CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')

Parent: CWE-704 - Incorrect Type Conversion or Cast

The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

789 vulnerabilities with CWE-843
CVE-2022-1232 HIGH
Google Chrome < 100.0.4896.75 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2022-1134 HIGH
Google Chrome < 100.0.4896.60 - Remote Code Execution via V8 Type Confusion
CVSS 8.8
CVE-2022-1096 HIGH KEV
Google Chrome < 99.0.4844.84 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2022-34221 HIGH
Adobe Acrobat Reader <22.001.20142, 20.005.30334, 17.012.30229 - Co...
CVSS 7.8
CVE-2022-34918 HIGH
Netfilter nft_set_elem_init Heap Overflow Privilege Escalation
CVSS 7.8
CVE-2022-1786 HIGH
Linux Kernel 5.10-5.11 - Use-After-Free in io_uring IORING_SETUP_IOPOLL
CVSS 7.8
CVE-2022-29209 MEDIUM
TensorFlow <2.9.0-2.6.4 - Info Disclosure
CVSS 5.5
CVE-2022-29181 HIGH
Nokogiri <1.13.6 - Memory Corruption
CVSS 8.2
CVE-2022-30557 HIGH
Foxit PDF Reader < 11.2.2 and PDF Editor < 10.1.7.37777 - Type Confusion via JavaScript Unsigned32 Mishandling
CVSS 7.5
CVE-2022-0795 HIGH
Google Chrome <99.0.4844.51 - Heap Corruption
CVSS 8.8
CVE-2022-0457 HIGH
Google Chrome <98.0.4758.80 - Heap Corruption
CVSS 8.8
CVE-2022-1176 HIGH
livehelperchat < 3.96 - Insecure Direct Object Reference via Loose Comparison
CVSS 7.5
CVE-2022-22661 HIGH
macOS < 10.15.7, 11.6-11.6.5 - Type Confusion leading to Privilege Escalation
CVSS 7.8
CVE-2022-21656 HIGH
envoyproxy/envoy < 1.20.2 - Improper Certificate Validation via subjectAltNames Type Confusion
CVSS 7.4
CVE-2022-0102 HIGH
Google Chrome <97.0.4692.71 - Heap Corruption
CVSS 8.8
CVE-2022-23583 MEDIUM
TensorFlow < 2.5.3 - Denial of Service via SavedModel Type Confusion
CVSS 6.5
CVE-2022-21734 MEDIUM
TensorFlow < 2.5.3 - Type Confusion in MapStage Implementation
CVSS 6.5
CVE-2022-21731 MEDIUM
TensorFlow < 2.5.3 - Denial of Service via ConcatV2 Shape Inference Type Confusion
CVSS 6.5
CVE-2021-33970 CRITICAL
Qihoo 360 Chrome 13.0.2170.0 - Buffer Overflow
CVSS 10.0
CVE-2021-46878 HIGH
Treasure Data Fluent Bit 1.7.1 - Use After Free
CVSS 7.8
CVE-2021-26635 HIGH
Bandisoft ARK Library < 7.17 - Type Confusion leading to Stack Buffer Overflow
CVSS 7.8
CVE-2021-32965 HIGH
Delta Electronics DIAScreen <1.1.0 - RCE
CVSS 7.8
CVE-2021-41041 MEDIUM
Eclipse Openj9 <0.32.0 - Code Injection
CVSS 5.3
CVE-2021-46743 CRITICAL
Firebase PHP-JWT <6.0.0 - Code Injection
CVSS 9.1
CVE-2021-26600 CRITICAL
ImpressCMS < 1.4.3 - Authentication Bypass via Type Confusion in autologin.php
CVSS 9.8
Details
Vulnerabilities 789