CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')

Parent: CWE-704 - Incorrect Type Conversion or Cast

The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

788 vulnerabilities with CWE-843
CVE-2024-32919 HIGH
Android - Local Privilege Escalation via Type Confusion in lwis_add_completion_fence
CVSS 7.8
CVE-2024-32892 HIGH
Android - Local Privilege Escalation via Type Confusion in Goodix Main Component
CVSS 7.8
CVE-2024-5843 MEDIUM
Google Chrome < 126.0.6478.54 - Security UI Obfuscation via Malicious File Download
CVSS 6.5
CVE-2024-5838 HIGH
Google Chrome < 126.0.6478.54 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2024-5837 HIGH
Google Chrome < 126.0.6478.54 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2024-5833 HIGH
Google Chrome < 126.0.6478.54 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2024-5830 HIGH
Google Chrome < 126.0.6478.54 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2024-5597 HIGH
Fuji Electric Monitouch V-SFT < 6.2.3.0 - Type Confusion
CVSS 7.8
CVE-2024-5436 CRITICAL
Snapchat LensCore < 12.88 - Type Confusion
CVSS 9.8
CVE-2024-5271 HIGH
Fuji Electric Monitouch V-SFT < 6.2.3.0 - Remote Code Execution via Type Confusion
CVSS 7.8
CVE-2024-5274 CRITICAL KEV
Google Chrome < 125.0.6422.112 - Remote Code Execution via V8 Type Confusion
CVSS 9.6
CVE-2024-5158 HIGH
Google Chrome < 125.0.6422.76 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.1
CVE-2024-4947 CRITICAL KEV
Google Chrome < 125.0.6422.60 - Remote Code Execution via V8 Type Confusion
CVSS 9.6
CVE-2024-30034 MEDIUM
Windows Cloud Files Mini Filter Driver - Info Disclosure
CVSS 5.5
CVE-2024-32063 HIGH
Siemens Simcenter Femap < V2406 - IGS File Type Confusion Code Execution
CVSS 7.8
CVE-2024-32062 HIGH
Simcenter Femap <V2406 - Code Injection
CVSS 7.8
CVE-2024-32057 HIGH
Simcenter Femap <V2406 - Code Injection
CVSS 7.8
CVE-2024-34394 HIGH
libxmljs2 - Remote Code Execution via namespaces Type Confusion
CVSS 8.1
CVE-2024-34393 HIGH
libxmljs2 - Type Confusion via attrs() Function on Parsed Node
CVSS 8.1
CVE-2024-34392 HIGH
libxmljs - Remote Code Execution via namespaces Type Confusion
CVSS 8.1
CVE-2024-34391 HIGH
libxmljs - Code Execution via attrs Type Confusion
CVSS 8.1
CVE-2024-4058 HIGH
Google Chrome <124.0.6367.78 - Heap Corruption
CVSS 8.8
CVE-2024-25575 HIGH
Foxit PDF Editor < 11.2.8.53842 - Type Confusion via Lock Object Handling
CVSS 8.8
CVE-2024-26232 HIGH
Microsoft Windows 10 1507-23H2 and Windows Server 2008-2012 - Remote Code Execution via MSMQ Type Confusion
CVSS 7.3
CVE-2024-20678 HIGH
Microsoft Windows RPC Runtime - Remote Code Execution
CVSS 8.8
Details
Vulnerabilities 788