Vulnerability index

Browse CVEs

4,225 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
MEDIUM 5.5 CVE-2024-44234 The issue was addressed with improved bounds checks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.… Ipados 2.1 / 11.1+ Fix from $1,6002024-11-01 MEDIUM 6.5 CVE-2024-48289 An issue in the Bluetooth Low Energy implementation of Cypress Bluetooth SDK v3.66 allows attackers to cause a Denial of Service (DoS) via supplying … Mitigation only Fix from $1,6002024-11-01 HIGH 7.8 CVE-2024-10559 A vulnerability was found in SourceCodester Airport Booking Management System 1.0 and classified as critical. Affected by this issue is the function … Airport Booking Management System No fix yet Fix from $1,9502024-10-31 HIGH 7.8 CVE-2024-9997 A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can … Autocad 2025.1.1+ Fix from $1,9502024-10-29 HIGH 7.8 CVE-2024-8592 A maliciously crafted CATPART file when parsed in AcTranslators.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A maliciou… Autocad 2024.1.6+ Fix from $1,9502024-10-29 HIGH 8.8 CVE-2024-10467 Memory safety bugs present in Firefox 131, Firefox ESR 128.3, and Thunderbird 128.3. Some of these bugs showed evidence of memory corruption and we p… Firefox 128.4.0 / 132.0+ Fix from $1,9502024-10-29 HIGH 7.8 CVE-2024-44218 This issue was addressed with improved checks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1, mac… Ipados 14.7.1 / 17.7.1+ Fix from $1,9502024-10-28 HIGH 7.5 CVE-2024-42011 The Spotify app 8.9.58 for iOS has a buffer overflow in its use of strcat. No fix yet Fix from $1,9502024-10-28 MEDIUM 5.5 CVE-2024-44144 A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18 and iPadOS 18, macOS Sequo… Ipados 11.0 / 14.7.1+ Fix from $1,6002024-10-28 CRITICAL 9.8 CVE-2024-10371 A vulnerability classified as critical has been found in SourceCodester Payroll Management System 1.0. This affects the function login of the file ma… Payroll Management System No fix yet Fix from $2,3002024-10-25 MEDIUM 5.5 CVE-2024-48424 A heap-buffer-overflow vulnerability has been identified in the OpenDDLParser::parseStructure function within the Assimp library, specifically during… Assimp No fix yet Fix from $1,6002024-10-24 MEDIUM 5.5 CVE-2024-48425 A segmentation fault (SEGV) was detected in the Assimp::SplitLargeMeshesProcess_Triangle::UpdateNode function within the Assimp library during fuzz t… Assimp No fix yet Fix from $1,6002024-10-24 MEDIUM 6.2 CVE-2024-48426 A segmentation fault (SEGV) was detected in the SortByPTypeProcess::Execute function in the Assimp library during fuzz testing with AddressSanitizer.… Assimp No fix yet Fix from $1,6002024-10-24 CRITICAL 9.8 CVE-2024-46478 HTMLDOC v1.9.18 contains a buffer overflow in parse_pre function,ps-pdf.cxx:5681. Htmldoc Patch available Fix from $2,3002024-10-24 HIGH 7.5 CVE-2024-44331 Incorrect Access Control in GStreamer RTSP server 1.25.0 in gst-rtsp-server/rtsp-media.c allows remote attackers to cause a denial of service via a s… Mitigation only Fix from $1,9502024-10-22 CRITICAL 9.8 CVE-2024-40494 Buffer Overflow in coap_msg.c in FreeCoAP allows remote attackers to execute arbitrary code or cause a denial of service (stack buffer overflow) via … Freecoap No fix yet Fix from $2,3002024-10-22 CRITICAL 9.6 CVE-2024-40083 A Buffer Overflow vulnerabilty in the local_app_set_router_token function of Vilo 5 Mesh WiFi System <= 5.16.1.33 allows remote, unauthenticated atta… Mitigation only Fix from $2,3002024-10-21 CRITICAL 9.6 CVE-2024-40084 A Buffer Overflow in the Boa webserver of Vilo 5 Mesh WiFi System <= 5.16.1.33 allows remote, unauthenticated attackers to execute arbitrary code via… Vilo 5 Firmware after 5.16.1.33 Fix from $2,3002024-10-21 CRITICAL 9.6 CVE-2024-40085 A Buffer Overflow vulnerability in the local_app_set_router_wan function of Vilo 5 Mesh WiFi System <= 5.16.1.33 allows remote, unauthenticated attac… Mitigation only Fix from $2,3002024-10-21 CRITICAL 9.6 CVE-2024-40086 A Buffer Overflow vulnerability in the local_app_set_router_wifi_SSID_PWD function of Vilo 5 Mesh WiFi System <= 5.16.1.33 allows remote, unauthentic… Mitigation only Fix from $2,3002024-10-21 MEDIUM 5.5 CVE-2024-31007 Buffer Overflow vulnerability in IrfanView 32bit v.4.66 allows a local attacker to cause a denial of service via a crafted file. Affected component i… Mitigation only Fix from $1,6002024-10-21 HIGH 7.8 CVE-2022-49023 In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: fix buffer overflow in elem comparison For vendor elements, the… Linux Kernel 5.4.226 / 5.10.158+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2022-48948 In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uvc: Prevent buffer overflow in setup handler Setup function uvc_f… Linux Kernel 4.9.337 / 4.14.303+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-49996 In the Linux kernel, the following vulnerability has been resolved: cifs: Fix buffer overflow when parsing NFS reparse points ReparseDataLength is … Debian Linux 5.4.287 / 5.10.231+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-49869 In the Linux kernel, the following vulnerability has been resolved: btrfs: send: fix buffer overflow detection when copying path to cache entry Sta… Linux Kernel 6.11.3+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-47751 In the Linux kernel, the following vulnerability has been resolved: PCI: kirin: Fix buffer overflow in kirin_pcie_parse_port() Within kirin_pcie_pa… Linux Kernel 6.1.113 / 6.6.54+ Fix from $1,9502024-10-21 HIGH 8.1 CVE-2024-33453 Buffer Overflow vulnerability in esp-idf v.5.1 allows a remote attacker to obtain sensitive information via the externalId component. Esp Idf Mitigation only Fix from $1,9502024-10-17 MEDIUM 6.5 CVE-2024-48710 In TP-Link TL-WDR7660 1.0, the wlanTimerRuleJsonToBin function handles the parameter string name without checking it, which can lead to stack overflo… Tl Wdr7660 Firmware No fix yet Fix from $1,6002024-10-15 MEDIUM 6.5 CVE-2024-48712 In TP-Link TL-WDR7660 1.0, the rtRuleJsonToBin function handles the parameter string name without checking it, which can lead to stack overflow vulne… Tl Wdr7660 Firmware No fix yet Fix from $1,6002024-10-15 MEDIUM 6.5 CVE-2024-48713 In TP-Link TL-WDR7660 1.0, the wacWhitelistJsonToBin function handles the parameter string name without checking it, which can lead to stack overflow… Tl Wdr7660 Firmware No fix yet Fix from $1,6002024-10-15