Vulnerability index

Browse CVEs

2,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Qts HIGH 7.2
CVE-2023-41275

A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vuln…

Mitigation only
Fix from $1,950 2024-02-02
Openexr CRITICAL 9.1
CVE-2023-5841

Due to a failure in validating the number of scanline samples of a OpenEXR file containing deep scanline data, Academy Software Foundation OpenEX ima…

Fix: after 3.2.1
Fix from $2,300 2024-02-01
Fedora HIGH 7.8
CVE-2023-6246

A heap-based buffer overflow was found in the __vsyslog_internal function of the glibc library. This function is called by the syslog and vsyslog fun…

Fix: 2.39+
Fix from $1,950 2024-01-31
Fedora HIGH 7.5
CVE-2023-6779

An off-by-one heap-based buffer overflow was found in the __vsyslog_internal function of the glibc library. This function is called by the syslog and…

Fix: 2.39+
Fix from $1,950 2024-01-31
Enterprise Linux HIGH 7.5
CVE-2023-52356

A segment fault (SEGV) flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFReadRGBATileExt() API. This flaw a…

Patch available
Fix from $1,950 2024-01-25
Freerdp CRITICAL 9.8
CVE-2024-22211

FreeRDP is a set of free and open source remote desktop protocol library and clients. In affected versions an integer overflow in `freerdp_bitmap_pla…

Fix: 2.11.5 / 3.2.0+
Fix from $2,300 2024-01-19
Dgx A100 Firmware HIGH 7.8
CVE-2023-31031

NVIDIA DGX Station A100 and DGX Station A800 SBIOS contains a vulnerability where a user may cause a heap-based buffer overflow by local access. A su…

Fix: 1.25+
Fix from $1,950 2024-01-12
Junos MEDIUM 5.3
CVE-2024-21596

A Heap-based Buffer Overflow vulnerability in the Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthent…

Mitigation only
Fix from $1,600 2024-01-12
Junos MEDIUM 5.5
CVE-2024-21594

A Heap-based Buffer Overflow vulnerability in the Network Services Daemon (NSD) of Juniper Networks Junos OS allows authenticated, low privileged, lo…

Fix: 20.4+
Fix from $1,600 2024-01-12
Edge Chromium MEDIUM 5.2
CVE-2024-21337

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

Fix: 120.0.2210.133+
Fix from $1,600 2024-01-11
Nexo Os CRITICAL 9.8
CVE-2023-48263

The vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code Execution (R…

Fix: after 1500-sp2
Fix from $2,300 2024-01-10
Megarac Sp X HIGH 8.8
CVE-2023-37297

AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a heap memory corruption via an adjacent network. A successful exploitation…

Fix: 12.7 / 13.6+
Fix from $1,950 2024-01-09
Megarac Sp X HIGH 8.8
CVE-2023-37294

AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a heap memory corruption via an adjacent network. A successful exploitation…

Fix: 12.7 / 13.6+
Fix from $1,950 2024-01-09
Megarac Sp X HIGH 8.8
CVE-2023-37295

AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a heap memory corruption via an adjacent network. A successful exploitation…

Fix: 12.7 / 13.6+
Fix from $1,950 2024-01-09
Windows 11 22h2 HIGH 7.3
CVE-2024-20697EPSS 72%

Windows libarchive Remote Code Execution Vulnerability

Fix: 10.0.22621.3007 / 10.0.22631.3007+
Fix from $1,950 2024-01-09
Windows 10 1809 HIGH 7.3
CVE-2024-20696

Windows libarchive Remote Code Execution Vulnerability

Fix: 10.0.17763.5329 / 10.0.19044.3930+
Fix from $1,950 2024-01-09
365 Apps HIGH 7.8
CVE-2024-20677

A security vulnerability exists in FBX that could lead to remote code execution. To mitigate this vulnerability, the ability to insert FBX files has …

Patch available
Fix from $1,950 2024-01-09
Edk2 HIGH 7.8
CVE-2022-36763

EDK2 is susceptible to a vulnerability in the Tcg2MeasureGptTable() function, allowing a user to trigger a heap buffer overflow via a local network. …

Fix: after 202311
Fix from $1,950 2024-01-09
Edk2 HIGH 7.8
CVE-2022-36764

EDK2 is susceptible to a vulnerability in the Tcg2MeasurePeImage() function, allowing a user to trigger a heap buffer overflow via a local network. S…

Fix: after 202311
Fix from $1,950 2024-01-09
Solid Edge Se2023 HIGH 7.8
CVE-2023-49122

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to heap-based buff…

Fix: 223.0+
Fix from $1,950 2024-01-09
Solid Edge Se2023 HIGH 7.8
CVE-2023-49123

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to heap-based buff…

Fix: 223.0+
Fix from $1,950 2024-01-09
Solid Edge Se2023 HIGH 7.8
CVE-2023-49121

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to heap-based buff…

Fix: 223.0+
Fix from $1,950 2024-01-09
Zlib MEDIUM 5.5
CVE-2023-6992

Cloudflare version of zlib library was found to be vulnerable to memory corruption issues affecting the deflation algorithm implementation (deflate.c…

Fix: 2023-11-16+
Fix from $1,600 2024-01-04
Perl HIGH 7.8
CVE-2023-47039

A vulnerability was found in Perl. This security issue occurs while Perl for Windows relies on the system path environment variable to find the shell…

Fix: 5.32.1+
Fix from $1,950 2024-01-02
SQLite HIGH 7.3
CVE-2023-7104

A vulnerability was found in SQLite SQLite3 up to 3.43.0 and classified as critical. This issue affects the function sessionReadRecord of the file ex…

Fix: after 3.43.0
Fix from $1,950 2023-12-29
Micropython CRITICAL 9.8
CVE-2023-7158

A vulnerability was found in MicroPython up to 1.21.0. It has been classified as critical. Affected is the function slice_indices of the file objslic…

Fix: 1.22.0+
Fix from $2,300 2023-12-29
Clickhouse HIGH 7.5
CVE-2023-48704

ClickHouse is an open-source column-oriented database management system that allows generating analytical data reports in real-time. A heap buffer ov…

Fix: 23.3.18.15 / 23.8.8.20+
Fix from $1,950 2023-12-22
Clickhouse CRITICAL 9.8
CVE-2023-47118

ClickHouse® is an open-source column-oriented database management system that allows generating analytical data reports in real-time. A heap buffer o…

Fix: 23.3.16.7 / 23.8.6.16+
Fix from $2,300 2023-12-20
Openimageio HIGH 7.5
CVE-2023-3430

A vulnerability was found in OpenImageIO, where a heap buffer overflow exists in the src/gif.imageio/gifinput.cpp file. This flaw allows a remote att…

No fix yet
Fix from $1,950 2023-12-18
Perl HIGH 7.8
CVE-2023-47038

A vulnerability was found in perl 5.30.0 through 5.38.0. This issue occurs when a crafted regular expression is compiled by perl, which can allow an …

Fix: after 5.38.0
Fix from $1,950 2023-12-18