Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Linux Kernel HIGH 7.8
CVE-2024-26885

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix DEVMAP_HASH overflow check on 32-bit arches The devmap code allocates …

Fix: 5.10.214 / 5.15.153+
Fix from $1,950 2024-04-17
Chrome HIGH 8.8
CVE-2024-3832

Object corruption in V8 in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit object corruption via a crafted HTML…

Fix: 124.0.6367.60+
Fix from $1,950 2024-04-17
Firefox HIGH 8.1
CVE-2024-3864

Memory safety bug present in Firefox 124, Firefox ESR 115.9, and Thunderbird 115.9. This bug showed evidence of memory corruption and we presume that…

Fix: 115.10.0 / 125.0+
Fix from $1,950 2024-04-16
Firefox HIGH 8.1
CVE-2024-3865

Memory safety bugs present in Firefox 124. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the…

Fix: 125.0+
Fix from $1,950 2024-04-16
Junos HIGH 7.5
CVE-2024-30398

An Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Ju…

Mitigation only
Fix from $1,950 2024-04-12
Unclassified HIGH 7.4
CVE-2023-5394

Server receiving a malformed message that where the GCL message hostname may be too large which may cause a stack overflow; resulting in possible rem…

Mitigation only
Fix from $1,950 2024-04-11
Fedora HIGH 8.1
CVE-2023-2794

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_deliver() function during the SMS d…

Fix: 2.5+
Fix from $1,950 2024-04-10
Chrome HIGH 8.8
CVE-2024-3159

Out of bounds memory access in V8 in Google Chrome prior to 123.0.6312.105 allowed a remote attacker to perform arbitrary read/write via a crafted HT…

Fix: 123.0.6312.105+
Fix from $1,950 2024-04-06
Personal Communications CRITICAL 10.0
CVE-2024-25029

IBM Personal Communications 14.0.6 through 15.0.1 includes a Windows service that is vulnerable to remote code execution (RCE) and local privilege es…

Fix: after 15.0.1
Fix from $2,300 2024-04-06
Power Pdf HIGH 7.8
CVE-2024-27344

Kofax Power PDF PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitra…

Fix: 5.0.0.17+
Fix from $1,950 2024-04-03
Arena HIGH 7.8
CVE-2024-2929

A memory corruption vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized co…

Fix: 16.20.03+
Fix from $1,950 2024-03-26
G5dfr Firmware CRITICAL 9.8
CVE-2024-22080

An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Unauthenticated memory corruption can occur during XML body…

Fix: 1.2.1.12+
Fix from $2,300 2024-03-20
Poweredge R660 Firmware HIGH 8.8
CVE-2024-0162

Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A local low privileg…

Fix: 1.8.0 / 2.0.0+
Fix from $1,950 2024-03-13
Unclassified HIGH 7.5
CVE-2024-22041

A vulnerability has been identified in Cerberus PRO EN Engineering Tool (All versions), Cerberus PRO EN Fire Panel FC72x IP6 (All versions), Cerberus…

Mitigation only
Fix from $1,950 2024-03-12
Android HIGH 7.8
CVE-2024-25986

In ppmp_unprotect_buf of drm_fw.c, there is a possible compromise of protected memory due to a logic error in the code. This could lead to local esca…

Mitigation only
Fix from $1,950 2024-03-11
Swftools MEDIUM 5.5
CVE-2024-26335

swftools v0.9.2 was discovered to contain a segmentation violation via the function state_free at swftools/src/swfc-history.c.

No fix yet
Fix from $1,600 2024-03-05
Sterling Connect\ HIGH 7.5
CVE-2023-32331

IBM Connect:Express for UNIX 1.5.0 is vulnerable to a buffer overflow that could allow a remote attacker to cause a denial of service through its bro…

Mitigation only
Fix from $1,950 2024-03-04
Unclassified HIGH 8.2
CVE-2024-1174

Previous versions of HP ThinPro (prior to HP ThinPro 8.0 SP 8) could potentially contain security vulnerabilities. HP has released HP ThinPro 8.0 SP …

No fix yet
Fix from $1,950 2024-03-01
Vyper MEDIUM 5.3
CVE-2024-26149

Vyper is a pythonic Smart Contract Language for the ethereum virtual machine. If an excessively large value is specified as the starting index for an…

Fix: after 0.3.10
Fix from $1,600 2024-02-26
Linux Kernel HIGH 7.8
CVE-2024-26599

In the Linux kernel, the following vulnerability has been resolved: pwm: Fix out-of-bounds access in of_pwm_single_xlate() With args->args_count ==…

Fix: 6.1.75 / 6.6.14+
Fix from $1,950 2024-02-23
Linux Kernel HIGH 7.8
CVE-2023-52464

In the Linux kernel, the following vulnerability has been resolved: EDAC/thunderx: Fix possible out-of-bounds string access Enabling -Wstringop-ove…

Fix: 4.19.306 / 5.4.268+
Fix from $1,950 2024-02-23
Linux Kernel HIGH 7.8
CVE-2024-26589

In the Linux kernel, the following vulnerability has been resolved: bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS For PTR_TO_FLOW_KEYS, check…

Fix: 5.15.148 / 6.1.75+
Fix from $1,950 2024-02-22
Linux Kernel HIGH 7.8
CVE-2023-52444

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid dirent corruption As Al reported in link[1]: f2fs_rename() …

Fix: 4.19.306 / 5.4.268+
Fix from $1,950 2024-02-22
Linux Kernel HIGH 7.8
CVE-2024-26588

In the Linux kernel, the following vulnerability has been resolved: LoongArch: BPF: Prevent out-of-bounds memory access The test_tag test triggers …

Fix: 6.1.75 / 6.6.14+
Fix from $1,950 2024-02-22
Autocad HIGH 7.8
CVE-2024-23128

A maliciously crafted MODEL file, when parsed in libodxdll.dll and ASMDATAX229A.dll through Autodesk applications, can lead to a memory corruption vu…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Autocad HIGH 7.8
CVE-2024-23129

A maliciously crafted MODEL 3DM, STP, or SLDASM file, when in opennurbs.dll parsed through Autodesk applications, can lead to a memory corruption vul…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Autocad HIGH 7.8
CVE-2024-23130

A maliciously crafted SLDASM or SLDPRT file, when parsed in ODXSW_DLL.dll through Autodesk applications, can lead to a memory corruption vulnerabilit…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Autocad Electrical HIGH 7.8
CVE-2024-23131

A maliciously crafted STP file, when parsed in ASMIMPORT229A.dll, ASMKERN228A.dll, ASMkern229A.dll or ASMDATAX228A.dll through Autodesk applications,…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Autocad HIGH 7.8
CVE-2024-23132

A maliciously crafted STP file in atf_dwg_consumer.dll when parsed through Autodesk applications can lead to a memory corruption vulnerability by wri…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Autocad HIGH 7.8
CVE-2024-23133

A maliciously crafted STP file in ASMDATAX228A.dll when parsed through Autodesk applications can lead to a memory corruption vulnerability by write a…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22