Vulnerability index

Browse CVEs

4,225 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Wireshark MEDIUM 5.3
CVE-2020-26422

Buffer overflow in QUIC dissector in Wireshark 3.4.0 to 3.4.1 allows denial of service via packet injection or crafted capture file

Patch available
Fix from $1,600 2020-12-21
Asylo MEDIUM 5.5
CVE-2020-8940

An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untrusted_recvmsg using an at…

Fix: after 0.6.0
Fix from $1,600 2020-12-15
Asylo MEDIUM 5.5
CVE-2020-8941

An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untrusted_inet_pton using an …

Fix: after 0.6.0
Fix from $1,600 2020-12-15
Asylo MEDIUM 5.5
CVE-2020-8942

An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untrusted_read whose return s…

Fix: after 0.6.0
Fix from $1,600 2020-12-15
Asylo MEDIUM 5.5
CVE-2020-8943

An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untrusted_recvfrom whose retu…

Fix: after 0.6.0
Fix from $1,600 2020-12-15
Asylo MEDIUM 5.5
CVE-2020-8944

An arbitrary memory write vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to ecall_restore using the attribut…

Fix: after 0.6.0
Fix from $1,600 2020-12-15
Contiki Ng CRITICAL 9.8
CVE-2020-24336EPSS 59%

An issue was discovered in Contiki through 3.0 and Contiki-NG through 4.5. The code for parsing Type A domain name answers in ip64-dns64.c doesn't ve…

Fix: after 4.5
Fix from $2,300 2020-12-11
Arubaos CRITICAL 9.8
CVE-2020-24633

There are multiple buffer overflow vulnerabilities that could lead to unauthenticated remote code execution by sending especially crafted packets des…

Fix: 2.1.0.2 / 2.2.0.1+
Fix from $2,300 2020-12-11
Dupscout CRITICAL 9.8
CVE-2020-29659EPSS 5%

A buffer overflow in the web server of Flexense DupScout Enterprise 10.0.18 allows a remote anonymous attacker to execute code as SYSTEM by overflowi…

No fix yet
Fix from $2,300 2020-12-09
Ipad Os HIGH 7.8
CVE-2020-9972

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 14.0 and iPadOS 14.0. Processing a maliciously crafte…

Fix: 11.1 / 14.3+
Fix from $1,950 2020-12-08
Ipados HIGH 7.8
CVE-2020-9954

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in watchOS 7.0, tvOS 14.0, macOS Catalina 10.15.7, Security …

Fix: 7.0 / 10.15.7+
Fix from $1,950 2020-12-08
Honor 20 Pro Firmware HIGH 7.8
CVE-2020-9247

There is a buffer overflow vulnerability in several Huawei products. The system does not sufficiently validate certain configuration parameter which …

Fix: 10.1.0.123 / 10.1.0.126+
Fix from $1,950 2020-12-07
Game Networking Sockets CRITICAL 9.8
CVE-2020-6017

Valve's Game Networking Sockets prior to version v1.2.0 improperly handles long unreliable segments in function SNP_ReceiveUnreliableSegment() when c…

Fix: 1.2.0+
Fix from $2,300 2020-12-03
Domino CRITICAL 9.8
CVE-2020-14260

HCL Domino is susceptible to a Buffer Overflow vulnerability in DXL due to improper validation of user input. A successful exploit could enable an at…

Fix: after 11.0.1
Fix from $2,300 2020-12-02
Notes MEDIUM 6.7
CVE-2020-4102

HCL Notes is susceptible to a Buffer Overflow vulnerability in DXL due to improper validation of user input. A successful exploit could enable an att…

Fix: after 9.0.1
Fix from $1,600 2020-12-02
Game Networking Sockets CRITICAL 9.8
CVE-2020-6018

Valve's Game Networking Sockets prior to version v1.2.0 improperly handles long encrypted messages in function AES_GCM_DecryptContext::Decrypt() when…

Fix: 1.2.0+
Fix from $2,300 2020-12-02
Debian Linux CRITICAL 9.8
CVE-2020-28926EPSS 13%

ReadyMedia (aka MiniDLNA) before versions 1.3.0 allows remote code execution. Sending a malicious UPnP HTTP request to the miniDLNA service using HTT…

Fix: 1.3.0+
Fix from $2,300 2020-11-30
Debian Linux CRITICAL 9.8
CVE-2020-27745

Slurm before 19.05.8 and 20.x before 20.02.6 has an RPC Buffer Overflow in the PMIx MPI plugin.

Fix: 19.05.8 / 20.02.6+
Fix from $2,300 2020-11-27
Winscp CRITICAL 9.8
CVE-2020-28864

Buffer overflow in WinSCP 5.17.8 allows a malicious FTP server to cause a denial of service or possibly have other unspecified impact via a long file…

Mitigation only
Fix from $2,300 2020-11-23
Ip150 Firmware HIGH 8.8
CVE-2020-25185

The affected product is vulnerable to five post-authentication buffer overflows, which may allow a logged in user to remotely execute arbitrary code …

Mitigation only
Fix from $1,950 2020-11-21
Wdr7400 Firmware CRITICAL 9.8
CVE-2020-28877

Buffer overflow in in the copy_msg_element function for the devDiscoverHandle server in the TP-Link WR and WDR series, including WDR7400, WDR7500, WD…

Mitigation only
Fix from $2,300 2020-11-20
Ecostruxure Control Expert HIGH 7.5
CVE-2020-7559

A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in PLC Simulator on EcoStruxureª Control Exper…

Patch available
Fix from $1,950 2020-11-19
Db2 HIGH 7.8
CVE-2020-4701

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to a buffer overflow, caused by improper bounds …

Patch available
Fix from $1,950 2020-11-19
Tl Wpa4220 Firmware MEDIUM 6.5
CVE-2020-28005

httpd on TP-Link TL-WPA4220 devices (hardware versions 2 through 4) allows remote authenticated users to trigger a buffer overflow (causing a denial …

No fix yet
Fix from $1,600 2020-11-18
Modicon Tsxety4103 Firmware HIGH 8.8
CVE-2020-7564

A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in the Web Server on Modicon M340, Modicon Qua…

Mitigation only
Fix from $1,950 2020-11-18
Forerunner 235 Firmware CRITICAL 9.9
CVE-2020-27486

Garmin Forerunner 235 before 8.20 is affected by: Buffer Overflow. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerabilit…

Fix: 8.20+
Fix from $2,300 2020-11-16
Ssd Dc P4800x Firmware MEDIUM 6.2
CVE-2020-0584

Buffer overflow in firmware for Intel(R) SSD DC P4800X and P4801X Series, Intel(R) Optane(TM) SSD 900P and 905P Series may allow an unauthenticated u…

Patch available
Fix from $1,600 2020-11-12
Apq8052 Firmware HIGH 7.8
CVE-2020-11207

Buffer overflow in LibFastCV library due to improper size checks with respect to buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Co…

No fix yet
Fix from $1,950 2020-11-12
Qcm4290 Firmware HIGH 7.8
CVE-2020-11130

u'Possible buffer overflow in WIFI hal process due to copying data without checking the buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdr…

Mitigation only
Fix from $1,950 2020-11-12
Qcm4290 Firmware HIGH 7.8
CVE-2020-11121

u'Possible buffer overflow in WIFI hal process due to usage of memcpy without checking length of destination buffer' in Snapdragon Auto, Snapdragon C…

Mitigation only
Fix from $1,950 2020-11-12