Google Security Advisories · October 2021 — Google Security Advisories
295 advisories 179 CVEs 29 EXPLOITED

GCVE / Google Cloud / Chrome / Android / Project Zero / OSS for 2021-10. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 29 are already weaponised in the wild.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

PUB-A-184847809

GoogleExploitedCISA KEV listedHIGH2021-10-01

PUB-A-184847809

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2021-40449

GoogleExploitedCISA KEV listedCRITICAL2021-10-13

Win32k Elevation of Privilege Vulnerability

CVEs:CVE-2021-40449

Affected products

ProductStatusVendorPackageEcosystem
windows_10_1507 affected microsoft
windows_10_1607 affected microsoft
windows_10_1809 affected microsoft
windows_10_1909 affected microsoft
windows_10_2004 affected microsoft
windows_10_20h2 affected microsoft
windows_10_21h1 affected microsoft
windows_11 affected microsoft
windows_11_21h2 affected microsoft
windows_7 affected microsoft
windows_8.1 affected microsoft
windows_rt_8.1 affected microsoft
windows_server_2004 affected microsoft
windows_server_2008 affected microsoft
windows_server_2012 affected microsoft
windows_server_2016 affected microsoft
windows_server_2019 affected microsoft
windows_server_2022 affected microsoft
windows_server_20h2 affected microsoft
Upstream advisory

DEBIAN-CVE-2021-30632

Open SourceExploitedCISA KEV listedCRITICAL2021-10-08

DEBIAN-CVE-2021-30632

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
Upstream advisory

CVE-2021-38003

GoogleExploitedCISA KEV listedHIGH2021-10-29

Inappropriate implementation in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-38003

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2021-38003

Project ZeroExploitedCISA KEV listed2021-10-29

Inappropriate implementation in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-38003

Upstream advisory

openSUSE-SU-2021:1350-1

Open SourceExploitedCISA KEV listedCRITICAL2021-10-12

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected openSUSE:Leap 15.2 chromium
Upstream advisory

openSUSE-SU-2021:1339-1

Open SourceExploitedCISA KEV listedCRITICAL2021-10-11

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected SUSE:Package Hub 15 SP3 chromium
chromium affected openSUSE:Leap 15.3 chromium
Upstream advisory

DEBIAN-CVE-2021-37975

Open SourceExploitedCISA KEV listedCRITICAL2021-10-08

DEBIAN-CVE-2021-37975

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2021-37975

Project ZeroExploitedCISA KEV listed2021-10-01

Use after free in V8 in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37975

Upstream advisory

CVE-2021-37975

GoogleExploitedCISA KEV listedCRITICAL2021-10-01

Use after free in V8 in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37975

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2021-30633

Open SourceExploitedCISA KEV listedCRITICAL2021-10-08

DEBIAN-CVE-2021-30633

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-37976

Open SourceExploitedCISA KEV listedHIGH2021-10-08

DEBIAN-CVE-2021-37976

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2021-37976

GoogleExploitedCISA KEV listedHIGH2021-10-01

Inappropriate implementation in Memory in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.

CVEs:CVE-2021-37976

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2021-37976

Project ZeroExploitedCISA KEV listed2021-10-01

Inappropriate implementation in Memory in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.

CVEs:CVE-2021-37976

Upstream advisory

DEBIAN-CVE-2021-37973

Open SourceExploitedCISA KEV listedCRITICAL2021-10-08

DEBIAN-CVE-2021-37973

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:13 chromium
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2021-38000

Project ZeroExploitedCISA KEV listed2021-10-29

Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 95.0.4638.69 allowed a remote attacker to arbitrarily browser to a malicious URL via a crafted HTML page.

CVEs:CVE-2021-38000

Upstream advisory

CVE-2021-38000

GoogleExploitedCISA KEV listedMEDIUM2021-10-29

Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 95.0.4638.69 allowed a remote attacker to arbitrarily browser to a malicious URL via a crafted HTML page.

CVEs:CVE-2021-38000

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2021-25487

Open SourceExploitedCISA KEV listedCRITICAL2021-10-06

Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read and it results in arbitrary code execution by dereference of invalid function pointer.

CVEs:CVE-2021-25487

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2021-25487

Project ZeroExploitedCISA KEV listed2021-10-06

Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read and it results in arbitrary code execution by dereference of invalid function pointer.

CVEs:CVE-2021-25487

Upstream advisory

CVE-2021-25489

Open SourceExploitedCISA KEV listedMEDIUM2021-10-06

Assuming radio permission is gained, missing input validation in modem interface driver prior to SMR Oct-2021 Release 1 results in format string bug leading to kernel panic.

CVEs:CVE-2021-25489

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2021-25489

Project ZeroExploitedCISA KEV listed2021-10-06

Assuming radio permission is gained, missing input validation in modem interface driver prior to SMR Oct-2021 Release 1 results in format string bug leading to kernel panic.

CVEs:CVE-2021-25489

Upstream advisory

PUB-A-190876666

GoogleWeaponized exploitHIGH2021-10-01

PUB-A-190876666

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2021-22557

GoogleWeaponized exploitCRITICAL2021-10-04

Code Injection in SLO Generator

CVEs:CVE-2021-22557

Affected products

ProductStatusVendorPackageEcosystem
slo-generator affected PyPI slo-generator
Upstream advisory

CVE-2021-22557

GoogleWeaponized exploitCRITICAL2021-10-04

SLO generator allows for loading of YAML files that if crafted in a specific format can allow for code execution within the context of the SLO Generator. We recommend upgrading SLO Generator past https://github.com/google/slo-generator/pull/173

CVEs:CVE-2021-22557

Affected products

ProductStatusVendorPackageEcosystem
slo_generator affected google
Upstream advisory

CVE-2021-25742

GoogleActive exploitation (sightings)HIGH2021-10-29

A security issue was discovered in ingress-nginx where a user that can create or update ingress objects can use the custom snippets feature to obtain all secrets in the cluster.

CVEs:CVE-2021-25742

Affected products

ProductStatusVendorPackageEcosystem
ingress-nginx affected kubernetes
trident affected netapp
Upstream advisory

CVE-2021-38001

GooglePoC exploitHIGH2021-10-29

Type confusion in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-38001

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CLSA-2021-1635430087

Open SourcePoC exploitHIGH2021-10-28

Fix CVE(s): CVE-2021-3737, CVE-2021-3733

Affected products

ProductStatusVendorPackageEcosystem
idle-python3.5 affected TuxCare:Ubuntu:16.04 idle-python3.5
libpython3.5 affected TuxCare:Ubuntu:16.04 libpython3.5
libpython3.5-dev affected TuxCare:Ubuntu:16.04 libpython3.5-dev
libpython3.5-minimal affected TuxCare:Ubuntu:16.04 libpython3.5-minimal
libpython3.5-stdlib affected TuxCare:Ubuntu:16.04 libpython3.5-stdlib
libpython3.5-testsuite affected TuxCare:Ubuntu:16.04 libpython3.5-testsuite
python3.5 affected TuxCare:Ubuntu:16.04 python3.5
python3.5-dev affected TuxCare:Ubuntu:16.04 python3.5-dev
python3.5-doc affected TuxCare:Ubuntu:16.04 python3.5-doc
python3.5-examples affected TuxCare:Ubuntu:16.04 python3.5-examples
python3.5-minimal affected TuxCare:Ubuntu:16.04 python3.5-minimal
python3.5-venv affected TuxCare:Ubuntu:16.04 python3.5-venv
Upstream advisory

OESA-2021-1402

Open SourcePoC exploitCRITICAL2021-10-27

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:20.03-LTS-SP1 golang
golang affected openEuler
golang affected openEuler:20.03-LTS-SP2 golang
Upstream advisory

AZL-6450

Open SourcePoC exploitCRITICAL2021-10-18

CVE-2021-38297 affecting package golang for versions less than 1.17.8-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:2 golang
Upstream advisory

CVE-2021-38297

GooglePoC exploitCRITICAL2021-10-18

Go before 1.16.9 and 1.17.x before 1.17.2 has a Buffer Overflow via large arguments in a function invocation from a WASM module, when GOARCH=wasm GOOS=js is used.

CVEs:CVE-2021-38297

Affected products

ProductStatusVendorPackageEcosystem
fedora affected fedoraproject
go affected golang
Upstream advisory

DEBIAN-CVE-2021-38297

Open SourcePoC exploitCRITICAL2021-10-18

DEBIAN-CVE-2021-38297

Affected products

ProductStatusVendorPackageEcosystem
golang-1.15 affected Debian:11 golang-1.15
Upstream advisory

MGASA-2021-0475

Open SourcePoC exploit2021-10-13

Updated golang packages fix security vulnerability

Affected products

ProductStatusVendorPackageEcosystem
golang affected Mageia:8 golang
Upstream advisory

CVE-2021-39293

GooglePoC exploitHIGH2021-10-06

In archive/zip in Go before 1.16.8 and 1.17.x before 1.17.1, a crafted archive header (falsely designating that many files are present) can cause a NewReader or OpenReader panic. NOTE: this issue exists because of an incomplete fix for CVE-2021-33196.

CVEs:CVE-2021-39293

Affected products

ProductStatusVendorPackageEcosystem
cloud_insights_telegraf affected netapp
go affected golang
Upstream advisory

ASB-A-175626624

GooglePoC exploit2021-10-01

ASB-A-175626624

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
vendor/qcom-opensource/wlan/prima affected platform platform/vendor/qcom-opensource/wlan/prima
wigig-utils affected oss oss/wigig-utils
Upstream advisory

DEBIAN-CVE-2021-37972

Open SourcePoC exploitHIGH2021-10-08

DEBIAN-CVE-2021-37972

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2021-37980

GooglePoC exploitHIGH2021-10-08

Inappropriate implementation in Sandbox in Google Chrome prior to 94.0.4606.81 allowed a remote attacker to potentially bypass site isolation via Windows.

CVEs:CVE-2021-37980

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2021-38561

Open SourcePoC exploitHIGH2022-06-29

golang.org/x/text/language Out-of-bounds Read vulnerability

CVEs:CVE-2021-38561

Affected products

ProductStatusVendorPackageEcosystem
x/text affected golang.org golang.org/x/text
Upstream advisory

CVE-2021-38561

GooglePoC exploitHIGH2021-10-06

golang.org/x/text/language in golang.org/x/text before 0.3.7 can panic with an out-of-bounds read during BCP 47 language tag parsing. Index calculation is mishandled. If parsing untrusted user input, this can be used as a vector for a denial-of-service...

CVEs:CVE-2021-38561

Affected products

ProductStatusVendorPackageEcosystem
text affected golang
Upstream advisory

GO-2021-0113

Open SourcePoC exploitHIGH2021-10-06

Out-of-bounds read in golang.org/x/text/language

Affected products

ProductStatusVendorPackageEcosystem
dex-k8s-authenticator affected chainguard dex-k8s-authenticator
dynamic-localpv-provisioner affected wolfi dynamic-localpv-provisioner
dynamic-localpv-provisioner affected chainguard dynamic-localpv-provisioner
dynamic-localpv-provisioner-fips affected chainguard dynamic-localpv-provisioner-fips
gitleaks affected wolfi gitleaks
gitleaks affected chainguard gitleaks
hey affected chainguard hey
hey affected wolfi hey
k3d affected wolfi k3d
k3d affected chainguard k3d
prometheus-postgres-exporter-0.10 affected chainguard prometheus-postgres-exporter-0.10
terraform-provider-sendgrid affected chainguard terraform-provider-sendgrid
terraform-provider-sendgrid affected wolfi terraform-provider-sendgrid
terraform-provider-sendgrid-fips affected chainguard terraform-provider-sendgrid-fips
vt-cli affected chainguard vt-cli
vt-cli affected wolfi vt-cli
x/text affected golang.org golang.org/x/text
Upstream advisory

PUB-A-186337918

GooglePoC exploitMEDIUM2021-10-01

PUB-A-186337918

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

PUB-A-189986136

GooglePoC exploitHIGH2021-10-01

PUB-A-189986136

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

PUB-A-187955767

GooglePoC exploitHIGH2021-10-01

PUB-A-187955767

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

ASB-A-193070595

GooglePoC exploit2021-10-01

ASB-A-193070595

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
wigig-utils affected oss oss/wigig-utils
Upstream advisory

PUB-A-190877279

GooglePoC exploitHIGH2021-10-01

PUB-A-190877279

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

ASB-A-175451844

GooglePoC exploitHIGH2021-10-01

ASB-A-175451844

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

GHSA-m8wh-mqgf-rr8g

Open SourcePoC exploitCRITICAL2021-10-12

Code injection in Kubernetes Java Client

Affected products

ProductStatusVendorPackageEcosystem
io.kubernetes:client-java affected Maven io.kubernetes:client-java
Upstream advisory

GHSA-m8wh-mqgf-rr8g

Open SourcePoC exploitCRITICAL2021-10-12

Code injection in Kubernetes Java Client

Affected products

ProductStatusVendorPackageEcosystem
io.kubernetes:client-java affected Maven io.kubernetes:client-java
Upstream advisory

CVE-2021-25738

GooglePoC exploitCRITICAL2021-10-11

Loading specially-crafted yaml with the Kubernetes Java Client library can lead to code execution.

CVEs:CVE-2021-25738

Affected products

ProductStatusVendorPackageEcosystem
java affected kubernetes
Upstream advisory

CVE-2021-25738

Open SourcePoC exploitMEDIUM2021-10-11

Code injection in Kubernetes Java Client

CVEs:CVE-2021-25738

Affected products

ProductStatusVendorPackageEcosystem
io.kubernetes:client-java affected Maven io.kubernetes:client-java
Upstream advisory

ASB-A-184622099

GooglePoC exploitMEDIUM2021-10-01

ASB-A-184622099

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

PUB-A-184622243

GooglePoC exploitMEDIUM2021-10-01

PUB-A-184622243

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

PUB-A-168881044

GooglePoC exploitHIGH2021-10-01

PUB-A-168881044

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2021-0705

Open SourcePoC exploitHIGH2021-10-05

In sanitizeSbn of NotificationManagerService.java, there is a possible way to keep service running in foreground and keep granted permissions due to Bypass of Background Service Restrictions. This could lead to local escalation of privilege with no add...

CVEs:CVE-2021-0705

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0652

Open SourcePoC exploitHIGH2021-10-05

In VectorDrawable::VectorDrawable of VectorDrawable.java, there is a possible way to introduce a memory corruption due to sharing of not thread-safe objects. This could lead to local escalation of privilege with no additional execution privileges neede...

CVEs:CVE-2021-0652

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-184564237

GooglePoC exploit2021-10-01

PUB-A-184564237

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
Upstream advisory

PUB-A-184564492

GooglePoC exploit2021-10-01

PUB-A-184564492

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
Upstream advisory

CVE-2021-0938

Open SourcePoC exploitMEDIUM2021-10-05

In memzero_explicit of compiler-clang.h, there is a possible bypass of defense in depth due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploi...

CVEs:CVE-2021-0938

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-171418586

GooglePoC exploitMEDIUM2021-10-01

PUB-A-171418586

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

ASB-A-193070437

GooglePoC exploit2021-10-01

ASB-A-193070437

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
Upstream advisory

CVE-2022-20141

Open SourcePoC exploitHIGH2021-10-05

In ip_check_mc_rcu of igmp.c, there is a possible use after free due to improper locking. This could lead to local escalation of privilege when opening and closing inet sockets with no additional execution privileges needed. User interaction is not nee...

CVEs:CVE-2022-20141

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0702

Open SourcePoC exploitMEDIUM2021-10-05

In RevertActiveSessions of apexd.cpp, there is a possible way to share the wrong file due to an unintentional MediaStore downgrade. This could lead to local information disclosure with no additional execution privileges needed. User interaction is need...

CVEs:CVE-2021-0702

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0703

Open SourcePoC exploitHIGH2021-10-05

In SecondStageMain of init.cpp, there is a possible use after free due to incorrect shared_ptr usage. This could lead to local escalation of privilege if the attacker has physical access to the device, with no additional execution privileges needed. Us...

CVEs:CVE-2021-0703

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0940

Open SourcePoC exploitHIGH2021-10-05

In TBD of TBD, there is a possible out of bounds write due to improper locking. This could lead to local escalation of privilege in the kernel with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVers...

CVEs:CVE-2021-0940

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-171315276

GooglePoC exploitHIGH2021-10-01

PUB-A-171315276

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2021-0939

Open SourcePoC exploitMEDIUM2021-10-05

In set_default_passthru_cfg of passthru.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Pr...

CVEs:CVE-2021-0939

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-186026549

GooglePoC exploitMEDIUM2021-10-01

PUB-A-186026549

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2021-0643

Open SourcePoC exploitMEDIUM2021-10-05

In getAllSubInfoList of SubscriptionController.java, there is a possible way to retrieve a long term identifier without the correct permissions due to a missing permission check. This could lead to local information disclosure with User execution privi...

CVEs:CVE-2021-0643

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0483

Open SourcePoC exploitHIGH2021-10-05

In multiple methods of AAudioService, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVe...

CVEs:CVE-2021-0483

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-180401789

GooglePoC exploitMEDIUM2021-10-01

ASB-A-180401789

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-179929247

GoogleCoalition ESS < 30%2021-10-01

ASB-A-179929247

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
system/feeds/wlan-open affected oss oss/system/feeds/wlan-open
wigig-utils affected oss oss/wigig-utils
Upstream advisory

DEBIAN-CVE-2021-30625

Open SourceCoalition ESS < 30%HIGH2021-10-08

DEBIAN-CVE-2021-30625

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2021-0870

Open SourceCoalition ESS < 30%HIGH2021-10-05

In RW_SetActivatedTagType of rw_main.cc, there is possible memory corruption due to a race condition. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: Andr...

CVEs:CVE-2021-0870

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

GHSA-3w73-fmf3-hg5c

GoogleCoalition ESS < 30%CRITICAL2021-10-19

Policies not properly enforced in OWASP Java HTML Sanitizer

Affected products

ProductStatusVendorPackageEcosystem
com.googlecode.owasp-java-html-sanitizer:owasp-java-html-sanitizer affected Maven com.googlecode.owasp-java-html-sanitizer:owasp-java-html-sanitizer
Upstream advisory

GHSA-3w73-fmf3-hg5c

GoogleCoalition ESS < 30%CRITICAL2021-10-19

Policies not properly enforced in OWASP Java HTML Sanitizer

Affected products

ProductStatusVendorPackageEcosystem
com.googlecode.owasp-java-html-sanitizer:owasp-java-html-sanitizer affected Maven com.googlecode.owasp-java-html-sanitizer:owasp-java-html-sanitizer
Upstream advisory

CVE-2021-42575

GoogleCoalition ESS < 30%CRITICAL2021-10-18

The OWASP Java HTML Sanitizer before 20211018.1 does not properly enforce policies associated with the SELECT, STYLE, and OPTION elements.

CVEs:CVE-2021-42575

Affected products

ProductStatusVendorPackageEcosystem
java_html_sanitizer affected owasp
middleware_common_libraries_and_tools affected oracle
primavera_unifier affected oracle
Upstream advisory

CVE-2021-42575

GoogleCoalition ESS < 30%CRITICAL2021-10-18

Policies not properly enforced in OWASP Java HTML Sanitizer

CVEs:CVE-2021-42575

Affected products

ProductStatusVendorPackageEcosystem
com.googlecode.owasp-java-html-sanitizer:owasp-java-html-sanitizer affected Maven com.googlecode.owasp-java-html-sanitizer:owasp-java-html-sanitizer
Upstream advisory

DEBIAN-CVE-2021-42836

Open SourceCoalition ESS < 30%HIGH2021-10-22

DEBIAN-CVE-2021-42836

Affected products

ProductStatusVendorPackageEcosystem
golang-github-tidwall-gjson affected Debian:11 golang-github-tidwall-gjson
golang-github-tidwall-gjson affected Debian:12 golang-github-tidwall-gjson
golang-github-tidwall-gjson affected Debian:13 golang-github-tidwall-gjson
golang-github-tidwall-gjson affected Debian:14 golang-github-tidwall-gjson
Upstream advisory

GHSA-xpv2-8ppj-79hh

GoogleCoalition ESS < 30%CRITICAL2021-10-04

Expression injection in AviatorScript

Affected products

ProductStatusVendorPackageEcosystem
com.googlecode.aviator:aviator affected Maven com.googlecode.aviator:aviator
Upstream advisory

GHSA-xpv2-8ppj-79hh

GoogleCoalition ESS < 30%CRITICAL2021-10-04

Expression injection in AviatorScript

Affected products

ProductStatusVendorPackageEcosystem
com.googlecode.aviator:aviator affected Maven com.googlecode.aviator:aviator
Upstream advisory

CVE-2021-41862

GoogleCoalition ESS < 30%CRITICAL2021-10-02

Expression injection in AviatorScript

CVEs:CVE-2021-41862

Affected products

ProductStatusVendorPackageEcosystem
com.googlecode.aviator:aviator affected Maven com.googlecode.aviator:aviator
Upstream advisory

CVE-2021-41862

GoogleCoalition ESS < 30%CRITICAL2021-10-02

AviatorScript through 5.2.7 allows code execution via an expression that is encoded with Byte Code Engineering Library (BCEL).

CVEs:CVE-2021-41862

Affected products

ProductStatusVendorPackageEcosystem
aviatorscript affected aviatorscript_project
Upstream advisory

CVE-2021-37979

GoogleCoalition ESS < 30%CRITICAL2021-10-08

heap buffer overflow in WebRTC in Google Chrome prior to 94.0.4606.81 allowed a remote attacker who convinced a user to browse to a malicious website to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37979

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2021-42576

Open SourceCoalition ESS < 30%CRITICAL2021-10-18

DEBIAN-CVE-2021-42576

Affected products

ProductStatusVendorPackageEcosystem
golang-github-microcosm-cc-bluemonday affected Debian:11 golang-github-microcosm-cc-bluemonday
golang-github-microcosm-cc-bluemonday affected Debian:12 golang-github-microcosm-cc-bluemonday
golang-github-microcosm-cc-bluemonday affected Debian:13 golang-github-microcosm-cc-bluemonday
golang-github-microcosm-cc-bluemonday affected Debian:14 golang-github-microcosm-cc-bluemonday
Upstream advisory

DEBIAN-CVE-2021-37970

Open SourceCoalition ESS < 30%CRITICAL2021-10-08

DEBIAN-CVE-2021-37970

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-37974

Open SourceCoalition ESS < 30%CRITICAL2021-10-08

DEBIAN-CVE-2021-37974

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:14 chromium
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
Upstream advisory

CVE-2021-37974

GoogleCoalition ESS < 30%CRITICAL2021-10-01

Use after free in Safebrowsing in Google Chrome prior to 94.0.4606.71 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37974

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2021-37961

Open SourceCoalition ESS < 30%CRITICAL2021-10-08

DEBIAN-CVE-2021-37961

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-37962

Open SourceCoalition ESS < 30%CRITICAL2021-10-08

DEBIAN-CVE-2021-37962

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-37968

Open SourceCoalition ESS < 30%MEDIUM2021-10-08

DEBIAN-CVE-2021-37968

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-37971

Open SourceCoalition ESS < 30%MEDIUM2021-10-08

DEBIAN-CVE-2021-37971

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-37956

Open SourceCoalition ESS < 30%CRITICAL2021-10-08

DEBIAN-CVE-2021-37956

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-37957

Open SourceCoalition ESS < 30%CRITICAL2021-10-08

DEBIAN-CVE-2021-37957

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-37965

Open SourceCoalition ESS < 30%MEDIUM2021-10-08

DEBIAN-CVE-2021-37965

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-37963

Open SourceCoalition ESS < 30%HIGH2021-10-08

DEBIAN-CVE-2021-37963

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2021-42307

Open SourceCoalition ESS < 30%HIGH2021-10-22

Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

CVEs:CVE-2021-42307

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

openSUSE-SU-2021:1396-1

Open SourceCoalition ESS < 30%CRITICAL2021-10-30

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected openSUSE:Leap 15.2 chromium
Upstream advisory

openSUSE-SU-2021:1392-1

Open SourceCoalition ESS < 30%CRITICAL2021-10-26

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected SUSE:Package Hub 15 SP3 chromium
chromium affected openSUSE:Leap 15.3 chromium
Upstream advisory

CVE-2021-37981

GoogleCoalition ESS < 30%CRITICAL2021-10-21

Heap buffer overflow in Skia in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

CVEs:CVE-2021-37981

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-37978

GoogleCoalition ESS < 30%CRITICAL2021-10-08

Heap buffer overflow in Blink in Google Chrome prior to 94.0.4606.81 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37978

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

DEBIAN-CVE-2021-30626

Open SourceCoalition ESS < 30%HIGH2021-10-08

DEBIAN-CVE-2021-30626

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:14 chromium
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
Upstream advisory

CVE-2021-37984

GoogleCoalition ESS < 30%CRITICAL2021-10-21

Heap buffer overflow in PDFium in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37984

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

DEBIAN-CVE-2021-37958

Open SourceCoalition ESS < 30%MEDIUM2021-10-08

DEBIAN-CVE-2021-37958

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-30628

Open SourceCoalition ESS < 30%CRITICAL2021-10-08

DEBIAN-CVE-2021-30628

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2021-37997

GoogleCoalition ESS < 30%CRITICAL2021-10-29

Use after free in Sign-In in Google Chrome prior to 95.0.4638.69 allowed a remote attacker who convinced a user to sign into Chrome to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37997

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2021-37998

GoogleCoalition ESS < 30%CRITICAL2021-10-29

Use after free in Garbage Collection in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37998

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2021-38002

GoogleCoalition ESS < 30%CRITICAL2021-10-29

Use after free in Web Transport in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.

CVEs:CVE-2021-38002

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2021-37992

GoogleCoalition ESS < 30%HIGH2021-10-21

Out of bounds read in WebAudio in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37992

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-37999

GoogleCoalition ESS < 30%MEDIUM2021-10-29

Insufficient data validation in New Tab Page in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to inject arbitrary scripts or HTML in a new browser tab via a crafted HTML page.

CVEs:CVE-2021-37999

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2021-37986

GoogleCoalition ESS < 30%CRITICAL2021-10-21

Heap buffer overflow in Settings in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to engage with Dev Tools to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37986

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

DEBIAN-CVE-2021-37969

Open SourceCoalition ESS < 30%HIGH2021-10-08

DEBIAN-CVE-2021-37969

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-37959

Open SourceCoalition ESS < 30%CRITICAL2021-10-08

DEBIAN-CVE-2021-37959

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-30627

Open SourceCoalition ESS < 30%HIGH2021-10-08

DEBIAN-CVE-2021-30627

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2021-37982

GoogleCoalition ESS < 30%CRITICAL2021-10-21

Use after free in Incognito in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37982

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-37983

GoogleCoalition ESS < 30%CRITICAL2021-10-21

Use after free in Dev Tools in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37983

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-37985

GoogleCoalition ESS < 30%CRITICAL2021-10-21

Use after free in V8 in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who had convinced a user to allow for connection to debugger to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37985

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-37977

GoogleCoalition ESS < 30%CRITICAL2021-10-08

Use after free in Garbage Collection in Google Chrome prior to 94.0.4606.81 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37977

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
fedora affected fedoraproject
Upstream advisory

CVE-2021-0630

Open SourceCoalition ESS < 30%HIGH2021-10-25

In wifi driver, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05551397; Issue I...

CVEs:CVE-2021-0630

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0631

Open SourceCoalition ESS < 30%HIGH2021-10-25

In wifi driver, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05551435; Issue I...

CVEs:CVE-2021-0631

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

DEBIAN-CVE-2021-30629

Open SourceCoalition ESS < 30%CRITICAL2021-10-08

DEBIAN-CVE-2021-30629

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2021-37987

GoogleCoalition ESS < 30%CRITICAL2021-10-21

Use after free in Network APIs in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37987

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-37988

GoogleCoalition ESS < 30%CRITICAL2021-10-21

Use after free in Profiles in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who convinced a user to engage in specific gestures to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37988

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-37993

GoogleCoalition ESS < 30%CRITICAL2021-10-21

Use after free in PDF Accessibility in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37993

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-37989

GoogleCoalition ESS < 30%MEDIUM2021-10-21

Inappropriate implementation in Blink in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to abuse content security policy via a crafted HTML page.

CVEs:CVE-2021-37989

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-37994

GoogleCoalition ESS < 30%MEDIUM2021-10-21

Inappropriate implementation in iFrame Sandbox in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.

CVEs:CVE-2021-37994

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-37995

GoogleCoalition ESS < 30%MEDIUM2021-10-21

Inappropriate implementation in WebApp Installer in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially overlay and spoof the contents of the Omnibox (URL bar) via a crafted HTML page.

CVEs:CVE-2021-37995

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

DEBIAN-CVE-2021-37967

Open SourceCoalition ESS < 30%MEDIUM2021-10-08

DEBIAN-CVE-2021-37967

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2021-37991

GoogleCoalition ESS < 30%HIGH2021-10-21

Race in V8 in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2021-37991

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-25490

Open SourceCoalition ESS < 30%MEDIUM2021-10-06

A keyblob downgrade attack in keymaster prior to SMR Oct-2021 Release 1 allows attacker to trigger IV reuse vulnerability with privileged process.

CVEs:CVE-2021-25490

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

DEBIAN-CVE-2021-30630

Open SourceCoalition ESS < 30%MEDIUM2021-10-08

DEBIAN-CVE-2021-30630

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2021-37966

Open SourceCoalition ESS < 30%MEDIUM2021-10-08

DEBIAN-CVE-2021-37966

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2021-37990

GoogleCoalition ESS < 30%MEDIUM2021-10-21

Inappropriate implementation in WebView in Google Chrome on Android prior to 95.0.4638.54 allowed a remote attacker to leak cross-origin data via a crafted app.

CVEs:CVE-2021-37990

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-37996

GoogleCoalition ESS < 30%MEDIUM2021-10-21

Insufficient validation of untrusted input Downloads in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to bypass navigation restrictions via a malicious file.

CVEs:CVE-2021-37996

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
Upstream advisory

CVE-2021-0661

Open SourceCoalition ESS < 30%HIGH2021-10-25

In audio DSP, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05844413; I...

CVEs:CVE-2021-0661

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0662

Open SourceCoalition ESS < 30%HIGH2021-10-25

In audio DSP, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05844434; I...

CVEs:CVE-2021-0662

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0663

Open SourceCoalition ESS < 30%HIGH2021-10-25

In audio DSP, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05844458; I...

CVEs:CVE-2021-0663

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25478

Open SourceCoalition ESS < 30%CRITICAL2021-10-06

A possible stack-based buffer overflow vulnerability in Exynos CP Chipset prior to SMR Oct-2021 Release 1 allows arbitrary memory write and code execution.

CVEs:CVE-2021-25478

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25479

Open SourceCoalition ESS < 30%CRITICAL2021-10-06

A possible heap-based buffer overflow vulnerability in Exynos CP Chipset prior to SMR Oct-2021 Release 1 allows arbitrary memory write and code execution.

CVEs:CVE-2021-25479

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

DEBIAN-CVE-2021-37964

Open SourceCoalition ESS < 30%LOW2021-10-08

DEBIAN-CVE-2021-37964

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:13 chromium
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:14 chromium
Upstream advisory

PUB-A-191191823

GoogleCoalition ESS < 30%HIGH2021-10-01

PUB-A-191191823

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2021-25477

Open SourceCoalition ESS < 30%HIGH2021-10-06

An improper error handling in Mediatek RRC Protocol stack prior to SMR Oct-2021 Release 1 allows modem crash and remote denial of service.

CVEs:CVE-2021-25477

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25480

Open SourceCoalition ESS < 30%HIGH2021-10-06

A lack of replay attack protection in GUTI REALLOCATION COMMAND message process in Qualcomm modem prior to SMR Oct-2021 Release 1 can lead to remote denial of service on mobile network connection.

CVEs:CVE-2021-25480

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-169505929

GoogleCoalition ESS < 30%MEDIUM2021-10-01

ASB-A-169505929

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2021-25471

Open SourceCoalition ESS < 30%HIGH2021-10-06

A lack of replay attack protection in Security Mode Command process prior to SMR Oct-2021 Release 1 can lead to denial of service on mobile network connection and battery depletion.

CVEs:CVE-2021-25471

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-41130

GoogleCoalition ESS < 30%HIGH2021-10-07

Extensible Service Proxy, a.k.a. ESP is a proxy which enables API management capabilities for JSON/REST or gRPC API services. ESPv1 can be configured to authenticate a JWT token. Its verified JWT claim is passed to the application by HTTP header "X-End...

CVEs:CVE-2021-41130

Affected products

ProductStatusVendorPackageEcosystem
extensible_service_proxy affected google
Upstream advisory

PUB-A-197155069

GoogleCoalition ESS < 30%HIGH2021-10-01

PUB-A-197155069

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2021-0632

Open SourceCoalition ESS < 30%MEDIUM2021-10-25

In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure to a proximal attacker under certain build conditions with no additional execution privileges needed. User interactio...

CVEs:CVE-2021-0632

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25483

Open SourceCoalition ESS < 30%MEDIUM2021-10-06

Lack of boundary checking of a buffer in livfivextractor library prior to SMR Oct-2021 Release 1 allows OOB read.

CVEs:CVE-2021-25483

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0935

Open SourceCoalition ESS < 30%HIGH2021-10-05

In ip6_xmit of ip6_output.c, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVers...

CVEs:CVE-2021-0935

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-168607263

GoogleCoalition ESS < 30%HIGH2021-10-01

PUB-A-168607263

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2021-25485

Open SourceCoalition ESS < 30%HIGH2021-10-06

Path traversal vulnerability in FactoryAirCommnadManger prior to SMR Oct-2021 Release 1 allows attackers to write file as system UID via BT remote socket.

CVEs:CVE-2021-25485

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0941

Open SourceCoalition ESS < 30%HIGH2021-10-05

In bpf_skb_change_head of filter.c, there is a possible out of bounds read due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: Andro...

CVEs:CVE-2021-0941

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-154177719

GoogleCoalition ESS < 30%HIGH2021-10-01

PUB-A-154177719

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2021-0707

Open SourceCoalition ESS < 30%HIGH2021-10-05

In dma_buf_release of dma-buf.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: An...

CVEs:CVE-2021-0707

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-184564101

GoogleCoalition ESS < 30%2021-10-01

PUB-A-184564101

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
vendor/opensource/display-drivers affected platform platform/vendor/opensource/display-drivers
Upstream advisory

CVE-2021-0708

Open SourceCoalition ESS < 30%HIGH2021-10-05

In runDumpHeap of ActivityManagerShellCommand.java, there is a possible deletion of system files due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed f...

CVEs:CVE-2021-0708

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-193071117

GoogleCoalition ESS < 30%2021-10-01

ASB-A-193071117

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
Upstream advisory

CVE-2021-0936

Open SourceCoalition ESS < 30%HIGH2021-10-05

In acc_read of f_accessory.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: Andro...

CVEs:CVE-2021-0936

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-173789633

GoogleCoalition ESS < 30%HIGH2021-10-01

PUB-A-173789633

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2021-25482

Open SourceCoalition ESS < 30%CRITICAL2021-10-06

SQL injection vulnerabilities in CMFA framework prior to SMR Oct-2021 Release 1 allow untrusted application to overwrite some CMFA framework information.

CVEs:CVE-2021-25482

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25469

Open SourceCoalition ESS < 30%CRITICAL2021-10-06

A possible stack-based buffer overflow vulnerability in Widevine trustlet prior to SMR Oct-2021 Release 1 allows arbitrary code execution.

CVEs:CVE-2021-25469

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0651

Open SourceCoalition ESS < 30%MEDIUM2021-10-05

In loadLabel of PackageItemInfo.java, there is a possible way to DoS a device by having a long label in an app due to incorrect input validation. This could lead to local denial of service with no additional execution privileges needed. User interactio...

CVEs:CVE-2021-0651

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0616

Open SourceCoalition ESS < 30%HIGH2021-10-25

In ape extractor, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561...

CVEs:CVE-2021-0616

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0617

Open SourceCoalition ESS < 30%HIGH2021-10-25

In ape extractor, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561...

CVEs:CVE-2021-0617

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0618

Open SourceCoalition ESS < 30%HIGH2021-10-25

In ape extractor, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561...

CVEs:CVE-2021-0618

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0633

Open SourceCoalition ESS < 30%HIGH2021-10-25

In display driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS055854...

CVEs:CVE-2021-0633

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0414

Open SourceCoalition ESS < 30%HIGH2021-10-25

In flv extractor, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561...

CVEs:CVE-2021-0414

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0634

Open SourceCoalition ESS < 30%HIGH2021-10-25

In display driver, there is a possible memory corruption due to uninitialized data. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05594994; Issue...

CVEs:CVE-2021-0634

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25475

Open SourceCoalition ESS < 30%CRITICAL2021-10-06

A possible heap-based buffer overflow vulnerability in DSP kernel driver prior to SMR Oct-2021 Release 1 allows arbitrary memory write and code execution.

CVEs:CVE-2021-25475

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25470

Open SourceCoalition ESS < 30%HIGH2021-10-06

An improper caller check logic of SMC call in TEEGRIS secure OS prior to SMR Oct-2021 Release 1 can be used to compromise TEE.

CVEs:CVE-2021-25470

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0613

Open SourceCoalition ESS < 30%MEDIUM2021-10-25

In asf extractor, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05...

CVEs:CVE-2021-0613

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0614

Open SourceCoalition ESS < 30%MEDIUM2021-10-25

In asf extractor, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05...

CVEs:CVE-2021-0614

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0615

Open SourceCoalition ESS < 30%HIGH2021-10-25

In flv extractor, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561369...

CVEs:CVE-2021-0615

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0409

Open SourceCoalition ESS < 30%MEDIUM2021-10-25

In flv extractor, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05...

CVEs:CVE-2021-0409

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0410

Open SourceCoalition ESS < 30%MEDIUM2021-10-25

In flv extractor, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05...

CVEs:CVE-2021-0410

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0411

Open SourceCoalition ESS < 30%HIGH2021-10-25

In flv extractor, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561362...

CVEs:CVE-2021-0411

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0412

Open SourceCoalition ESS < 30%MEDIUM2021-10-25

In flv extractor, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561...

CVEs:CVE-2021-0412

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0413

Open SourceCoalition ESS < 30%MEDIUM2021-10-25

In flv extractor, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561...

CVEs:CVE-2021-0413

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0583

Open SourceCoalition ESS < 30%HIGH2021-10-11

In onCreate of BluetoothPairingDialog, there is a possible way to enable Bluetooth without user consent due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is need...

CVEs:CVE-2021-0583

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25467

Open SourceCoalition ESS < 30%CRITICAL2021-10-06

Assuming system privilege is gained, possible buffer overflow vulnerabilities in the Vision DSP kernel driver prior to SMR Oct-2021 Release 1 allows privilege escalation to Root by hijacking loaded library.

CVEs:CVE-2021-25467

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25468

Open SourceCoalition ESS < 30%HIGH2021-10-06

A possible guessing and confirming a byte memory vulnerability in Widevine trustlet prior to SMR Oct-2021 Release 1 allows attackers to read arbitrary memory address.

CVEs:CVE-2021-25468

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25484

Open SourceCoalition ESS < 30%MEDIUM2021-10-06

Improper authentication in InputManagerService prior to SMR Oct-2021 Release 1 allows monitoring the touch event.

CVEs:CVE-2021-25484

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25488

Open SourceCoalition ESS < 30%MEDIUM2021-10-06

Lack of boundary checking of a buffer in recv_data() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read.

CVEs:CVE-2021-25488

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0706

Open SourceCoalition ESS < 30%MEDIUM2021-10-05

In startListening of PluginManagerImpl.java, there is a possible way to disable arbitrary app components due to a missing permission check. This could lead to local denial of service with no additional execution privileges needed. User interaction is n...

CVEs:CVE-2021-0706

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25491

Open SourceCoalition ESS < 30%CRITICAL2021-10-06

A vulnerability in mfc driver prior to SMR Oct-2021 Release 1 allows memory corruption via NULL-pointer dereference.

CVEs:CVE-2021-25491

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25473

Open SourceCoalition ESS < 30%HIGH2021-10-06

Assuming a shell privilege is gained, an improper exception handling for multi_sim_bar_hide_by_meadia_full value in SystemUI prior to SMR Oct-2021 Release 1 allows an attacker to cause a permanent denial of service in user device before factory reset.

CVEs:CVE-2021-25473

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25474

Open SourceCoalition ESS < 30%HIGH2021-10-06

Assuming a shell privilege is gained, an improper exception handling for multi_sim_bar_show_on_qspanel value in SystemUI prior to SMR Oct-2021 Release 1 allows an attacker to cause a permanent denial of service in user device before factory reset.

CVEs:CVE-2021-25474

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25472

Open SourceCoalition ESS < 30%MEDIUM2021-10-06

An improper access control vulnerability in BluetoothSettingsProvider prior to SMR Oct-2021 Release 1 allows untrusted application to overwrite some Bluetooth information.

CVEs:CVE-2021-25472

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25476

Open SourceCoalition ESS < 30%HIGH2021-10-06

An information disclosure vulnerability in Widevine TA log prior to SMR Oct-2021 Release 1 allows attackers to bypass the ASLR protection mechanism in TEE.

CVEs:CVE-2021-25476

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-0625

Open SourceCoalition ESS < 30%HIGH2021-10-25

In ccu, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05594996; Issue ID: ALPS0559...

CVEs:CVE-2021-0625

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25486

Open SourceCoalition ESS < 30%LOW2021-10-06

Exposure of information vulnerability in ipcdump prior to SMR Oct-2021 Release 1 allows an attacker detect device information via analyzing packet in log.

CVEs:CVE-2021-25486

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2021-25481

Open SourceCoalition ESS < 30%MEDIUM2021-10-06

An improper error handling in Exynos CP booting driver prior to SMR Oct-2021 Release 1 allows local attackers to bypass a Secure Memory Protector of Exynos CP Memory.

CVEs:CVE-2021-25481

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

SUSE-SU-2021:3450-1

Open SourceAll remainingCRITICAL2021-10-15

Security update for javapackages-tools, javassist, mysql-connector-java, protobuf, python-python-gflags

Affected products

ProductStatusVendorPackageEcosystem
javapackages-tools affected SUSE:OpenStack Cloud Crowbar 8 javapackages-tools
javapackages-tools affected SUSE:OpenStack Cloud 8 javapackages-tools
javapackages-tools affected SUSE:OpenStack Cloud 9 javapackages-tools
javapackages-tools affected SUSE:Linux Enterprise Software Development Kit 12 SP5 javapackages-tools
javapackages-tools affected SUSE:HPE Helion OpenStack 8 javapackages-tools
javapackages-tools affected SUSE:OpenStack Cloud Crowbar 9 javapackages-tools
mysql-connector-java affected SUSE:OpenStack Cloud 9 mysql-connector-java
mysql-connector-java affected SUSE:HPE Helion OpenStack 8 mysql-connector-java
mysql-connector-java affected SUSE:OpenStack Cloud 8 mysql-connector-java
mysql-connector-java affected SUSE:OpenStack Cloud Crowbar 8 mysql-connector-java
mysql-connector-java affected SUSE:OpenStack Cloud Crowbar 9 mysql-connector-java
mysql-connector-java affected SUSE:Linux Enterprise Software Development Kit 12 SP5 mysql-connector-java
protobuf affected SUSE:Linux Enterprise Software Development Kit 12 SP5 protobuf
Upstream advisory

MGASA-2021-0450

Open SourceAll remaining2021-10-02

Updated chromium-browser-stable packages fix security vulnerability

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser-stable affected Mageia:8 chromium-browser-stable
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.