Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
HIGH 7.8 CVE-2024-26885 In the Linux kernel, the following vulnerability has been resolved: bpf: Fix DEVMAP_HASH overflow check on 32-bit arches The devmap code allocates … Linux Kernel 5.10.214 / 5.15.153+ Fix from $1,9502024-04-17 HIGH 8.8 CVE-2024-3832 Object corruption in V8 in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit object corruption via a crafted HTML… Chrome 124.0.6367.60+ Fix from $1,9502024-04-17 HIGH 8.1 CVE-2024-3864 Memory safety bug present in Firefox 124, Firefox ESR 115.9, and Thunderbird 115.9. This bug showed evidence of memory corruption and we presume that… Firefox 115.10.0 / 125.0+ Fix from $1,9502024-04-16 HIGH 8.1 CVE-2024-3865 Memory safety bugs present in Firefox 124. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the… Firefox 125.0+ Fix from $1,9502024-04-16 HIGH 7.5 CVE-2024-30398 An Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Ju… Junos Mitigation only Fix from $1,9502024-04-12 HIGH 7.4 CVE-2023-5394 Server receiving a malformed message that where the GCL message hostname may be too large which may cause a stack overflow; resulting in possible rem… Mitigation only Fix from $1,9502024-04-11 HIGH 8.1 CVE-2023-2794 A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_deliver() function during the SMS d… Fedora 2.5+ Fix from $1,9502024-04-10 HIGH 8.8 CVE-2024-3159 Out of bounds memory access in V8 in Google Chrome prior to 123.0.6312.105 allowed a remote attacker to perform arbitrary read/write via a crafted HT… Chrome 123.0.6312.105+ Fix from $1,9502024-04-06 CRITICAL 10.0 CVE-2024-25029 IBM Personal Communications 14.0.6 through 15.0.1 includes a Windows service that is vulnerable to remote code execution (RCE) and local privilege es… Personal Communications after 15.0.1 Fix from $2,3002024-04-06 HIGH 7.8 CVE-2024-27344 Kofax Power PDF PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitra… Power Pdf 5.0.0.17+ Fix from $1,9502024-04-03 HIGH 7.8 CVE-2024-2929 A memory corruption vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized co… Arena 16.20.03+ Fix from $1,9502024-03-26 CRITICAL 9.8 CVE-2024-22080 An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Unauthenticated memory corruption can occur during XML body… G5dfr Firmware 1.2.1.12+ Fix from $2,3002024-03-20 HIGH 8.8 CVE-2024-0162 Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A local low privileg… Poweredge R660 Firmware 1.8.0 / 2.0.0+ Fix from $1,9502024-03-13 HIGH 7.5 CVE-2024-22041 A vulnerability has been identified in Cerberus PRO EN Engineering Tool (All versions), Cerberus PRO EN Fire Panel FC72x IP6 (All versions), Cerberus… Mitigation only Fix from $1,9502024-03-12 HIGH 7.8 CVE-2024-25986 In ppmp_unprotect_buf of drm_fw.c, there is a possible compromise of protected memory due to a logic error in the code. This could lead to local esca… Android Mitigation only Fix from $1,9502024-03-11 MEDIUM 5.5 CVE-2024-26335 swftools v0.9.2 was discovered to contain a segmentation violation via the function state_free at swftools/src/swfc-history.c. Swftools No fix yet Fix from $1,6002024-03-05 HIGH 7.5 CVE-2023-32331 IBM Connect:Express for UNIX 1.5.0 is vulnerable to a buffer overflow that could allow a remote attacker to cause a denial of service through its bro… Sterling Connect\ Mitigation only Fix from $1,9502024-03-04 HIGH 8.2 CVE-2024-1174 Previous versions of HP ThinPro (prior to HP ThinPro 8.0 SP 8) could potentially contain security vulnerabilities. HP has released HP ThinPro 8.0 SP … No fix yet Fix from $1,9502024-03-01 MEDIUM 5.3 CVE-2024-26149 Vyper is a pythonic Smart Contract Language for the ethereum virtual machine. If an excessively large value is specified as the starting index for an… Vyper after 0.3.10 Fix from $1,6002024-02-26 HIGH 7.8 CVE-2024-26599 In the Linux kernel, the following vulnerability has been resolved: pwm: Fix out-of-bounds access in of_pwm_single_xlate() With args->args_count ==… Linux Kernel 6.1.75 / 6.6.14+ Fix from $1,9502024-02-23 HIGH 7.8 CVE-2023-52464 In the Linux kernel, the following vulnerability has been resolved: EDAC/thunderx: Fix possible out-of-bounds string access Enabling -Wstringop-ove… Linux Kernel 4.19.306 / 5.4.268+ Fix from $1,9502024-02-23 HIGH 7.8 CVE-2024-26589 In the Linux kernel, the following vulnerability has been resolved: bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS For PTR_TO_FLOW_KEYS, check… Linux Kernel 5.15.148 / 6.1.75+ Fix from $1,9502024-02-22 HIGH 7.8 CVE-2023-52444 In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid dirent corruption As Al reported in link[1]: f2fs_rename() … Linux Kernel 4.19.306 / 5.4.268+ Fix from $1,9502024-02-22 HIGH 7.8 CVE-2024-26588 In the Linux kernel, the following vulnerability has been resolved: LoongArch: BPF: Prevent out-of-bounds memory access The test_tag test triggers … Linux Kernel 6.1.75 / 6.6.14+ Fix from $1,9502024-02-22 HIGH 7.8 CVE-2024-23128 A maliciously crafted MODEL file, when parsed in libodxdll.dll and ASMDATAX229A.dll through Autodesk applications, can lead to a memory corruption vu… Autocad 2021.1.4 / 2022.1.4+ Fix from $1,9502024-02-22 HIGH 7.8 CVE-2024-23129 A maliciously crafted MODEL 3DM, STP, or SLDASM file, when in opennurbs.dll parsed through Autodesk applications, can lead to a memory corruption vul… Autocad 2021.1.4 / 2022.1.4+ Fix from $1,9502024-02-22 HIGH 7.8 CVE-2024-23130 A maliciously crafted SLDASM or SLDPRT file, when parsed in ODXSW_DLL.dll through Autodesk applications, can lead to a memory corruption vulnerabilit… Autocad 2021.1.4 / 2022.1.4+ Fix from $1,9502024-02-22 HIGH 7.8 CVE-2024-23131 A maliciously crafted STP file, when parsed in ASMIMPORT229A.dll, ASMKERN228A.dll, ASMkern229A.dll or ASMDATAX228A.dll through Autodesk applications,… Autocad Electrical 2021.1.4 / 2022.1.4+ Fix from $1,9502024-02-22 HIGH 7.8 CVE-2024-23132 A maliciously crafted STP file in atf_dwg_consumer.dll when parsed through Autodesk applications can lead to a memory corruption vulnerability by wri… Autocad 2021.1.4 / 2022.1.4+ Fix from $1,9502024-02-22 HIGH 7.8 CVE-2024-23133 A maliciously crafted STP file in ASMDATAX228A.dll when parsed through Autodesk applications can lead to a memory corruption vulnerability by write a… Autocad 2021.1.4 / 2022.1.4+ Fix from $1,9502024-02-22