Vulnerability index

Browse CVEs

2,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Sql Server 2016 HIGH 8.8
CVE-2024-21317

SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability

Fix: 13.0.6441.1 / 13.0.7037.1+
Fix from $1,950 2024-07-09
Sql Server 2016 HIGH 8.8
CVE-2024-21331

SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability

Fix: 13.0.6441.1 / 13.0.7037.1+
Fix from $1,950 2024-07-09
Sql Server 2016 HIGH 8.8
CVE-2024-20701

SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2024-07-09
Rtl819x Jungle Software Development Kit HIGH 7.2
CVE-2024-21778

A heap-based buffer overflow vulnerability exists in the configuration file mib_init_value_array functionality of Realtek rtl819x Jungle SDK v3.4.11.…

Mitigation only
Fix from $1,950 2024-07-08
Unclassified MEDIUM 5.3
CVE-2024-6383

The bson_string_append function in MongoDB C Driver may be vulnerable to a buffer overflow where the function might attempt to allocate too small of …

Mitigation only
Fix from $1,600 2024-07-03
Unclassified HIGH 8.4
CVE-2023-52168

The NtfsHandler.cpp NTFS handler in 7-Zip before 24.01 (for 7zz) contains a heap-based buffer overflow that allows an attacker to overwrite two bytes…

Mitigation only
Fix from $1,950 2024-07-03
Ffmpeg HIGH 8.4
CVE-2024-32229

FFmpeg 7.0 contains a heap-buffer-overflow at libavfilter/vf_tiltandshift.c:189:5 in copy_column.

No fix yet
Fix from $1,950 2024-07-01
Libde265 MEDIUM 6.5
CVE-2024-38949

Heap Buffer Overflow vulnerability in Libde265 v1.0.15 allows attackers to crash the application via crafted payload to display444as420 function at s…

Mitigation only
Fix from $1,600 2024-06-26
Libde265 MEDIUM 6.5
CVE-2024-38950

Heap Buffer Overflow vulnerability in Libde265 v1.0.15 allows attackers to crash the application via crafted payload to __interceptor_memcpy function.

No fix yet
Fix from $1,600 2024-06-26
Autocad HIGH 7.8
CVE-2024-23154

A maliciously crafted SLDPRT file, when parsed in ODXSW_DLL.dll through Autodesk applications, can be used to cause a Heap-based Overflow. A maliciou…

Fix: 2022.1.5 / 2023.1.6+
Fix from $1,950 2024-06-25
Autocad HIGH 7.8
CVE-2024-23155

A maliciously crafted MODEL file, when parsed in atf_asm_interface.dll through Autodesk applications, can be used to cause a Heap-based Buffer Overfl…

Fix: 2022.1.5 / 2023.1.6+
Fix from $1,950 2024-06-25
Autocad HIGH 7.8
CVE-2024-37001

A maliciously crafted 3DM file, when parsed in opennurbs.dll through Autodesk applications, can be used to cause a Heap-based Overflow. A malicious a…

Fix: 2022.1.5 / 2023.1.6+
Fix from $1,950 2024-06-25
Parallels Desktop MEDIUM 6.7
CVE-2024-6154

Parallels Desktop Toolgate Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate…

Fix: 18.1.0+
Fix from $1,600 2024-06-20
Sonicos MEDIUM 6.5
CVE-2024-29013

Heap-based buffer overflow vulnerability in the SonicOS SSL-VPN allows an authenticated remote attacker to cause Denial of Service (DoS) via memcpy f…

Fix: 7.0.1-5161 / 7.1.1-7058+
Fix from $1,600 2024-06-20
Vcenter Server CRITICAL 9.8
CVE-2024-37080EPSS 12%

vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter …

Patch available
Fix from $2,300 2024-06-18
Chrome HIGH 8.8
CVE-2024-5835

Heap buffer overflow in Tab Groups in Google Chrome prior to 126.0.6478.54 allowed a remote attacker who convinced a user to engage in specific UI ge…

Fix: 126.0.6478.54+
Fix from $1,950 2024-06-11
Libiec61850 HIGH 7.4
CVE-2024-36702

libiec61850 v1.5 was discovered to contain a heap overflow via the BerEncoder_encodeLength function at /asn1/ber_encoder.c.

No fix yet
Fix from $1,950 2024-06-11
Windows 10 1507 HIGH 7.8
CVE-2024-30095

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

Fix: 10.0.10240.20680 / 10.0.14393.7070+
Fix from $1,950 2024-06-11
Windows 10 1507 HIGH 7.8
CVE-2024-30091

Win32k Elevation of Privilege Vulnerability

Fix: 10.0.10240.20680 / 10.0.14393.7070+
Fix from $1,950 2024-06-11
Windows 10 1507 HIGH 7.8
CVE-2024-30094

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

Fix: 10.0.10240.20680 / 10.0.14393.7070+
Fix from $1,950 2024-06-11
Windows 10 1809 HIGH 7.8
CVE-2024-30085EPSS 14%

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

Fix: 10.0.17763.5936 / 10.0.19044.4529+
Fix from $1,950 2024-06-11
Windows 10 1507 HIGH 8.0
CVE-2024-30077

Windows OLE Remote Code Execution Vulnerability

Fix: 10.0.10240.20680 / 10.0.14393.7070+
Fix from $1,950 2024-06-11
Windows 10 1507 MEDIUM 5.5
CVE-2024-30066

Winlogon Elevation of Privilege Vulnerability

Fix: 10.0.10240.20680 / 10.0.14393.7070+
Fix from $1,600 2024-06-11
Foxman Un CRITICAL 9.8
CVE-2024-2011

A heap-based buffer overflow vulnerability exists in the FOXMAN-UN/UNEM that if exploited will generally lead to a denial of service but can be used …

No fix yet
Fix from $2,300 2024-06-11
Power Pdf HIGH 7.8
CVE-2024-5301

Kofax Power PDF PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execut…

Fix: 5.0.0.18+
Fix from $1,950 2024-06-06
Exynos 980 Firmware HIGH 7.8
CVE-2024-27374

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_publi…

Mitigation only
Fix from $1,950 2024-06-05
Exynos 980 Firmware HIGH 7.8
CVE-2024-27372

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_confi…

Mitigation only
Fix from $1,950 2024-06-05
Libmodbus HIGH 7.5
CVE-2024-36843

libmodbus v3.1.6 was discovered to contain a heap overflow via the modbus_mapping_free() function.

No fix yet
Fix from $1,950 2024-05-31
Endpoint Manager HIGH 7.8
CVE-2024-22058

A buffer overflow allows a low privilege user on the local machine that has the EPM Agent installed to execute arbitrary code with elevated permissio…

Fix: after 2021.1
Fix from $1,950 2024-05-31
Chrome HIGH 8.8
CVE-2024-5493

Heap buffer overflow in WebRTC in Google Chrome prior to 125.0.6422.141 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 125.0.6422.141+
Fix from $1,950 2024-05-30