Vulnerability index

Browse CVEs

2,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Meshtastic Firmware CRITICAL 9.8
CVE-2025-24797

Meshtastic is an open source mesh networking solution. A fault in the handling of mesh packets containing invalid protobuf data can result in an atta…

Fix: 2.6.2+
Fix from $2,300 2025-04-15
SQLite CRITICAL 9.8
CVE-2025-3277

An integer overflow can be triggered in SQLite’s `concat_ws()` function. The resulting, truncated integer is then used to allocate a buffer. When SQL…

Fix: 3.49.1+
Fix from $2,300 2025-04-14
Unclassified HIGH 7.3
CVE-2025-31344

Heap-based Buffer Overflow vulnerability in openEuler giflib on Linux. This vulnerability is associated with program files gif2rgb.C. This issue aff…

Mitigation only
Fix from $1,950 2025-04-14
Perl HIGH 8.4
CVE-2024-56406

A heap buffer overflow vulnerability was discovered in Perl. Release branches 5.34, 5.36, 5.38 and 5.40 are affected, including development version…

Fix: 5.38.4 / 5.40.2+
Fix from $1,950 2025-04-13
Junos HIGH 7.5
CVE-2025-30644

A Heap-based Buffer Overflow vulnerability in the flexible PIC concentrator (FPC) of Juniper Networks Junos OS on EX2300, EX3400, EX4100, EX4300, EX4…

Fix: 21.4+
Fix from $1,950 2025-04-09
Framemaker HIGH 7.8
CVE-2025-30299

Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code e…

Fix: 2020.8 / 2022.6+
Fix from $1,950 2025-04-08
Framemaker HIGH 7.8
CVE-2025-30295

Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code e…

Fix: 2020.8 / 2022.6+
Fix from $1,950 2025-04-08
Windows 11 22h2 HIGH 7.8
CVE-2025-29811

Improper input validation in Windows Mobile Broadband allows an authorized attacker to elevate privileges locally.

Fix: 10.0.22621.5189 / 10.0.22631.5189+
Fix from $1,950 2025-04-08
365 Apps HIGH 7.8
CVE-2025-27752

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-04-08
Remote Desktop Client HIGH 8.0
CVE-2025-27487

Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network.

Fix: 1.2.6081 / 2.0.379.0+
Fix from $1,950 2025-04-08
Windows 10 21h2 HIGH 7.8
CVE-2025-27490

Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.

Fix: 10.0.19044.5737 / 10.0.19045.5737+
Fix from $1,950 2025-04-08
Windows 10 1507 HIGH 7.0
CVE-2025-27478

Heap-based buffer overflow in Windows Local Security Authority (LSA) allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.20978 / 10.0.14393.7969+
Fix from $1,950 2025-04-08
Windows 10 1507 HIGH 8.8
CVE-2025-27477

Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.

Fix: 10.0.10240.20978 / 10.0.14393.7969+
Fix from $1,950 2025-04-08
Media Encoder HIGH 7.8
CVE-2025-27195

Media Encoder versions 25.1, 24.6.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execut…

Fix: 24.6.5 / 25.2+
Fix from $1,950 2025-04-08
Premiere Pro HIGH 7.8
CVE-2025-27196

Premiere Pro versions 25.1, 24.6.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code executi…

Fix: 24.6.5 / 25.2+
Fix from $1,950 2025-04-08
Photoshop HIGH 7.8
CVE-2025-27198

Photoshop Desktop versions 25.12.1, 26.4.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code…

Fix: 25.12.2 / 26.5+
Fix from $1,950 2025-04-08
Animate HIGH 7.8
CVE-2025-27199

Animate versions 24.0.7, 23.0.10 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution…

Fix: 23.0.11 / 24.0.8+
Fix from $1,950 2025-04-08
Bridge HIGH 7.8
CVE-2025-27193

Bridge versions 14.1.5, 15.0.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution i…

Fix: 14.1.6 / 15.0.3+
Fix from $1,950 2025-04-08
Windows 10 1809 HIGH 7.8
CVE-2025-26674

Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.

Fix: 10.0.17763.7136 / 10.0.19044.5737+
Fix from $1,950 2025-04-08
Windows 10 1507 HIGH 7.5
CVE-2025-26668

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

Fix: 10.0.10240.20978 / 10.0.14393.7969+
Fix from $1,950 2025-04-08
Windows 10 1809 HIGH 7.8
CVE-2025-26666

Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.

Fix: 10.0.17763.7136 / 10.0.19044.5737+
Fix from $1,950 2025-04-08
Windows 10 21h2 HIGH 7.8
CVE-2025-26639

Integer overflow or wraparound in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.

Fix: 10.0.19044.5737 / 10.0.19045.5737+
Fix from $1,950 2025-04-08
Windows 10 1507 HIGH 8.8
CVE-2025-21205

Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.

Fix: 10.0.10240.20978 / 10.0.14393.7969+
Fix from $1,950 2025-04-08
Windows 10 1507 HIGH 8.8
CVE-2025-21221

Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.

Fix: 10.0.10240.20978 / 10.0.14393.7969+
Fix from $1,950 2025-04-08
Windows 10 1507 HIGH 8.8
CVE-2025-21222

Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.

Fix: 10.0.10240.20978 / 10.0.14393.7969+
Fix from $1,950 2025-04-08
Debian Linux MEDIUM 5.5
CVE-2025-29769

libvips is a demand-driven, horizontally threaded image processing library. The heifsave operation could incorrectly determine the presence of an al…

Fix: 8.16.1+
Fix from $1,600 2025-04-07
Assimp HIGH 7.8
CVE-2025-3158

A vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp 5.4.3. Affected by this issue is the function A…

No fix yet
Fix from $1,950 2025-04-03
Assimp HIGH 7.8
CVE-2025-3159

A vulnerability, which was classified as critical, was found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::ASE::Parser…

Patch available
Fix from $1,950 2025-04-03
Unclassified HIGH 7.5
CVE-2025-29070

A heap buffer overflow vulnerability has been identified in thesmooth2() in cmsgamma.c in lcms2-2.16 which allows a remote attacker to cause a denial…

Mitigation only
Fix from $1,950 2025-04-01
Unclassified HIGH 7.3
CVE-2025-29069

A heap buffer overflow vulnerability has been identified in the lcms2-2.16. The vulnerability exists in the UnrollChunkyBytes function in cmspack.c, …

Mitigation only
Fix from $1,950 2025-04-01