-12 allows placing or appending partially controlled filesystem content, as demonstrate
PC Protect Antivirus v4.14.31 installs by default to %PROGRAMFILES(X86)%\PCProtect with very weak folder permissions, gr
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privil
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privil
IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x000000000000d563.
IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x000000000000966f.
IrfanView 4.53 allows Data from a Faulting Address to control Code Flow starting at JPEG_LS+0x0000000000003155.
IrfanView 4.53 allows Data from a Faulting Address to control Code Flow starting at JPEG_LS+0x0000000000001d8a.
Scan for 2019 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started