2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-39820 | HIGH | 7.8 | 3.5% | Jun 15, 2022 | Adobe InDesign versions 16.3 (and earlier), and 16.3.1 (and earlier) is affected by an Out-of-bounds Write vulnerability... |
| CVE-2021-33036 | HIGH | 8.8 | 3.2% | Jun 15, 2022 | In Apache Hadoop 2.2.0 to 2.10.1, 3.0.0-alpha1 to 3.1.4, 3.2.0 to 3.2.2, and 3.3.0 to 3.3.1, a user who can escalate to ... |
| CVE-2021-39806 | HIGH | 7.8 | 0.1% | Jun 15, 2022 | In closef of label_backends_android.c, there is a possible way to corrupt memory due to a double free. This could lead t... |
| CVE-2021-39691 | HIGH | 7.3 | 0.1% | Jun 15, 2022 | In WindowManager, there is a possible tapjacking attack due to an incorrect window flag when processing user input. This... |
| CVE-2021-41413 | HIGH | 7.8 | 0.8% | Jun 15, 2022 | ok-file-formats master 2021-9-12 is affected by a buffer overflow in ok_jpg_convert_data_unit_grayscale and ok_jpg_conve... |
| CVE-2021-40660 | HIGH | 7.5 | 0.9% | Jun 14, 2022 | An issue was discovered in Delight Nashorn Sandbox 0.2.0. There is an ReDoS vulnerability that can be exploited to launc... |
| CVE-2021-40633 | HIGH | 8.8 | 1.5% | Jun 14, 2022 | A memory leak (out-of-memory) in gif2rgb in util/gif2rgb.c in giflib 5.1.4 allows remote attackers trigger an out of mem... |
| CVE-2021-37182 | HIGH | 7.5 | 0.6% | Jun 14, 2022 | A vulnerability has been identified in SCALANCE XM408-4C (All versions < V6.5), SCALANCE XM408-4C (L3 int.) (All version... |
| CVE-2021-35130 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Memory corruption in graphics support layer due to use after free condition in Snapdragon Auto, Snapdragon Consumer IOT,... |
| CVE-2021-35129 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Memory corruption in BT controller due to improper length check while processing vendor specific commands in Snapdragon ... |
| CVE-2021-35126 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Memory corruption in DSP service due to improper validation of input parameters in Snapdragon Auto, Snapdragon Compute, ... |
| CVE-2021-35123 | HIGH | 8.8 | 0.3% | Jun 14, 2022 | Buffer copy in GATT multi notification due to improper length check for the data coming over-the-air in Snapdragon Conne... |
| CVE-2021-35116 | HIGH | 7.1 | 0.2% | Jun 14, 2022 | APK can load a crafted model into the CDSP which can lead to a compromise of CDSP and other APK`s data executing there i... |
| CVE-2021-35114 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Improper buffer initialization on the backend driver can lead to buffer overflow in Snapdragon Auto |
| CVE-2021-35112 | HIGH | 7.8 | 0.1% | Jun 14, 2022 | A user with user level permission can access graphics protected region due to improper access control in register config... |
| CVE-2021-35102 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Possible buffer overflow due to lack of validation for the length of NAI string read from EFS in Snapdragon Auto, Snapdr... |
| CVE-2021-35100 | HIGH | 7.5 | 0.6% | Jun 14, 2022 | Possible buffer over read due to improper calculation of string length while parsing Id3 tag in Snapdragon Auto, Snapdra... |
| CVE-2021-35096 | HIGH | 7.5 | 0.6% | Jun 14, 2022 | Improper memory allocation during counter check DLM handling can lead to denial of service in Snapdragon Auto, Snapdrago... |
| CVE-2021-35095 | HIGH | 7 | 0.1% | Jun 14, 2022 | Improper serialization of message queue client registration can lead to race condition allowing multiple gunyah message ... |
| CVE-2021-35094 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Improper verification of timeout-based authentication in identity credential can lead to invalid authorization in HLOS i... |
| CVE-2021-35091 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Possible out of bounds read due to improper typecasting while handling page fault for global memory in Snapdragon Connec... |
| CVE-2021-35090 | HIGH | 7.8 | 0.1% | Jun 14, 2022 | Possible hypervisor memory corruption due to TOC TOU race condition when updating address mappings in Snapdragon Auto, S... |
| CVE-2021-35087 | HIGH | 7.5 | 0.6% | Jun 14, 2022 | Possible null pointer access due to improper validation of system information message to be processed in Snapdragon Indu... |
| CVE-2021-35086 | HIGH | 7.5 | 0.6% | Jun 14, 2022 | Possible buffer over read due to improper validation of SIB type when processing a NR system Information message in Snap... |
| CVE-2021-35085 | HIGH | 7.1 | 0.1% | Jun 14, 2022 | Possible buffer overflow due to lack of buffer length check during management frame Rx handling in Snapdragon Auto, Snap... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now