Vulnerability index

Browse CVEs

4,225 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Apq8009 Firmware HIGH 7.8
CVE-2019-10605

Buffer overwrite can occur in IEEE80211 header filling function due to lack of range check of array index received from firmware in Snapdragon Auto, …

Patch available
Fix from $1,950 2019-12-18
Apq8009 Firmware HIGH 7.8
CVE-2019-10607

Out of bounds memcpy can occur by providing the embedded NULL character string and length greater than the actual string length in Snapdragon Auto, S…

Patch available
Fix from $1,950 2019-12-18
Apq8009 Firmware HIGH 7.8
CVE-2018-11980

When a fake broadcast/multicast 11w rmf without mmie received, since no proper length check in wma_process_bip, buffer overflow will happen in both c…

Patch available
Fix from $1,950 2019-12-18
Ap2000 Firmware MEDIUM 5.5
CVE-2019-5257

Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;Secospace) have a resource ma…

Mitigation only
Fix from $1,600 2019-12-13
Ap2000 Firmware MEDIUM 5.5
CVE-2019-5258

Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;Secospace AntiDDoS8000;Secosp…

Mitigation only
Fix from $1,600 2019-12-13
Aceaxe Plus CRITICAL 9.8
CVE-2019-19782

The FTP client in AceaXe Plus 1.0 allows a buffer overflow via a long EHLO response from an FTP server.

No fix yet
Fix from $2,300 2019-12-13
Apq8009 Firmware HIGH 7.8
CVE-2019-2321

Incorrect length used while validating the qsee log buffer sent from HLOS which could then lead to remap conflict in Snapdragon Auto, Snapdragon Comp…

Mitigation only
Fix from $1,950 2019-12-12
Apq8017 Firmware HIGH 7.8
CVE-2019-10555

Buffer overflow can occur due to usage of wrong datatype and missing length check before copying into buffer in Snapdragon Auto, Snapdragon Compute, …

Patch available
Fix from $1,950 2019-12-12
Apq8017 Firmware HIGH 7.8
CVE-2019-10571

Snapshot of IB can lead to invalid address access due to missing check for size in the related function in Snapdragon Auto, Snapdragon Compute, Snapd…

Patch available
Fix from $1,950 2019-12-12
Apq8009 Firmware HIGH 7.8
CVE-2019-2288

Out of bound write in TZ while copying the secure dump structure on HLOS provided buffer as a part of memory dump in Snapdragon Auto, Snapdragon Comp…

Mitigation only
Fix from $1,950 2019-12-12
Apq8053 Firmware CRITICAL 9.8
CVE-2019-10493

Position determination accuracy may be degraded due to wrongly decoded information in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, S…

No fix yet
Fix from $2,300 2019-12-12
Firecracker CRITICAL 9.8
CVE-2019-18960

Firecracker vsock implementation buffer overflow in versions 0.18.0 and 0.19.0. This can result in potentially exploitable crashes.

Mitigation only
Fix from $2,300 2019-12-11
Hhvm CRITICAL 9.8
CVE-2019-11935

Insufficient boundary checks when processing a string in mb_ereg_replace allows access to out-of-bounds memory. This issue affects HHVM versions prio…

Fix: 3.30.12+
Fix from $2,300 2019-12-04
Freeftpd HIGH 8.8
CVE-2019-19383

freeFTPd 1.0.8 has a Post-Authentication Buffer Overflow via a crafted SIZE command (this is exploitable even if logging is disabled).

No fix yet
Fix from $1,950 2019-12-03
Axtls HIGH 7.5
CVE-2019-9689

process_certificate in tls1.c in Cameron Hamilton-Rich axTLS through 2.1.5 has a Buffer Overflow via a crafted TLS certificate handshake message with…

Fix: after 2.1.5
Fix from $1,950 2019-12-03
Axtls HIGH 7.5
CVE-2019-10013

The asn1_signature function in asn1.c in Cameron Hamilton-Rich axTLS through 2.1.5 has a Buffer Overflow that allows remote attackers to cause a deni…

Fix: after 2.1.5
Fix from $1,950 2019-12-03
Fbx Software Development Kit HIGH 7.8
CVE-2019-7366

Buffer overflow vulnerability in Autodesk FBX Software Development Kit version 2019.5. A user may be tricked into opening a malicious FBX file which …

Patch available
Fix from $1,950 2019-12-03
Crosschex CRITICAL 9.8
CVE-2019-12518EPSS 51%

Anviz CrossChex access control management software 4.3.8.0 and 4.3.12 is vulnerable to a buffer overflow vulnerability.

No fix yet
Fix from $2,300 2019-12-02
Smplayer MEDIUM 5.5
CVE-2019-19489

SMPlayer 19.5.0 has a buffer overflow via a long .m3u file.

No fix yet
Fix from $1,600 2019-12-02
Atlas 300 Firmware MEDIUM 5.5
CVE-2019-5247

Huawei Atlas 300, Atlas 500 have a buffer overflow vulnerability. A local, authenticated attacker may craft specific parameter and send to the proces…

Fix: 1.0.0.spc102+
Fix from $1,600 2019-11-29
P30 Firmware HIGH 7.8
CVE-2019-5225

P30, Mate 20, P30 Pro smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21), versions earlier than Hima-AL00B 9.1.0.1…

Mitigation only
Fix from $1,950 2019-11-29
Ros Comm CRITICAL 9.8
CVE-2019-13566

An issue was discovered in the ROS communications-related packages (aka ros_comm or ros-melodic-ros-comm) through 1.14.3. A buffer overflow allows at…

Fix: after 1.14.3
Fix from $2,300 2019-11-22
Debian Linux CRITICAL 9.8
CVE-2014-6310

Buffer overflow in CHICKEN 4.9.0 and 4.9.0.1 may allow remote attackers to execute arbitrary code via the 'select' function.

Patch available
Fix from $2,300 2019-11-22
Plow HIGH 7.8
CVE-2012-3407

plow has local buffer overflow vulnerability

No fix yet
Fix from $1,950 2019-11-22
Apq8017 Firmware HIGH 7.8
CVE-2019-10566

Buffer overflow can occur in wlan module if supported rates or extended rates element length is greater than max rate set length in Snapdragon Auto, …

Patch available
Fix from $1,950 2019-11-21
Apq8009 Firmware HIGH 7.8
CVE-2018-13916

Out-of-bounds memory access in Qurt kernel function when using the identifier to access Qurt kernel buffer to retrieve thread data. in Snapdragon Aut…

Mitigation only
Fix from $1,950 2019-11-21
Control For Beaglebone CRITICAL 9.8
CVE-2019-18858

CODESYS 3 web server before 3.5.15.20, as distributed with CODESYS Control runtime systems, has a Buffer Overflow.

Fix: 3.5.15.20+
Fix from $2,300 2019-11-20
Debian Linux CRITICAL 9.8
CVE-2013-7088

ClamAV before 0.97.7 has buffer overflow in the libclamav component

Fix: 0.97.7+
Fix from $2,300 2019-11-15
Linux Kernel HIGH 7.8
CVE-2019-0145

Buffer overflow in i40e driver for Intel(R) Ethernet 700 Series Controllers versions before 7.0 may allow an authenticated user to potentially enable…

Fix: 4.9.244 / 4.14.205+
Fix from $1,950 2019-11-14
Ethernet Controller X710 Tm4 Firmware HIGH 8.8
CVE-2019-0140

Buffer overflow in firmware for Intel(R) Ethernet 700 Series Controllers before version 7.0 may allow an unauthenticated user to potentially enable a…

Fix: 7.0 / 24.0+
Fix from $1,950 2019-11-14