Vulnerability index

Browse CVEs

4,225 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Bento4 MEDIUM 6.5
CVE-2022-40438

Buffer overflow vulnerability in function AP4_MemoryByteStream::WritePartial in mp42aac in Bento4 v1.6.0-639, allows attackers to cause a denial of s…

No fix yet
Fix from $1,600 2022-09-14
Linux Kernel MEDIUM 5.5
CVE-2022-3077

A buffer overflow vulnerability was found in the Linux kernel Intel’s iSMT SMBus host controller driver in the way it handled the I2C_SMBUS_BLOCK_PRO…

Fix: 5.19+
Fix from $1,600 2022-09-09
Linux Kernel MEDIUM 5.5
CVE-2022-36280

An out-of-bounds(OOB) memory access vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_kms.c in GPU component in the Linux kernel …

Fix: after 5.13.0-52
Fix from $1,600 2022-09-09
G3 Firmware CRITICAL 9.8
CVE-2022-36586

In Tenda G3 US_G3V3.0br_V15.11.0.6(7663)_EN_TDE, there is a buffer overflow vulnerability caused by strcpy in function 0x869f4 in the httpd binary.

Patch available
Fix from $2,300 2022-09-08
Dap 1650 Firmware CRITICAL 9.8
CVE-2022-36588

In D-Link DAP1650 v1.04 firmware, the fileaccess.cgi program in the firmware has a buffer overflow vulnerability caused by strncpy.

Patch available
Fix from $2,300 2022-09-08
R8000 Firmware CRITICAL 9.8
CVE-2021-34236

Buffer Overflow in Netgear R8000 Router with firmware v1.0.4.56 allows remote attackers to execute arbitrary code or cause a denial-of-service by sen…

Mitigation only
Fix from $2,300 2022-09-08
G3 Firmware CRITICAL 9.8
CVE-2022-36585

In Tenda G3 US_G3V3.0br_V15.11.0.6(7663)_EN_TDE, in httpd binary, the addDhcpRule function has a buffer overflow caused by sscanf.

Patch available
Fix from $2,300 2022-09-07
Dir 1960 Firmware HIGH 7.5
CVE-2022-31414

D-Link DIR-1960 firmware DIR-1960_A1_1.11 was discovered to contain a buffer overflow via srtcat in prog.cgi. This vulnerability allowed attackers to…

Mitigation only
Fix from $1,950 2022-09-07
G3 Firmware CRITICAL 9.8
CVE-2022-36587

In Tenda G3 US_G3V3.0br_V15.11.0.6(7663)_EN_TDE, there is a buffer overflow vulnerability caused by sprintf in function in the httpd binary.

Patch available
Fix from $2,300 2022-09-07
G3 Firmware CRITICAL 9.8
CVE-2022-36584

In Tenda G3 US_G3V3.0br_V15.11.0.6(7663)_EN_TDE, the getsinglepppuser function has a buffer overflow caused by sscanf.

Patch available
Fix from $2,300 2022-09-06
A860r Firmware CRITICAL 9.8
CVE-2022-37839

TOTOLINK A860R V4.1.2cu.5182_B20201027 is vulnerable to Buffer Overflow via Cstecgi.cgi.

Mitigation only
Fix from $2,300 2022-09-06
A860r Firmware CRITICAL 9.8
CVE-2022-37840

In TOTOLINK A860R V4.1.2cu.5182_B20201027, the main function in downloadfile.cgi has a buffer overflow vulnerability.

Mitigation only
Fix from $2,300 2022-09-06
A860r Firmware CRITICAL 9.8
CVE-2022-37842

In TOTOLINK A860R V4.1.2cu.5182_B20201027, the parameters in infostat.cgi are not filtered, causing a buffer overflow vulnerability.

Mitigation only
Fix from $2,300 2022-09-06
A3002r Firmware HIGH 7.5
CVE-2022-40110

TOTOLINK A3002R TOTOLINK-A3002R-He-V1.1.1-B20200824.0128 is vulnerable to Buffer Overflow via /bin/boa.

Mitigation only
Fix from $1,950 2022-09-06
A3002r Firmware HIGH 7.5
CVE-2022-40112

TOTOLINK A3002R TOTOLINK-A3002R-He-V1.1.1-B20200824.0128 is vulnerable Buffer Overflow via the hostname parameter in binary /bin/boa.

Mitigation only
Fix from $1,950 2022-09-06
Davs2 MEDIUM 5.5
CVE-2022-36647

PKUVCL davs2 v1.6.205 was discovered to contain a global buffer overflow via the function parse_sequence_header() at source/common/header.cc:269.

No fix yet
Fix from $1,600 2022-09-02
Apq8017 Firmware CRITICAL 9.8
CVE-2022-25657

Memory corruption due to buffer overflow occurs while processing invalid MKV clip which has invalid seek header in Snapdragon Auto, Snapdragon Comput…

Mitigation only
Fix from $2,300 2022-09-02
Apq8009 Firmware CRITICAL 9.8
CVE-2022-25659

Memory corruption due to buffer overflow while parsing MKV clips with invalid bitmap size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connecti…

Mitigation only
Fix from $2,300 2022-09-02
Msm8996au Firmware HIGH 7.8
CVE-2022-25680

Memory corruption in multimedia due to buffer overflow while processing count variable from client in Snapdragon Auto

No fix yet
Fix from $1,950 2022-09-02
Freeciv HIGH 8.8
CVE-2022-39047

Freeciv before 2.6.7 and before 3.0.3 is prone to a buffer overflow vulnerability in the Modpack Installer utility's handling of the modpack URL.

Fix: 2.6.7 / 3.0.3+
Fix from $1,950 2022-08-31
Bluetooth Mesh Software Development Kit MEDIUM 6.5
CVE-2022-25635

Realtek Linux/Android Bluetooth Mesh SDK has a buffer overflow vulnerability due to insufficient validation for broadcast network packet length. An u…

Fix: after 4.17-4.17-20220127
Fix from $1,600 2022-08-30
Bluetooth Mesh Software Development Kit MEDIUM 6.5
CVE-2022-26527

Realtek Linux/Android Bluetooth Mesh SDK has a buffer overflow vulnerability due to insufficient validation for the size of segmented packets’ refere…

Fix: after 4.17-4.17-20220127
Fix from $1,600 2022-08-30
Bluetooth Mesh Software Development Kit MEDIUM 6.5
CVE-2022-26528

Realtek Linux/Android Bluetooth Mesh SDK has a buffer overflow vulnerability due to insufficient validation for the length of segmented packets’ shif…

Fix: after 4.17-4.17-20220127
Fix from $1,600 2022-08-30
Bluetooth Mesh Software Development Kit MEDIUM 6.5
CVE-2022-26529

Realtek Linux/Android Bluetooth Mesh SDK has a buffer overflow vulnerability due to insufficient validation for segmented packets’ link parameter. An…

Fix: after 4.17-4.17-20220127
Fix from $1,600 2022-08-30
Vigor3910 Firmware CRITICAL 9.8
CVE-2022-32548EPSS 34%

An issue was discovered on certain DrayTek Vigor routers before July 2022 such as the Vigor3910 before 4.3.1.1. /cgi-bin/wlogin.cgi has a buffer over…

Fix: 4.3.1.1 / 4.4.0+
Fix from $2,300 2022-08-29
Tx9 Pro Firmware HIGH 7.8
CVE-2022-38510

Tenda_TX9pro V22.03.02.10 was discovered to contain a buffer overflow via the component httpd/SetNetControlList.

No fix yet
Fix from $1,950 2022-08-29
Go Rt Ac750 Firmware CRITICAL 9.8
CVE-2022-37055 KEVEPSS 56%

D-Link Go-RT-AC750 GORTAC750_revA_v101b03 and GO-RT-AC750_revB_FWv200b02 are vulnerable to Buffer Overflow via cgibin, hnap_main,

Patch available
Fix from $2,300 2022-08-28
Dsl 3782 Firmware HIGH 7.5
CVE-2022-35192

D-Link Wireless AC1200 Dual Band VDSL ADSL Modem Router DSL-3782 Firmware v1.01 allows unauthenticated attackers to cause a Denial of Service (DoS) v…

Mitigation only
Fix from $1,950 2022-08-26
Cdm HIGH 7.8
CVE-2022-30984

A buffer overflow vulnerability in the Rubrik Backup Service (RBS) Agent for Linux or Unix-based systems in Rubrik CDM 7.0.1, 7.0.1-p1, 7.0.1-p2 or 7…

Mitigation only
Fix from $1,950 2022-08-26
Sound Exchange MEDIUM 5.5
CVE-2021-23159

A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function lsx_read_w_buf() in formats_i.c file. The vulnerability is exploita…

No fix yet
Fix from $1,600 2022-08-25