Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Connect Secure HIGH 8.8
CVE-2021-22894 KEVEPSS 41%

A buffer overflow vulnerability exists in Pulse Connect Secure before 9.1R11.4 allows a remote authenticated attacker to execute arbitrary code as th…

Mitigation only
Fix from $1,950 2021-05-27
Fedora HIGH 7.8
CVE-2021-30499

A flaw was found in libcaca. A buffer overflow of export.c in function export_troff might lead to memory corruption and other potential consequences.

No fix yet
Fix from $1,950 2021-05-27
Podofo HIGH 7.8
CVE-2021-30472

A flaw was found in PoDoFo 0.9.7. A stack-based buffer overflow in PdfEncryptMD5Base::ComputeOwnerKey function in PdfEncrypt.cpp is possible because …

Patch available
Fix from $1,950 2021-05-26
Fedora HIGH 7.1
CVE-2021-3561

An Out of Bounds flaw was found fig2dev version 3.2.8a. A flawed bounds check in read_objects() could allow an attacker to provide a crafted maliciou…

Patch available
Fix from $1,950 2021-05-26
Fedora HIGH 7.4
CVE-2021-25217EPSS 6%

In ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16, ISC DHCP 4.4.0 -> 4.4.2 (Other branches of ISC DHCP (i.e., releases in the 4.0.x series or lower and releases …

Fix: 2.15.0+
Fix from $1,950 2021-05-26
Binutils HIGH 7.1
CVE-2021-3549

An out of bounds flaw was found in GNU binutils objdump utility version 2.36. An attacker could use this flaw and pass a large section to avr_elf32_l…

Patch available
Fix from $1,950 2021-05-26
Vijeo Designer HIGH 7.8
CVE-2021-22705

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause denial of service or unauthorized acces…

Fix: 2.0 / 6.2.11+
Fix from $1,950 2021-05-26
Linux Kernel HIGH 7.8
CVE-2020-27815

A flaw was found in the JFS filesystem code in the Linux Kernel which allows a local attacker with the ability to set extended attributes to panic th…

Fix: 4.9.249 / 4.14.213+
Fix from $1,950 2021-05-26
Linux Kernel HIGH 7.8
CVE-2021-22543

An issue was discovered in Linux: KVM through Improper handling of VM_IO|VM_PFNMAP vmas in KVM can bypass RO checks and can lead to pages being freed…

No fix yet
Fix from $1,950 2021-05-26
Libvirt MEDIUM 6.5
CVE-2021-3559

A flaw was found in libvirt in the virConnectListAllNodeDevices API in versions before 7.0.0. It only affects hosts with a PCI device and driver that…

Fix: 7.0.0+
Fix from $1,600 2021-05-24
Gt27 Firmware HIGH 7.5
CVE-2021-20589

Buffer access with incorrect length value vulnerability in GOT2000 series GT27 model communication driver versions 01.19.000 through 01.38.000, GT25 …

Fix: after 1.250l
Fix from $1,950 2021-05-19
Routeros MEDIUM 6.5
CVE-2020-20220

Mikrotik RouterOs prior to stable 6.47 suffers from a memory corruption vulnerability in the /nova/bin/bfd process. An authenticated remote attacker …

Fix: 6.47+
Fix from $1,600 2021-05-18
Tensorflow MEDIUM 5.5
CVE-2021-29575

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.ReverseSequence` allows for stack overflow a…

Fix: 2.2.3 / 2.3.3+
Fix from $1,600 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29576

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.MaxPool3DGradGrad` is vulnerable to a heap b…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29577

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.AvgPool3DGrad` is vulnerable to a heap buffe…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29578

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.FractionalAvgPoolGrad` is vulnerable to a he…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29579

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.MaxPoolGrad` is vulnerable to a heap buffer …

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Rcx Rtos HIGH 7.5
CVE-2021-20988

In Hilscher rcX RTOS versions prios to V2.1.14.1 the actual UDP packet length is not verified against the length indicated by the packet. This may le…

Fix: 2.1.14.1+
Fix from $1,950 2021-05-13
Simatic Hmi Comfort Outdoor Panels 7\" Firmware HIGH 7.5
CVE-2021-25660

A vulnerability has been identified in SIMATIC HMI Comfort Outdoor Panels V15 7\" & 15\" (incl. SIPLUS variants) (All versions < V15.1 Update 6), SIM…

Fix: 15.1 / 16+
Fix from $1,950 2021-05-12
Tecnomatix Plant Simulation HIGH 7.8
CVE-2021-27397

A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V16.0.5). The PlantSimCore.dll library lacks proper validation of …

Fix: 16.0.5+
Fix from $1,950 2021-05-12
Openscad HIGH 7.8
CVE-2020-28600

An out-of-bounds write vulnerability exists in the import_stl.cc:import_stl() functionality of Openscad openscad-2020.12-RC2. A specially crafted STL…

No fix yet
Fix from $1,950 2021-05-10
3d HIGH 7.8
CVE-2021-31472

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is requ…

Fix: after 10.0.1.37598
Fix from $1,950 2021-05-07
Apq8009 Firmware HIGH 7.8
CVE-2020-11289

Out of bound write can occur in TZ command handler due to lack of validation of command ID in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect…

Mitigation only
Fix from $1,950 2021-05-07
Aqt1000 Firmware HIGH 7.8
CVE-2020-11288

Out of bound write can occur in playready while processing command due to lack of input validation in Snapdragon Auto, Snapdragon Compute, Snapdragon…

Mitigation only
Fix from $1,950 2021-05-07
Debian Linux MEDIUM 6.1
CVE-2021-3507

A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block…

Fix: after 6.0.0
Fix from $1,600 2021-05-06
Debian Linux CRITICAL 9.8
CVE-2021-20204

A heap memory corruption problem (use after free) can be triggered in libgetdata v0.10.0 when processing maliciously crafted dirfile databases. This …

Mitigation only
Fix from $2,300 2021-05-06
Video Surveillance 8400 Firmware MEDIUM 6.5
CVE-2021-1521

A vulnerability in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Cameras could allow an unauthenticated, ad…

Fix: 1.0.9-11+
Fix from $1,600 2021-05-06
Vedge 100 Firmware HIGH 7.5
CVE-2021-1509

Multiple vulnerabilities in Cisco SD-WAN vEdge Software could allow an attacker to execute arbitrary code as the root user or cause a denial of servi…

Fix: 20.4.1 / 20.5.1+
Fix from $1,950 2021-05-06
Vedge 100 Firmware HIGH 7.5
CVE-2021-1510

Multiple vulnerabilities in Cisco SD-WAN vEdge Software could allow an attacker to execute arbitrary code as the root user or cause a denial of servi…

Fix: 20.4.1 / 20.5.1+
Fix from $1,950 2021-05-06
Vedge 100 Firmware MEDIUM 6.5
CVE-2021-1511

Multiple vulnerabilities in Cisco SD-WAN vEdge Software could allow an attacker to execute arbitrary code as the root user or cause a denial of servi…

Fix: 20.4.1 / 20.5.1+
Fix from $1,600 2021-05-06