Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
HIGH 7.8 CVE-2018-5917 Possible buffer overflow in OEM crypto function due to improper input validation in Snapdragon Automobile, Snapdragon Mobile in versions MSM8996AU, S… Msm8996au Firmware Mitigation only Fix from $1,9502018-11-28 HIGH 7.8 CVE-2018-5918 Possible buffer overflow in DRM Trusted application due to lack of check function return values in Snapdragon Automobile, Snapdragon Mobile and Snapd… Mdm9206 Firmware Mitigation only Fix from $1,9502018-11-28 HIGH 7.7 CVE-2018-0721 Buffer Overflow vulnerability in NAS devices. QTS allows attackers to run arbitrary code. This issue affects: QNAP Systems Inc. QTS version 4.2.6 and… Qts Mitigation only Fix from $1,9502018-11-27 HIGH 7.8 CVE-2018-11995 In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, a partition name-check variable is not res… Android Patch available Fix from $1,9502018-11-27 HIGH 7.8 CVE-2018-5906 In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a possible buffer overflow in deb… Android Patch available Fix from $1,9502018-11-27 HIGH 7.8 CVE-2018-5908 In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a possible buffer overflow in dis… Android Patch available Fix from $1,9502018-11-27 HIGH 7.8 CVE-2018-5909 In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, buffer overflow occur may occur in display… Android Patch available Fix from $1,9502018-11-27 HIGH 7.8 CVE-2018-5910 In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, a memory corruption can occur in kernel du… Android Patch available Fix from $1,9502018-11-27 HIGH 8.1 CVE-2018-16091 In System Management Module (SMM) versions prior to 1.06, the SMM certificate creation and parsing logic is vulnerable to several buffer overflows. System Management Module Firmware 1.06+ Fix from $1,9502018-11-27 HIGH 8.1 CVE-2018-16094 In System Management Module (SMM) versions prior to 1.06, an internal SMM function that retrieves configuration settings is prone to a buffer overflo… System Management Module Firmware 1.06+ Fix from $1,9502018-11-27 MEDIUM 6.5 CVE-2018-19587 In Cesanta Mongoose 6.13, a SIGSEGV exists in the mongoose.c mg_mqtt_add_session() function. Mongoose No fix yet Fix from $1,6002018-11-27 MEDIUM 5.5 CVE-2018-19567 A floating point exception in parse_tiff_ifd in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an application … Dcraw after 9.28 Fix from $1,6002018-11-26 MEDIUM 5.5 CVE-2018-19568 A floating point exception in kodak_radc_load_raw in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an applica… Dcraw after 9.28 Fix from $1,6002018-11-26 CRITICAL 9.8 CVE-2018-19528 TP-Link TL-WR886N 7.0 1.1.0 devices allow remote attackers to cause a denial of service (Tlb Load Exception) via crafted DNS packets to port 53/udp. Tl Wr886n Firmware No fix yet Fix from $2,3002018-11-26 HIGH 7.8 CVE-2018-19491 An issue was discovered in post.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in … Debian Linux Patch available Fix from $1,9502018-11-23 HIGH 7.8 CVE-2018-19492 An issue was discovered in cairo.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in… Debian Linux Patch available Fix from $1,9502018-11-23 HIGH 7.8 CVE-2018-19459 Adult Filter 1.0 has a Buffer Overflow via a crafted Black Domain List file. Adult Filter No fix yet Fix from $1,9502018-11-22 CRITICAL 10.0 CVE-2018-19417EPSS 6% An issue was discovered in the MQTT server in Contiki-NG before 4.2. The function parse_publish_vhdr() that parses MQTT PUBLISH messages with a varia… Contiki Ng 4.2+ Fix from $2,3002018-11-21 CRITICAL 9.8 CVE-2009-5153EPSS 6% In Novell NetWare before 6.5 SP8, a stack buffer overflow in processing of CALLIT RPC calls in the NFS Portmapper daemon in PKERNEL.NLM allowed remot… Netware after 6.5 Fix from $2,3002018-11-21 CRITICAL 9.8 CVE-2018-18861 Buffer overflow in PCMan FTP Server 2.0.7 allows for remote code execution via the APPE command. Ftp Server No fix yet Fix from $2,3002018-11-20 CRITICAL 9.8 CVE-2018-18439 DENX U-Boot through 2018.09-rc1 has a remotely exploitable buffer overflow via a malicious TFTP server because TFTP traffic is mishandled. Also, loca… U Boot 2018.09+ Fix from $2,3002018-11-20 HIGH 7.8 CVE-2018-18440 DENX U-Boot through 2018.09-rc1 has a locally exploitable buffer overflow via a crafted kernel image because filesystem loading is mishandled. U Boot after 2018.07 Fix from $1,9502018-11-20 HIGH 7.5 CVE-2018-18756 Local Server 1.0.9 has a Buffer Overflow via crafted data on Port 4008. Local Server No fix yet Fix from $1,9502018-11-16 HIGH 7.5 CVE-2018-18759EPSS 9% Modbus Slave 7.0.0 in modbus tools has a Buffer Overflow. Modbus Slave No fix yet Fix from $1,9502018-11-16 CRITICAL 9.8 CVE-2018-0683 Buffer overflow in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) allows remote atta… Debun Imap after 3.3p_r4.0 Fix from $2,3002018-11-15 CRITICAL 9.8 CVE-2018-0684 Buffer overflow in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R3.0 and earlier, Denbun IMAP version V3.3I R3.0 and earlier) allows remote atta… Debun Imap after 3.3p_r4.0 Fix from $2,3002018-11-15 HIGH 7.5 CVE-2018-19278 Buffer overflow in DNS SRV and NAPTR lookups in Digium Asterisk 15.x before 15.6.2 and 16.x before 16.0.1 allows remote attackers to crash Asterisk v… Asterisk Patch available Fix from $1,9502018-11-14 HIGH 8.8 CVE-2018-9533 In ixheaacd_dec_data_init of ixheaacd_create.c there is a possible out of write read due to a missing bounds check. This could lead to remote code ex… Android Mitigation only Fix from $1,9502018-11-14 CRITICAL 9.8 CVE-2018-8476EPSS 63% A remote code execution vulnerability exists in the way that Windows Deployment Services TFTP Server handles objects in memory, aka "Windows Deployme… Windows Server 2008 Patch available Fix from $2,3002018-11-14 HIGH 8.8 CVE-2018-17614EPSS 10% This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Losant Arduino MQTT Client prior to V2.7. User in… Arduino Mqtt Client 2.7+ Fix from $1,9502018-11-13