Vulnerabilities > Access of Resource Using Incompatible Type ('Type Confusion')

DATE CVE VULNERABILITY TITLE RISK
2020-12-08 CVE-2020-27932 Type Confusion vulnerability in Apple products
A type confusion issue was addressed with improved state handling.
local
low complexity
apple CWE-843
7.8
2020-11-03 CVE-2020-16009 Type Confusion vulnerability in multiple products
Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
8.8
2020-10-16 CVE-2020-9948 Type Confusion vulnerability in multiple products
A type confusion issue was addressed with improved memory handling.
network
low complexity
apple webkit debian CWE-843
8.8
2020-10-12 CVE-2020-13341 Type Confusion vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2.
network
low complexity
gitlab CWE-843
4.9
2020-09-21 CVE-2020-6537 Type Confusion vulnerability in multiple products
Type confusion in V8 in Google Chrome prior to 84.0.4147.105 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
network
low complexity
google debian fedoraproject CWE-843
8.8
2020-09-21 CVE-2020-15965 Type Confusion vulnerability in multiple products
Type confusion in V8 in Google Chrome prior to 85.0.4183.121 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.
network
low complexity
google debian opensuse fedoraproject CWE-843
8.8
2020-09-17 CVE-2020-0336 Type Confusion vulnerability in Google Android 11.0
In SurfaceFlinger, there is possible memory corruption due to type confusion.
local
low complexity
google CWE-843
6.7
2020-09-14 CVE-2020-25575 Type Confusion vulnerability in Failure Project Failure
An issue was discovered in the failure crate through 0.1.5 for Rust.
network
low complexity
failure-project CWE-843
critical
9.8
2020-09-04 CVE-2020-1911 Type Confusion vulnerability in Facebook Hermes
A type confusion vulnerability when resolving properties of JavaScript objects with specially-crafted prototype chains in Facebook Hermes prior to commit fe52854cdf6725c2eaa9e125995da76e6ceb27da allows attackers to potentially execute arbitrary code via crafted JavaScript.
network
low complexity
facebook CWE-843
critical
9.8
2020-08-29 CVE-2020-25016 Type Confusion vulnerability in Rgb-Rust Project Rgb-Rust 0.4.0/0.8.14/0.8.16
A safety violation was discovered in the rgb crate before 0.8.20 for Rust, leading to (for example) dereferencing of arbitrary pointers or disclosure of uninitialized memory.
network
low complexity
rgb-rust-project CWE-843
critical
9.1