Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Msm8996au Firmware HIGH 7.8
CVE-2018-5917

Possible buffer overflow in OEM crypto function due to improper input validation in Snapdragon Automobile, Snapdragon Mobile in versions MSM8996AU, S…

Mitigation only
Fix from $1,950 2018-11-28
Mdm9206 Firmware HIGH 7.8
CVE-2018-5918

Possible buffer overflow in DRM Trusted application due to lack of check function return values in Snapdragon Automobile, Snapdragon Mobile and Snapd…

Mitigation only
Fix from $1,950 2018-11-28
Qts HIGH 7.7
CVE-2018-0721

Buffer Overflow vulnerability in NAS devices. QTS allows attackers to run arbitrary code. This issue affects: QNAP Systems Inc. QTS version 4.2.6 and…

Mitigation only
Fix from $1,950 2018-11-27
Android HIGH 7.8
CVE-2018-11995

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, a partition name-check variable is not res…

Patch available
Fix from $1,950 2018-11-27
Android HIGH 7.8
CVE-2018-5906

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a possible buffer overflow in deb…

Patch available
Fix from $1,950 2018-11-27
Android HIGH 7.8
CVE-2018-5908

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a possible buffer overflow in dis…

Patch available
Fix from $1,950 2018-11-27
Android HIGH 7.8
CVE-2018-5909

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, buffer overflow occur may occur in display…

Patch available
Fix from $1,950 2018-11-27
Android HIGH 7.8
CVE-2018-5910

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, a memory corruption can occur in kernel du…

Patch available
Fix from $1,950 2018-11-27
System Management Module Firmware HIGH 8.1
CVE-2018-16091

In System Management Module (SMM) versions prior to 1.06, the SMM certificate creation and parsing logic is vulnerable to several buffer overflows.

Fix: 1.06+
Fix from $1,950 2018-11-27
System Management Module Firmware HIGH 8.1
CVE-2018-16094

In System Management Module (SMM) versions prior to 1.06, an internal SMM function that retrieves configuration settings is prone to a buffer overflo…

Fix: 1.06+
Fix from $1,950 2018-11-27
Mongoose MEDIUM 6.5
CVE-2018-19587

In Cesanta Mongoose 6.13, a SIGSEGV exists in the mongoose.c mg_mqtt_add_session() function.

No fix yet
Fix from $1,600 2018-11-27
Dcraw MEDIUM 5.5
CVE-2018-19567

A floating point exception in parse_tiff_ifd in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an application …

Fix: after 9.28
Fix from $1,600 2018-11-26
Dcraw MEDIUM 5.5
CVE-2018-19568

A floating point exception in kodak_radc_load_raw in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an applica…

Fix: after 9.28
Fix from $1,600 2018-11-26
Tl Wr886n Firmware CRITICAL 9.8
CVE-2018-19528

TP-Link TL-WR886N 7.0 1.1.0 devices allow remote attackers to cause a denial of service (Tlb Load Exception) via crafted DNS packets to port 53/udp.

No fix yet
Fix from $2,300 2018-11-26
Debian Linux HIGH 7.8
CVE-2018-19491

An issue was discovered in post.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in …

Patch available
Fix from $1,950 2018-11-23
Debian Linux HIGH 7.8
CVE-2018-19492

An issue was discovered in cairo.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in…

Patch available
Fix from $1,950 2018-11-23
Adult Filter HIGH 7.8
CVE-2018-19459

Adult Filter 1.0 has a Buffer Overflow via a crafted Black Domain List file.

No fix yet
Fix from $1,950 2018-11-22
Contiki Ng CRITICAL 10.0
CVE-2018-19417EPSS 6%

An issue was discovered in the MQTT server in Contiki-NG before 4.2. The function parse_publish_vhdr() that parses MQTT PUBLISH messages with a varia…

Fix: 4.2+
Fix from $2,300 2018-11-21
Netware CRITICAL 9.8
CVE-2009-5153EPSS 6%

In Novell NetWare before 6.5 SP8, a stack buffer overflow in processing of CALLIT RPC calls in the NFS Portmapper daemon in PKERNEL.NLM allowed remot…

Fix: after 6.5
Fix from $2,300 2018-11-21
Ftp Server CRITICAL 9.8
CVE-2018-18861

Buffer overflow in PCMan FTP Server 2.0.7 allows for remote code execution via the APPE command.

No fix yet
Fix from $2,300 2018-11-20
U Boot CRITICAL 9.8
CVE-2018-18439

DENX U-Boot through 2018.09-rc1 has a remotely exploitable buffer overflow via a malicious TFTP server because TFTP traffic is mishandled. Also, loca…

Fix: 2018.09+
Fix from $2,300 2018-11-20
U Boot HIGH 7.8
CVE-2018-18440

DENX U-Boot through 2018.09-rc1 has a locally exploitable buffer overflow via a crafted kernel image because filesystem loading is mishandled.

Fix: after 2018.07
Fix from $1,950 2018-11-20
Local Server HIGH 7.5
CVE-2018-18756

Local Server 1.0.9 has a Buffer Overflow via crafted data on Port 4008.

No fix yet
Fix from $1,950 2018-11-16
Modbus Slave HIGH 7.5
CVE-2018-18759EPSS 9%

Modbus Slave 7.0.0 in modbus tools has a Buffer Overflow.

No fix yet
Fix from $1,950 2018-11-16
Debun Imap CRITICAL 9.8
CVE-2018-0683

Buffer overflow in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) allows remote atta…

Fix: after 3.3p_r4.0
Fix from $2,300 2018-11-15
Debun Imap CRITICAL 9.8
CVE-2018-0684

Buffer overflow in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R3.0 and earlier, Denbun IMAP version V3.3I R3.0 and earlier) allows remote atta…

Fix: after 3.3p_r4.0
Fix from $2,300 2018-11-15
Asterisk HIGH 7.5
CVE-2018-19278

Buffer overflow in DNS SRV and NAPTR lookups in Digium Asterisk 15.x before 15.6.2 and 16.x before 16.0.1 allows remote attackers to crash Asterisk v…

Patch available
Fix from $1,950 2018-11-14
Android HIGH 8.8
CVE-2018-9533

In ixheaacd_dec_data_init of ixheaacd_create.c there is a possible out of write read due to a missing bounds check. This could lead to remote code ex…

Mitigation only
Fix from $1,950 2018-11-14
Windows Server 2008 CRITICAL 9.8
CVE-2018-8476EPSS 63%

A remote code execution vulnerability exists in the way that Windows Deployment Services TFTP Server handles objects in memory, aka "Windows Deployme…

Patch available
Fix from $2,300 2018-11-14
Arduino Mqtt Client HIGH 8.8
CVE-2018-17614EPSS 10%

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Losant Arduino MQTT Client prior to V2.7. User in…

Fix: 2.7+
Fix from $1,950 2018-11-13