Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Milanpi Sp3 Firmware MEDIUM 5.3
CVE-2022-23813

The software interfaces to ASP and SMU may not enforce the SNP memory security policy resulting in a potential loss of integrity of guest memory in a…

Fix: 1.0.0.e / 1.0.0.9+
Fix from $1,600 2023-01-11
Epyc 7h12 Firmware HIGH 7.5
CVE-2023-20529

Insufficient bound checks in the SMU may allow an attacker to update the from/to address space to an invalid value potentially resulting in a denial …

Mitigation only
Fix from $1,950 2023-01-11
Rt Ax82u Firmware HIGH 7.5
CVE-2022-38105

An information disclosure vulnerability exists in the cm_processREQ_NC opcode of Asus RT-AX82U 3.0.0.4.386_49674-ge182230 router's configuration serv…

No fix yet
Fix from $1,950 2023-01-10
Jt Open Toolkit HIGH 7.8
CVE-2022-47935

A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All versions < V13.1.1.0), Solid Edge (All versions < V2023)…

Fix: 11.1.1.0 / 13.1.1.0+
Fix from $1,950 2023-01-10
Solid Edge HIGH 7.8
CVE-2022-47967

A vulnerability has been identified in Solid Edge (All versions < V2023 MP1). The DOCMGMT.DLL contains a memory corruption vulnerability that could b…

Mitigation only
Fix from $1,950 2023-01-10
Enterprise Linux HIGH 7.8
CVE-2022-3715

A flaw was found in the bash package, where a heap-buffer overflow can occur in valid parameter_transform. This issue may lead to memory problems.

Fix: 5.1.8+
Fix from $1,950 2023-01-05
Gpu Display Driver HIGH 7.8
CVE-2022-42264

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user can cause the use of an out…

Fix: 11.11 / 13.6+
Fix from $1,950 2022-12-30
Go Codec Dagpb HIGH 7.5
CVE-2022-2584

The dag-pb codec can panic when decoding invalid blocks.

Fix: 1.3.1+
Fix from $1,950 2022-12-27
Firefox CRITICAL 9.8
CVE-2022-31747

Mozilla developers Andrew McCreight, Nicolas B. Pierron, and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 100 and Firefox …

Fix: 91.10 / 101+
Fix from $2,300 2022-12-22
Firefox CRITICAL 9.8
CVE-2022-31748

Mozilla developers Gabriele Svelto, Timothy Nikkel, Randell Jesup, Jon Coppeard, and the Mozilla Fuzzing Team reported memory safety bugs present in …

Fix: 101+
Fix from $2,300 2022-12-22
Firefox HIGH 8.8
CVE-2022-31740

On arm64, WASM code could have resulted in incorrect assembly generation leading to a register allocation problem, and a potentially exploitable cras…

Fix: 91.10 / 101.0+
Fix from $1,950 2022-12-22
Sslh CRITICAL 9.8
CVE-2022-4639

A vulnerability, which was classified as critical, has been found in sslh. This issue affects the function hexdump of the file probe.c of the compone…

Patch available
Fix from $2,300 2022-12-21
Multimon Ng CRITICAL 9.8
CVE-2020-36619

A vulnerability was found in multimon-ng. It has been rated as critical. This issue affects the function add_ch of the file demod_flex.c. The manipul…

Fix: 1.2.0+
Fix from $2,300 2022-12-19
Ppp MEDIUM 6.5
CVE-2022-4603

A vulnerability classified as problematic has been found in ppp. Affected is the function dumpppp of the file pppdump/pppdump.c of the component pppd…

Fix: 2.5.0+
Fix from $1,600 2022-12-18
Android CRITICAL 9.8
CVE-2022-42529

Product: AndroidVersions: Android kernelAndroid ID: A-235292841References: N/A

No fix yet
Fix from $2,300 2022-12-16
Android HIGH 7.5
CVE-2022-20601

Product: AndroidVersions: Android kernelAndroid ID: A-204541506References: N/A

No fix yet
Fix from $1,950 2022-12-16
Android HIGH 7.5
CVE-2022-20602

Product: AndroidVersions: Android kernelAndroid ID: A-211081867References: N/A

No fix yet
Fix from $1,950 2022-12-16
Android MEDIUM 6.7
CVE-2022-20599

In Pixel firmware, there is a possible exposure of sensitive memory due to a missing bounds check. This could lead to local escalation of privilege w…

Mitigation only
Fix from $1,600 2022-12-16
Android HIGH 7.5
CVE-2022-20560

Product: AndroidVersions: Android kernelAndroid ID: A-212623833References: N/A

Patch available
Fix from $1,950 2022-12-16
Android MEDIUM 5.5
CVE-2022-20570

Product: AndroidVersions: Android kernelAndroid ID: A-230660904References: N/A

No fix yet
Fix from $1,600 2022-12-16
Ipados HIGH 8.6
CVE-2022-42844

The issue was addressed with improved memory handling. This issue is fixed in iOS 16.2 and iPadOS 16.2. An app may be able to break out of its sandbo…

Fix: 16.2+
Fix from $1,950 2022-12-15
Ipados MEDIUM 5.5
CVE-2022-42846

The issue was addressed with improved memory handling. This issue is fixed in iOS 16.2 and iPadOS 16.2, iOS 15.7.2 and iPadOS 15.7.2. Parsing a malic…

Fix: 15.7.2 / 16.2+
Fix from $1,600 2022-12-15
Hyperview Player HIGH 7.8
CVE-2022-2947

Altair HyperView Player versions 2021.1.0.27 and prior perform operations on a memory buffer but can read from or write to a memory location outside …

Fix: after 2021.1.0.27
Fix from $1,950 2022-12-13
Pacparser HIGH 7.8
CVE-2019-25078

A vulnerability classified as problematic was found in pacparser up to 1.3.x. Affected by this vulnerability is the function pacparser_find_proxy of …

Fix: 1.4.0+
Fix from $1,950 2022-12-13
Apq8009 Firmware HIGH 7.8
CVE-2022-25682

Memory corruption in MODEM UIM due to usage of out of range pointer offset while decoding command from card in Snapdragon Auto, Snapdragon Compute, S…

Mitigation only
Fix from $1,950 2022-12-13
Aqt1000 Firmware HIGH 7.8
CVE-2022-25681

Possible memory corruption in kernel while performing memory access due to hypervisor not correctly invalidated the processor translation caches in S…

Mitigation only
Fix from $1,950 2022-12-13
Linux Loader MEDIUM 5.5
CVE-2022-23523

In versions prior to 0.8.1, the linux-loader crate uses the offsets and sizes provided in the ELF headers to determine the offsets to read from. If t…

Fix: 0.8.1+
Fix from $1,600 2022-12-13
Color Laserjet Cm4540 Mfp Cc419a Firmware CRITICAL 9.8
CVE-2021-3942

Certain HP Print products and Digital Sending products may be vulnerable to potential remote code execution and buffer overflow with use of Link-Loca…

Fix: 3.9.9 / 4.11.2.3+
Fix from $2,300 2022-12-12
Script Shield CRITICAL 10.0
CVE-2022-4291

The aswjsflt.dll library from Avast Antivirus windows contained a potentially exploitable heap corruption vulnerability that could enable an attacker…

Fix: after 18.0.1473.0
Fix from $2,300 2022-12-08
Content Navigator HIGH 8.8
CVE-2022-43581

IBM Content Navigator 3.0.0, 3.0.1, 3.0.2, 3.0.3, 3.0.4, 3.0.5, 3.0.6, 3.0.7, 3.0.8, 3.0.9, 3.0.10, 3.0.11, and 3.0.12 is vulnerable to missing autho…

Fix: after 3.0.12
Fix from $1,950 2022-12-07