Vulnerabilities > Access of Resource Using Incompatible Type ('Type Confusion')

DATE CVE VULNERABILITY TITLE RISK
2023-04-24 CVE-2023-24823 Type Confusion vulnerability in Riot-Os Riot
RIOT-OS, an operating system that supports Internet of Things devices, contains a network stack with the ability to process 6LoWPAN frames.
network
low complexity
riot-os CWE-843
critical
9.8
2023-04-14 CVE-2023-2033 Type Confusion vulnerability in multiple products
Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian fedoraproject couchbase CWE-843
8.8
2023-04-11 CVE-2021-46878 Type Confusion vulnerability in Treasuredata Fluent BIT 1.7.1
An issue was discovered in Treasure Data Fluent Bit 1.7.1, erroneous parsing in flb_pack_msgpack_to_json_format leads to type confusion bug that interprets whatever is on the stack as msgpack maps and arrays, leading to use-after-free.
local
low complexity
treasuredata CWE-843
7.8
2023-04-10 CVE-2023-26063 Type Confusion vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type.
network
low complexity
lexmark CWE-843
critical
9.8
2023-03-27 CVE-2023-1076 Type Confusion vulnerability in Linux Kernel
A flaw was found in the Linux Kernel.
local
low complexity
linux CWE-843
5.5
2023-03-27 CVE-2023-1077 Type Confusion vulnerability in multiple products
In the Linux kernel, pick_next_rt_entity() may return a type confused entry, not detected by the BUG_ON condition, as the confused entry will not be NULL, but list_head.The buggy error condition would lead to a type confused entry with the list head,which would then be used as a type confused sched_rt_entity,causing memory corruption.
local
high complexity
linux debian netapp CWE-843
7.0
2023-03-27 CVE-2023-1078 Type Confusion vulnerability in Linux Kernel
A flaw was found in the Linux Kernel in RDS (Reliable Datagram Sockets) protocol.
local
low complexity
linux CWE-843
7.8
2023-03-10 CVE-2023-0083 Type Confusion vulnerability in Openatom Openharmony
The ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions, OpenHarmony-v3.0.7 and prior versions has an Improper Input Validation vulnerability which local attackers can exploit this vulnerability to send malicious data, causing the current application to crash.
local
low complexity
openatom CWE-843
5.5
2023-03-07 CVE-2023-1214 Type Confusion vulnerability in Google Chrome
Type confusion in V8 in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-843
8.8
2023-03-07 CVE-2023-1215 Type Confusion vulnerability in Google Chrome
Type confusion in CSS in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-843
8.8