Vulnerability index

Browse CVEs

4,225 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Galaxy S6 Edge Firmware MEDIUM 5.5
CVE-2015-7890

Multiple buffer overflows in the esa_write function in /dev/seirenin the Exynos Seiren Audio driver, as used in Samsung S6 Edge, allow local users to…

No fix yet
Fix from $1,600 2020-02-12
Linux Kernel MEDIUM 6.8
CVE-2009-4067

Buffer overflow in the auerswald_probe function in the Auerswald Linux USB driver for the Linux kernel before 2.6.27 allows physically proximate atta…

Fix: 2.6.27+
Fix from $1,600 2020-02-11
Software Development Kit MEDIUM 5.7
CVE-2019-17517

The Bluetooth Low Energy implementation on Dialog Semiconductor SDK through 5.0.4 for DA14580/1/2/3 devices does not properly restrict the L2CAP payl…

Fix: after 5.0.4
Fix from $1,600 2020-02-10
Software Development Kit MEDIUM 6.5
CVE-2019-17518

The Bluetooth Low Energy implementation on Dialog Semiconductor SDK through 1.0.14.1081 for DA1468x devices responds to link layer packets with a pay…

Fix: after 1.0.14.1081
Fix from $1,600 2020-02-10
Cc2640r2 Software Development Kit MEDIUM 6.5
CVE-2019-17520

The Bluetooth Low Energy implementation on Texas Instruments SDK through 3.30.00.20 for CC2640R2 devices does not properly restrict the SM Public Key…

Fix: after 3.30.00.20
Fix from $1,600 2020-02-10
Mcuxpresso Software Development Kit MEDIUM 6.5
CVE-2019-17060

The Bluetooth Low Energy (BLE) stack implementation on the NXP KW41Z (based on the MCUXpresso SDK with Bluetooth Low Energy Driver 2.2.1 and earlier)…

Fix: after 2.2.1
Fix from $1,600 2020-02-10
Psoc 4 Ble MEDIUM 6.5
CVE-2019-17061

The Bluetooth Low Energy (BLE) stack implementation on Cypress PSoC 4 through 3.62 devices does not properly restrict the BLE Link Layer header and e…

Fix: after 3.62
Fix from $1,600 2020-02-10
Apq8009 Firmware HIGH 7.8
CVE-2019-14041

During listener modified response processing, a buffer overrun occurs due to lack of buffer size verification when updating message buffer with physi…

Patch available
Fix from $1,950 2020-02-07
Debian Linux MEDIUM 5.6
CVE-2020-8608

In libslirp 4.1.0, as used in QEMU 4.2.0, tcp_subr.c misuses snprintf return values, leading to a buffer overflow in later code.

Patch available
Fix from $1,600 2020-02-06
Ubuntu Linux HIGH 8.8
CVE-2014-1958

Buffer overflow in the DecodePSDPixels function in coders/psd.c in ImageMagick before 6.8.8-5 might allow remote attackers to execute arbitrary code …

Fix: 6.8.8-5+
Fix from $1,950 2020-02-06
Edk2 MEDIUM 6.8
CVE-2014-8271

Buffer overflow in the Reclaim function in Tianocore EDK2 before SVN 16280 allows physically proximate attackers to gain privileges via a long variab…

Patch available
Fix from $1,600 2020-02-06
Debian Linux HIGH 8.8
CVE-2020-5208

It's been found that multiple functions in ipmitool before 1.8.19 neglect proper checking of the data received from a remote LAN party, which may lea…

Patch available
Fix from $1,950 2020-02-05
Debian Linux CRITICAL 9.8
CVE-2020-8597EPSS 20%

eap.c in pppd in ppp 2.4.2 through 2.4.8 has an rhostname buffer overflow in the eap_request and eap_response functions.

Fix: 03.04.10+
Fix from $2,300 2020-02-03
Mpc Hc HIGH 7.8
CVE-2013-3488

Stack-based buffer overflow in Media Player Classic - Home Cinema (MPC-HC) before 1.7.0.7858 allows remote attackers to execute arbitrary code via a …

Fix: 1.7.0.7858+
Fix from $1,950 2020-01-31
Mpc Hc HIGH 7.8
CVE-2013-3489

Buffer overflow in Media Player Classic - Home Cinema (MPC-HC) before 1.7.0 allows remote attackers to execute arbitrary code via a crafted RealMedia…

Fix: 1.7.0+
Fix from $1,950 2020-01-31
Iot Messagesight CRITICAL 9.8
CVE-2020-4207

IBM Watson IoT Message Gateway 2.0.0.x, 5.0.0.0, 5.0.0.1, and 5.0.0.2 is vulnerable to a buffer overflow, caused by improper bounds checking when han…

Fix: 2.0.0.2+
Fix from $2,300 2020-01-28
Nethack CRITICAL 9.8
CVE-2020-5211

In NetHack before 3.6.5, an invalid extended command in value for the AUTOCOMPLETE configuration file option can cause a buffer overflow resulting in…

Fix: 3.6.5+
Fix from $2,300 2020-01-28
Debian Linux CRITICAL 9.8
CVE-2015-8011EPSS 5%

Buffer overflow in the lldp_decode function in daemon/protocols/lldp.c in lldpd before 0.8.0 allows remote attackers to cause a denial of service (da…

Fix: 0.8.0+
Fix from $2,300 2020-01-28
Nethack HIGH 7.8
CVE-2020-5209

In NetHack before 3.6.5, unknown options starting with -de and -i can cause a buffer overflow resulting in a crash or remote code execution/privilege…

Fix: 3.6.5+
Fix from $1,950 2020-01-28
Nethack HIGH 7.8
CVE-2020-5210

In NetHack before 3.6.5, an invalid argument to the -w command line option can cause a buffer overflow resulting in a crash or remote code execution/…

Fix: 3.6.5+
Fix from $1,950 2020-01-28
Nethack CRITICAL 9.8
CVE-2020-5212

In NetHack before 3.6.5, an extremely long value for the MENUCOLOR configuration file option can cause a buffer overflow resulting in a crash or remo…

Fix: 3.6.5+
Fix from $2,300 2020-01-28
Nethack CRITICAL 9.8
CVE-2020-5213

In NetHack before 3.6.5, too long of a value for the SYMBOL configuration file option can cause a buffer overflow resulting in a crash or remote code…

Fix: 3.6.5+
Fix from $2,300 2020-01-28
Nethack CRITICAL 9.8
CVE-2020-5214

In NetHack before 3.6.5, detecting an unknown configuration file option can cause a buffer overflow resulting in a crash or remote code execution/pri…

Fix: 3.6.5+
Fix from $2,300 2020-01-28
PostgreSQL HIGH 8.8
CVE-2015-0241EPSS 6%

The to_char function in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1 allows remote …

Fix: 9.0.19 / 9.1.15+
Fix from $1,950 2020-01-27
PostgreSQL HIGH 8.8
CVE-2015-0243EPSS 5%

Multiple buffer overflows in contrib/pgcrypto in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x be…

Fix: 9.0.19 / 9.1.15+
Fix from $1,950 2020-01-27
Lustre CRITICAL 9.8
CVE-2019-20427

In the Lustre file system before 2.12.3, the ptlrpc module has a buffer overflow and panic, and possibly remote code execution, due to the lack of va…

Fix: 2.12.3+
Fix from $2,300 2020-01-27
Lustre HIGH 7.5
CVE-2019-20423

In the Lustre file system before 2.12.3, the ptlrpc module has a buffer overflow and panic due to the lack of validation for specific fields of packe…

Fix: 2.12.3+
Fix from $1,950 2020-01-27
Vlc Media Player HIGH 7.8
CVE-2014-9625

The GetUpdateFile function in misc/update.c in the Updater in VideoLAN VLC media player before 2.1.6 performs an incorrect cast operation from a 64-b…

Fix: 2.1.6+
Fix from $1,950 2020-01-24
Vlc Media Player HIGH 7.8
CVE-2014-9628

The MP4_ReadBox_String function in modules/demux/mp4/libmp4.c in VideoLAN VLC media player before 2.1.6 allows remote attackers to trigger an uninten…

Fix: 2.1.6+
Fix from $1,950 2020-01-24
Vlc Media Player HIGH 7.8
CVE-2014-9629

Integer overflow in the Encode function in modules/codec/schroedinger.c in VideoLAN VLC media player before 2.1.6 and 2.2.x before 2.2.1 allows remot…

Fix: 2.1.6 / 2.2.1+
Fix from $1,950 2020-01-24