CWE-704

Incorrect Type Conversion or Cast

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not correctly convert an object, resource, or structure from one type to a different type.

273 vulnerabilities with CWE-704
CVE-2020-11725 HIGH
Linux kernel <5.6.3 - Info Disclosure
CVSS 7.8
CVE-2019-2194 HIGH
Android 9 - Local Privilege Escalation via SurfaceFlinger Layer Creation
CVSS 7.8
CVE-2019-14077 HIGH
Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapd...
CVSS 7.8
CVE-2019-6147 MEDIUM
Forcepoint NGFW Security Management Center <6.5.12-6.7.1 - Info Dis...
CVSS 5.9
CVE-2019-12693 MEDIUM
Cisco Adaptive Security Appliance < 9.6.4.30 and 9.7-9.8.4 - Authenticated Denial of Service via SCP File Transfer
CVSS 4.9
CVE-2019-10355 HIGH
Jenkins Script Security Plugin <1.61 - RCE
CVSS 8.8
CVE-2019-2306 HIGH
Qualcomm Snapdragon - Buffer Overflow
CVSS 7.8
CVE-2019-5757 HIGH
Google Chrome < 72.0.3626.81 - Remote Code Execution via SVG Object Type Confusion
CVSS 8.8
CVE-2018-9339 HIGH
Android - Local Privilege Escalation via Parcel Type Confusion
CVSS 7.8
CVE-2018-6157 HIGH
Google Chrome <68.0.3440.75 - Heap Corruption
CVSS 8.8
CVE-2018-4285 HIGH
macOS < 10.13.6 - Type Confusion via Improved Memory Handling
CVSS 7.8
CVE-2018-4284 HIGH
Safari < 11.1.2 - Type Confusion
CVSS 8.8
CVE-2018-5817 HIGH
LibRaw < 0.19.1 - Denial of Service via Type Confusion in unpacked_load_raw()
CVSS 7.5
CVE-2018-7815 HIGH
Eurotherm by Schneider Electric GUIcon V2.0 - RCE
CVSS 7.8
CVE-2018-7813 HIGH
Eurotherm by Schneider Electric GUIcon V2.0 - RCE
CVSS 7.8
CVE-2018-19027 HIGH
CX-One <= 4.50 and CX-Protocol <= 2.0 - Remote Code Execution via Crafted Project File
CVSS 7.8
CVE-2018-17685 HIGH
Foxit PhantomPDF and Reader < 9.2.0.9297 - Remote Code Execution via PDF Type Confusion
CVSS 8.8
CVE-2018-19019 HIGH
CX-Supervisor < 3.42 - Remote Code Execution via Crafted Project File
CVSS 7.3
CVE-2018-6170 HIGH
Google Chrome <68.0.3440.75 - Heap Corruption
CVSS 8.8
CVE-2018-6124 HIGH
Google Chrome < 67.0.3396.62 - Type Confusion in ReadableStreams
CVSS 8.8
CVE-2018-6056 HIGH
Google Chrome < 64.0.3282.168 - Remote Code Execution via V8 Type Confusion
CVSS 8.8
CVE-2018-19134 HIGH
Artifex Ghostscript < 9.25 - Remote Code Execution via setpattern Type Confusion
CVSS 7.8
CVE-2018-5804 MEDIUM
LibRaw < 0.18.8 - Divide By Zero via identify() Function Type Confusion
CVSS 6.5
CVE-2018-9568 HIGH
Android Kernel - Local Privilege Escalation via Type Confusion in sk_clone_lock
CVSS 7.8
CVE-2018-15981 CRITICAL
Adobe Flash Player < 31.0.0.148 - Remote Code Execution via Type Confusion
CVSS 9.8
Details
Vulnerabilities 273