Vulnerability index

Browse CVEs

2,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Windows 10 1607 MEDIUM 6.6
CVE-2023-21560

Windows Boot Manager Security Feature Bypass Vulnerability

No fix yet
Fix from $1,600 2023-01-10
Vim HIGH 7.8
CVE-2023-0051

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1144.

Fix: 9.0.1144+
Fix from $1,950 2023-01-04
Android MEDIUM 5.5
CVE-2022-44427

In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.

Mitigation only
Fix from $1,600 2023-01-04
Android MEDIUM 5.5
CVE-2022-44428

In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2023-01-04
Android MEDIUM 5.5
CVE-2022-44429

In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2023-01-04
Android MEDIUM 5.5
CVE-2022-44430

In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2023-01-04
Pjsip CRITICAL 9.8
CVE-2022-23547

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, S…

Fix: 2.13.1+
Fix from $2,300 2022-12-23
Debian Linux HIGH 8.1
CVE-2022-43597

Multiple memory corruption vulnerabilities exist in the IFFOutput alignment padding functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A spec…

No fix yet
Fix from $1,950 2022-12-22
Debian Linux HIGH 8.1
CVE-2022-43598

Multiple memory corruption vulnerabilities exist in the IFFOutput alignment padding functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A spec…

No fix yet
Fix from $1,950 2022-12-22
Debian Linux HIGH 8.1
CVE-2022-43599

Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafte…

No fix yet
Fix from $1,950 2022-12-22
Debian Linux HIGH 8.1
CVE-2022-43600

Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafte…

No fix yet
Fix from $1,950 2022-12-22
Debian Linux HIGH 8.1
CVE-2022-43601

Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafte…

No fix yet
Fix from $1,950 2022-12-22
Debian Linux HIGH 8.1
CVE-2022-43602

Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafte…

No fix yet
Fix from $1,950 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-41794

A heap based buffer overflow vulnerability exists in the PSD thumbnail resource parsing code of OpenImageIO 2.3.19.0. A specially-crafted PSD file ca…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-41838

A code execution vulnerability exists in the DDS scanline parsing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially-crafted .dds…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-41639

A heap based buffer overflow vulnerability exists in tile decoding code of TIFF image parser in OpenImageIO master-branch-9aeece7a and v2.3.19.0. A s…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-23537

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, S…

Fix: 2.13.1+
Fix from $2,300 2022-12-20
Bento4 HIGH 8.8
CVE-2022-4584

A vulnerability was found in Axiomatic Bento4 up to 1.6.0-639. It has been rated as critical. Affected by this issue is some unknown functionality of…

Fix: after 1.6.0-639
Fix from $1,950 2022-12-17
Fedora HIGH 8.6
CVE-2022-2601

A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size …

Fix: after 2.06
Fix from $1,950 2022-12-14
Binbloom HIGH 7.8
CVE-2022-44910

Binbloom 2.0 was discovered to contain a heap buffer overflow via the read_pointer function at /binbloom-master/src/helpers.c.

Patch available
Fix from $1,950 2022-12-14
Apex One HIGH 7.5
CVE-2022-44654

Affected builds of Trend Micro Apex One and Apex One as a Service contain a monitor engine component that is complied without the /SAFESEH memory pro…

Fix: 14.0.11789+
Fix from $1,950 2022-12-12
Cimplicity HIGH 7.8
CVE-2022-2948

GE CIMPICITY versions 2022 and prior is vulnerable to a heap-based buffer overflow, which could allow an attacker to execute arbitrary code.

Fix: after 2022
Fix from $1,950 2022-12-07
Vim HIGH 7.8
CVE-2022-3491

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0742.

Fix: 9.0.0742+
Fix from $1,950 2022-12-03
Vim CRITICAL 9.8
CVE-2022-3520

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0765.

Fix: 9.0.0765+
Fix from $2,300 2022-12-02
Fedora HIGH 7.8
CVE-2022-4141

Heap based buffer overflow in vim/vim 9.0.0946 and below by allowing an attacker to CTRL-W gf in the expression used in the RHS of the substitute com…

Fix: after 9.0.0946
Fix from $1,950 2022-11-25
Lief MEDIUM 6.5
CVE-2022-43171

A heap buffer overflow in the LIEF::MachO::BinaryParser::parse_dyldinfo_generic_bind function of LIEF v0.12.1 allows attackers to cause a Denial of S…

Patch available
Fix from $1,600 2022-11-17
Micrium Uc Http CRITICAL 9.8
CVE-2022-24942

Heap based buffer overflow in HTTP Server functionality in Micrium uC-HTTP 3.01.01 allows remote code execution via HTTP request.

No fix yet
Fix from $2,300 2022-11-15
Secure Firewall Threat Defense HIGH 7.5
CVE-2022-20946

A vulnerability in the generic routing encapsulation (GRE) tunnel decapsulation feature of Cisco Firepower Threat Defense (FTD) Software could allow …

Fix: after 7.0.3
Fix from $1,950 2022-11-15
Debian Linux HIGH 7.8
CVE-2022-45188

Netatalk through 3.1.13 has an afp_getappl heap-based buffer overflow resulting in code execution via a crafted .appl file. This provides remote root…

Fix: after 3.1.13
Fix from $1,950 2022-11-12
Jt2go HIGH 7.8
CVE-2022-39136

A vulnerability has been identified in JT2Go (All versions < V14.1.0.4), Teamcenter Visualization V13.2 (All versions < V13.2.0.12), Teamcenter Visu…

Fix: 14.0.0.3 / 14.1.0.4+
Fix from $1,950 2022-11-08