Vulnerability index

Browse CVEs

4,225 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
macOS CRITICAL 9.8
CVE-2023-23513

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.7.3, macOS Ventura 13.2, macOS Monterey …

Fix: 11.7.3 / 12.6.3+
Fix from $2,300 2023-02-27
Bisheng Wnm Firmware HIGH 7.5
CVE-2022-48260

There is a buffer overflow vulnerability in BiSheng-WNM FW 3.0.0.325. Successful exploitation could lead to device service exceptions.

No fix yet
Fix from $1,950 2023-02-27
Libheif HIGH 7.8
CVE-2023-0996

There is a vulnerability in the strided image data parsing code in the emscripten wrapper for libheif. An attacker could exploit this through a craft…

Patch available
Fix from $1,950 2023-02-24
Nethack MEDIUM 5.5
CVE-2023-24809

NetHack is a single player dungeon exploration game. Starting with version 3.6.2 and prior to version 3.6.7, illegal input to the "C" (call) command …

Fix: 3.6.7+
Fix from $1,600 2023-02-17
Salt CRITICAL 9.8
CVE-2021-33226

Buffer Overflow vulnerability in Saltstack v.3003 and before allows attacker to execute arbitrary code via the func variable in salt/salt/modules/sta…

Fix: after 3003
Fix from $2,300 2023-02-17
Flatcc HIGH 7.8
CVE-2021-33983

Buffer Overflow vulnerability in Dvidelabs flatcc v.0.6.0 allows local attacker to execute arbitrary code via the fltacc execution of the error_ref_s…

Patch available
Fix from $1,950 2023-02-17
Comos CRITICAL 9.8
CVE-2023-24482

A vulnerability has been identified in COMOS V10.2 (All versions), COMOS V10.3.3.1 (All versions < V10.3.3.1.45), COMOS V10.3.3.2 (All versions < V10…

Fix: 10.3.3.1.45 / 10.3.3.2.33+
Fix from $2,300 2023-02-14
Aqt1000 Firmware CRITICAL 9.8
CVE-2022-40514

Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame.

Mitigation only
Fix from $2,300 2023-02-12
App Connect Enterprise MEDIUM 6.5
CVE-2022-42444

IBM App Connect Enterprise 11.0.0.8 through 11.0.0.19 and 12.0.1.0 through 12.0.5.0 is vulnerable to a buffer overflow. A remote privileged user coul…

Fix: after 12.0.5.0
Fix from $1,600 2023-02-12
Aqt1000 Firmware HIGH 7.8
CVE-2022-33232

Memory corruption due to buffer copy without checking size of input while running memory sharing tests with large scattered memory.

No fix yet
Fix from $1,950 2023-02-12
Aqt1000 Firmware HIGH 7.8
CVE-2022-33277

Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command.

Mitigation only
Fix from $1,950 2023-02-12
Glibc CRITICAL 9.8
CVE-2023-0687

A vulnerability was found in GNU C Library 2.38. It has been declared as critical. This vulnerability affects the function __monstartup of the file g…

Fix: 2.38+
Fix from $2,300 2023-02-06
Fcitx 5 HIGH 7.5
CVE-2021-37311

Buffer Overflow vulnerability in fcitx5 5.0.8 allows attackers to cause a denial of service via crafted message to the application's listening port.

Patch available
Fix from $1,950 2023-02-03
Big Ip Access Policy Manager HIGH 7.5
CVE-2023-22422

On BIG-IP versions 17.0.x before 17.0.0.2 and 16.1.x before 16.1.3.3, when a HTTP profile with the non-default Enforcement options of Enforce HTTP Co…

Fix: 16.1.3.3 / 17.0.0.2+
Fix from $1,950 2023-02-01
Tew 811dru Firmware HIGH 7.5
CVE-2023-0617

A vulnerability was found in TRENDNet TEW-811DRU 1.0.10.0. It has been classified as critical. This affects an unknown part of the file /wireless/gue…

No fix yet
Fix from $1,950 2023-02-01
Tew 811dru Firmware HIGH 7.5
CVE-2023-0612

A vulnerability, which was classified as critical, was found in TRENDnet TEW-811DRU 1.0.10.0. Affected is an unknown function of the file /wireless/b…

Mitigation only
Fix from $1,950 2023-02-01
Interactive Graphical Scada System CRITICAL 9.8
CVE-2022-24324

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow potentially leading to remo…

Fix: 15.0.0.22074+
Fix from $2,300 2023-02-01
Dir 825 Firmware CRITICAL 9.8
CVE-2022-47035

Buffer Overflow Vulnerability in D-Link DIR-825 v1.33.0.44ebdd4-embedded and below allows attacker to execute arbitrary code via the GetConfig method…

Fix: after 1.33.0.44ebdd4-embedded
Fix from $2,300 2023-01-31
Interactive Graphical Scada System CRITICAL 9.8
CVE-2022-32529

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow, potentially leading to rem…

Fix: after 15.0.0.22170
Fix from $2,300 2023-01-30
Interactive Graphical Scada System CRITICAL 9.8
CVE-2022-32522

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow, potentially leading to rem…

Fix: after 15.0.0.22170
Fix from $2,300 2023-01-30
Interactive Graphical Scada System CRITICAL 9.8
CVE-2022-32523

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow, potentially leading to rem…

Fix: after 15.0.0.22170
Fix from $2,300 2023-01-30
Interactive Graphical Scada System CRITICAL 9.8
CVE-2022-32524

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow, potentially leading to rem…

Fix: after 15.0.0.22170
Fix from $2,300 2023-01-30
Interactive Graphical Scada System CRITICAL 9.8
CVE-2022-32525

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow, potentially leading to rem…

Fix: after 15.0.0.22170
Fix from $2,300 2023-01-30
Interactive Graphical Scada System CRITICAL 9.8
CVE-2022-32526

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow, potentially leading to rem…

Fix: after 15.0.0.22170
Fix from $2,300 2023-01-30
Interactive Graphical Scada System CRITICAL 9.8
CVE-2022-32527

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow, potentially leading to rem…

Fix: after 15.0.0.22170
Fix from $2,300 2023-01-30
Ideacentre C5 14imb05 Firmware MEDIUM 6.7
CVE-2022-40137

A buffer overflow in the WMI SMI Handler in some Lenovo models may allow an attacker with local access and elevated privileges to execute arbitrary c…

Mitigation only
Fix from $1,600 2023-01-30
Quartz Gold Firmware HIGH 7.2
CVE-2022-41027

Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-14102…

No fix yet
Fix from $1,950 2023-01-26
Quartz Gold Firmware HIGH 7.2
CVE-2022-41028

Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-14102…

No fix yet
Fix from $1,950 2023-01-26
Quartz Gold Firmware HIGH 7.2
CVE-2022-41029

Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-14102…

No fix yet
Fix from $1,950 2023-01-26
Quartz Gold Firmware CRITICAL 9.8
CVE-2022-41030

Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-14102…

No fix yet
Fix from $2,300 2023-01-26