CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')

Parent: CWE-704 - Incorrect Type Conversion or Cast

The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

789 vulnerabilities with CWE-843
CVE-2023-1076 MEDIUM
Linux Kernel - Type Confusion in tun/tap Socket Initialization
CVSS 5.5
CVE-2023-1075 LOW
Linux Kernel - Type Confusion in tls_is_tx_ready
CVSS 3.3
CVE-2023-21056 MEDIUM
Android - Type Confusion in lwis_slc_buffer_free
CVSS 6.7
CVE-2023-0083 MEDIUM
OpenHarmony <v3.1.5 - Info Disclosure
CVSS 4.0
CVE-2023-1235 MEDIUM
Google Chrome < 111.0.5563.64 - Type Confusion in DevTools
CVSS 6.3
CVE-2023-1215 HIGH
Google Chrome < 111.0.5563.64 - Type Confusion in CSS via Crafted HTML Page
CVSS 8.8
CVE-2023-1214 HIGH
Google Chrome < 111.0.5563.64 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2023-23529 HIGH KEV
Safari < 16.3 - Remote Code Execution via Type Confusion
CVSS 8.8
CVE-2023-22579 CRITICAL
sequelizejs/sequelize - SQL Injection via Improper Parameter Filtering
CVSS 9.9
CVE-2023-0286 HIGH
OpenSSL 1.0.2-1.0.2zg - Type Confusion in X.400 Address Processing
CVSS 7.4
CVE-2023-0703 HIGH
Google Chrome < 110.0.5481.77 - Type Confusion in DevTools via UI Interactions
CVSS 8.8
CVE-2023-0702 HIGH
Google Chrome < 110.0.5481.77 - Type Confusion in Data Transfer
CVSS 8.8
CVE-2023-0696 HIGH
Google Chrome < 110.0.5481.77 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2023-20616 MEDIUM
Android - Local Privilege Escalation via Type Confusion in ion
CVSS 6.7
CVE-2023-0473 HIGH
Google Chrome < 109.0.5414.119 - Type Confusion in ServiceWorker API
CVSS 8.8
CVE-2023-23455 MEDIUM
Linux Kernel 2.6.12-6.1.4 - Denial of Service via Type Confusion in atm_tc_enqueue
CVSS 5.5
CVE-2023-23454 MEDIUM
Linux Kernel 2.6.12-6.1.4 - Denial of Service via Type Confusion in cbq_classify
CVSS 5.5
CVE-2023-21675 HIGH
Windows Kernel - Privilege Escalation
CVSS 7.8
CVE-2022-50590 MEDIUM
SuiteCRM < 7.12.6 - Unauthenticated Type Confusion via DeleteAttachment Module Parameter
CVSS 5.3
CVE-2022-46706 HIGH
macOS < 11.6.5 - Remote Code Execution via Type Confusion
CVSS 7.8
CVE-2022-4912 HIGH
Google Chrome < 105.0.5195.52 - Type Confusion in MathML via Crafted HTML Page
CVSS 8.8
CVE-2022-48511 CRITICAL
Huawei EMUI - Use-After-Free in Audio PCM Driver Module
CVSS 9.8
CVE-2022-37377 HIGH
Foxit PDF Editor 11.1.1.53537 - Remote Code Execution via JavaScript Optimization Type Confusion
CVSS 7.8
CVE-2022-4205 MEDIUM
GitLab < 15.6.1, 15.5.5, 15.4.6 - Type Confusion via Hexadecimal Branch Name
CVSS 6.3
CVE-2022-20461 HIGH
Android - Local Privilege Escalation via Type Confusion in pinReplyNative
CVSS 7.8
Details
Vulnerabilities 789