2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-0993 | MEDIUM | 6.5 | 0.6% | Dec 15, 2021 | In getOffsetBeforeAfter of TextLine.java, there is a possible denial of service due to resource exhaustion. This could l... |
| CVE-2021-0986 | MEDIUM | 5.5 | 0.1% | Dec 15, 2021 | In hasGrantedPolicy of DevicePolicyManagerService.java, there is a possible information disclosure about the device owne... |
| CVE-2021-0979 | MEDIUM | 5.5 | 0.1% | Dec 15, 2021 | In isRequestPinItemSupported of ShortcutService.java, there is a possible cross-user leak of packages in which the defau... |
| CVE-2021-0977 | MEDIUM | 6.7 | 0.1% | Dec 15, 2021 | In phNxpNHal_DtaUpdate of phNxpNciHal_dta.cc, there is a possible out of bounds write due to an incorrect bounds check. ... |
| CVE-2021-0976 | MEDIUM | 6.5 | 0.6% | Dec 15, 2021 | In toBARK of floor0.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote i... |
| CVE-2021-0973 | MEDIUM | 5 | 0.1% | Dec 15, 2021 | In isFileUri of UriUtil.java, there is a possible way to bypass ignoring file://URI attachment due to improper handling ... |
| CVE-2021-0971 | MEDIUM | 6.5 | 0.6% | Dec 15, 2021 | In MPEG4Source::read of MPEG4Extractor.cpp, there is a possible out of bounds write due to a missing bounds check. This ... |
| CVE-2021-0969 | MEDIUM | 6.5 | 0.6% | Dec 15, 2021 | In getTitle of AccessPoint.java, there is a possible unhandled exception due to a missing null check. This could lead to... |
| CVE-2021-0966 | MEDIUM | 5.5 | 0.1% | Dec 15, 2021 | In code generated by BuildParcelFields of generate_cpp.cpp, there is a possible way for a crafted parcelable to reveal u... |
| CVE-2021-0964 | MEDIUM | 6.5 | 0.9% | Dec 15, 2021 | In C2SoftMP3::process() of C2SoftMp3Dec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This... |
| CVE-2021-0961 | MEDIUM | 4.4 | 0.1% | Dec 15, 2021 | In quota_proc_write of xt_quota2.c, there is a possible way to read kernel memory due to uninitialized data. This could ... |
| CVE-2021-0958 | MEDIUM | 4.4 | 0.1% | Dec 15, 2021 | In update of km_compat.cpp, there is a possible loss of potentially sensitive data due to a logic error in the code. Thi... |
| CVE-2021-0952 | MEDIUM | 5 | 0.1% | Dec 15, 2021 | In doCropPhoto of PhotoSelectionHandler.java, there is a possible permission bypass due to a confused deputy. This could... |
| CVE-2021-0931 | MEDIUM | 5.5 | 0.1% | Dec 15, 2021 | In getAlias of BluetoothDevice.java, there is a possible way to create misleading permission dialogs due to missing data... |
| CVE-2021-0920 | MEDIUM | 6.4 | 0.8% | Dec 15, 2021 | In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition. This could lead to loca... |
| CVE-2021-0919 | MEDIUM | 5 | 0.1% | Dec 15, 2021 | In getService of IServiceManager.cpp, there is a possible unhandled exception due to an integer overflow. This could lea... |
| CVE-2021-0904 | MEDIUM | 6.7 | 0.1% | Dec 15, 2021 | In SRAMROM, there is a possible permission bypass due to an insecure permission setting. This could lead to local escala... |
| CVE-2021-0704 | MEDIUM | 5.5 | 0.1% | Dec 15, 2021 | In createNoCredentialsPermissionNotification and related functions of AccountManagerService.java, there is a possible wa... |
| CVE-2021-0653 | MEDIUM | 5.5 | 0.1% | Dec 15, 2021 | In enqueueNotification of NetworkPolicyManagerService.java, there is a possible way to retrieve a trackable identifier d... |
| CVE-2021-0650 | MEDIUM | 6.5 | 0.9% | Dec 15, 2021 | In WT_InterpolateNoLoop of eas_wtengine.c, there is a possible out of bounds read due to an incorrect bounds check. This... |
| CVE-2021-43675 | MEDIUM | 6.1 | 0.9% | Dec 15, 2021 | Lychee-v3 3.2.16 is affected by a Cross Site Scripting (XSS) vulnerability in php/Access/Guest.php. The function exit wi... |
| CVE-2021-4117 | MEDIUM | 4.3 | 0.7% | Dec 15, 2021 | yetiforcecrm is vulnerable to Business Logic Errors |
| CVE-2021-43908 | MEDIUM | 4.3 | 2.7% | Dec 15, 2021 | Visual Studio Code Spoofing Vulnerability |
| CVE-2021-43896 | MEDIUM | 5.5 | 2.3% | Dec 15, 2021 | Microsoft PowerShell Spoofing Vulnerability |
| CVE-2021-43880 | MEDIUM | 5.5 | 0.7% | Dec 15, 2021 | Windows Mobile Device Management Elevation of Privilege Vulnerability |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now