CWE-704

Incorrect Type Conversion or Cast

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not correctly convert an object, resource, or structure from one type to a different type.

268 vulnerabilities with CWE-704
CVE-2019-10355 HIGH
Jenkins Script Security Plugin <1.61 - RCE
CVSS 8.8
CVE-2019-2306 HIGH
Qualcomm Snapdragon - Buffer Overflow
CVSS 7.8
CVE-2019-5757 HIGH
Google Chrome < 72.0.3626.81 - Remote Code Execution via SVG Object Type Confusion
CVSS 8.8
CVE-2018-9339 HIGH
Android - Local Privilege Escalation via Parcel Type Confusion
CVSS 7.8
CVE-2018-6157 HIGH
Google Chrome <68.0.3440.75 - Heap Corruption
CVSS 8.8
CVE-2018-4285 HIGH
macOS < 10.13.6 - Type Confusion via Improved Memory Handling
CVSS 7.8
CVE-2018-4284 HIGH
Safari < 11.1.2 - Type Confusion
CVSS 8.8
CVE-2018-5817 HIGH
LibRaw < 0.19.1 - Denial of Service via Type Confusion in unpacked_load_raw()
CVSS 7.5
CVE-2018-7815 HIGH
Eurotherm by Schneider Electric GUIcon V2.0 - RCE
CVSS 7.8
CVE-2018-7813 HIGH
Eurotherm by Schneider Electric GUIcon V2.0 - RCE
CVSS 7.8
CVE-2018-19027 HIGH
CX-One <= 4.50 and CX-Protocol <= 2.0 - Remote Code Execution via Crafted Project File
CVSS 7.8
CVE-2018-17685 HIGH
Foxit PhantomPDF and Reader < 9.2.0.9297 - Remote Code Execution via PDF Type Confusion
CVSS 8.8
CVE-2018-19019 HIGH
CX-Supervisor < 3.42 - Remote Code Execution via Crafted Project File
CVSS 7.3
CVE-2018-6170 HIGH
Google Chrome <68.0.3440.75 - Heap Corruption
CVSS 8.8
CVE-2018-6124 HIGH
Google Chrome < 67.0.3396.62 - Type Confusion in ReadableStreams
CVSS 8.8
CVE-2018-6056 HIGH
Google Chrome < 64.0.3282.168 - Remote Code Execution via V8 Type Confusion
CVSS 8.8
CVE-2018-19134 HIGH
Artifex Ghostscript < 9.25 - Remote Code Execution via setpattern Type Confusion
CVSS 7.8
CVE-2018-5804 MEDIUM
LibRaw < 0.18.8 - Divide By Zero via identify() Function Type Confusion
CVSS 6.5
CVE-2018-9568 HIGH
Android Kernel - Local Privilege Escalation via Type Confusion in sk_clone_lock
CVSS 7.8
CVE-2018-15981 CRITICAL
Adobe Flash Player < 31.0.0.148 - Remote Code Execution via Type Confusion
CVSS 9.8
CVE-2018-5861 HIGH
Android - Heap Overflow via Incomplete Partition Size Checks
CVSS 7.8
CVE-2018-19477 HIGH
Ghostscript < 9.26 - Remote Code Execution via JBIG2Decode Type Confusion
CVSS 7.8
CVE-2018-19476 HIGH
Ghostscript < 9.26 - Remote Code Execution via setcolorspace Type Confusion
CVSS 7.8
CVE-2018-6064 HIGH
Google Chrome <65.0.3325.146 - Heap Corruption
CVSS 8.8
CVE-2018-17913 HIGH
Omron CX-Supervisor <3.4.1.0 - Code Injection
CVSS 7.8
Details
Vulnerabilities 268