Vulnerability index

Browse CVEs

4,225 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Tech 1 CRITICAL 9.8
CVE-2020-15007

A buffer overflow in the M_LoadDefaults function in m_misc.c in id Tech 1 (aka Doom engine) allows arbitrary code execution via an unsafe usage of fs…

Fix: 671+
Fix from $2,300 2020-06-24
Loramac Node HIGH 8.8
CVE-2020-11068

In LoRaMac-node before 4.4.4, a reception buffer overflow can happen due to the received buffer size not being checked. This has been fixed in 4.4.4.

Fix: 4.4.4+
Fix from $1,950 2020-06-23
Chocolate Doom CRITICAL 9.8
CVE-2020-14983

The server in Chocolate Doom 3.0.0 and Crispy Doom 5.8.0 doesn't validate the user-controlled num_players value, leading to a buffer overflow. A mali…

Patch available
Fix from $2,300 2020-06-22
Apq8009 Firmware CRITICAL 9.8
CVE-2020-3661

Buffer overflow will happen while parsing mp4 clip with corrupted sample atoms values which exceeds MAX_UINT32 range due to lack of validation checks…

Mitigation only
Fix from $2,300 2020-06-22
Apq8009 Firmware CRITICAL 9.8
CVE-2020-3662

Buffer overflow can occur while parsing eac3 header while playing the clip which is nonstandard in Snapdragon Auto, Snapdragon Compute, Snapdragon Co…

Mitigation only
Fix from $2,300 2020-06-22
Apq8009 Firmware CRITICAL 9.8
CVE-2019-14062

Buffer overflows while decoding setup message from Network due to lack of check of IE message length received from network in Snapdragon Auto, Snapdr…

Mitigation only
Fix from $2,300 2020-06-22
Apq8009 Firmware HIGH 7.8
CVE-2019-14076

Buffer overflow occurs while processing an subsample data length out of range due to lack of user input validation in Snapdragon Auto, Snapdragon Com…

Mitigation only
Fix from $1,950 2020-06-22
Apq8009 Firmware CRITICAL 9.8
CVE-2020-3614

Possible buffer overflow while copying the frame to local buffer due to lack of check of length before copying in Snapdragon Auto, Snapdragon Compute…

Mitigation only
Fix from $2,300 2020-06-22
Ubuntu Linux HIGH 7.5
CVE-2019-20839

libvncclient/sockets.c in LibVNCServer before 0.9.13 has a buffer overflow via a long socket filename.

Fix: 3.2.1.0+
Fix from $1,950 2020-06-17
Nc200 Firmware HIGH 8.8
CVE-2020-13224

TP-LINK NC200 devices through 2.1.10 build 200401, NC210 devices through 1.0.10 build 200401, NC220 devices through 1.3.1 build 200401, NC230 devices…

Fix: after 2.1.10
Fix from $1,950 2020-06-17
Janus CRITICAL 9.8
CVE-2020-14033

An issue was discovered in janus-gateway (aka Janus WebRTC Server) through 0.10.0. janus_streaming_rtsp_parse_sdp in plugins/janus_streaming.c has a …

Fix: after 0.10.0
Fix from $2,300 2020-06-15
Janus CRITICAL 9.8
CVE-2020-14034

An issue was discovered in janus-gateway (aka Janus WebRTC Server) through 0.10.0. janus_get_codec_from_pt in utils.c has a Buffer Overflow via long …

Fix: after 0.10.0
Fix from $2,300 2020-06-15
Aspera Application Platform On Demand HIGH 7.5
CVE-2020-4434

Certain IBM Aspera applications are vulnerable to buffer overflow based on the product configuration and valid authentication, which could allow an a…

Fix: after 3.9.10
Fix from $1,950 2020-06-10
Aspera Application Platform On Demand HIGH 7.5
CVE-2020-4436

Certain IBM Aspera applications are vulnerable to buffer overflow after valid authentication, which could allow an attacker with intimate knowledge o…

Fix: after 3.9.10
Fix from $1,950 2020-06-10
Http File Server HIGH 7.5
CVE-2020-13432EPSS 31%

rejetto HFS (aka HTTP File Server) v2.3m Build #300, when virtual files or folders are used, allows remote attackers to trigger an invalid-pointer wr…

Patch available
Fix from $1,950 2020-06-08
Zephyr CRITICAL 9.8
CVE-2020-10071

The Zephyr MQTT parsing code performs insufficient checking of the length field on publish messages, allowing a buffer overflow and potentially remot…

Fix: after 2.2.0
Fix from $2,300 2020-06-05
Zephyr CRITICAL 9.8
CVE-2020-10070

In the Zephyr Project MQTT code, improper bounds checking can result in memory corruption and possibly remote code execution. NCC-ZEP-031 This issue …

Fix: after 2.2.0
Fix from $2,300 2020-06-05
Perl HIGH 7.5
CVE-2020-12723EPSS 6%

regcomp.c in Perl before 5.30.3 allows a buffer overflow via a crafted regular expression because of recursive S_study_chunk calls.

Fix: 5.30.3+
Fix from $1,950 2020-06-05
Android CRITICAL 9.8
CVE-2020-13839

An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can occur via a custom AT comman…

Mitigation only
Fix from $2,300 2020-06-05
Android CRITICAL 9.8
CVE-2020-13840

An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can occur via an MTK AT command …

Mitigation only
Fix from $2,300 2020-06-05
Phantompdf HIGH 7.5
CVE-2019-20823

An issue was discovered in Foxit PhantomPDF before 8.3.11. It has a buffer overflow because a looping correction does not occur after JavaScript upda…

Fix: 8.3.11+
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2019-20828

An issue was discovered in Foxit Reader and PhantomPDF before 9.6. It has a buffer overflow because a looping correction does not occur after JavaScr…

Fix: 9.6+
Fix from $1,950 2020-06-04
Apq8017 Firmware HIGH 7.8
CVE-2020-3616

Buffer overflow in display function due to memory copy without checking length of size using strcpy function in Snapdragon Auto, Snapdragon Compute, …

Mitigation only
Fix from $1,950 2020-06-02
Sm8250 Firmware HIGH 7.8
CVE-2020-3625

When making query to DSP capabilities, Stack out of bounds occurs due to wrong buffer length configured for DSP attributes in Snapdragon Auto, Snapdr…

Mitigation only
Fix from $1,950 2020-06-02
Ac6 Firmware CRITICAL 9.8
CVE-2020-13389

An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.1…

No fix yet
Fix from $2,300 2020-05-22
Ac6 Firmware CRITICAL 9.8
CVE-2020-13390

An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.1…

No fix yet
Fix from $2,300 2020-05-22
Ac6 Firmware CRITICAL 9.8
CVE-2020-13391

An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.1…

No fix yet
Fix from $2,300 2020-05-22
Ac6 Firmware CRITICAL 9.8
CVE-2020-13392

An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.1…

No fix yet
Fix from $2,300 2020-05-22
Ac6 Firmware CRITICAL 9.8
CVE-2020-13393

An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.1…

No fix yet
Fix from $2,300 2020-05-22
Ac6 Firmware CRITICAL 9.8
CVE-2020-13394

An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.1…

No fix yet
Fix from $2,300 2020-05-22