Vulnerability index

Browse CVEs

2,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
CRITICAL 9.8 CVE-2025-24797 Meshtastic is an open source mesh networking solution. A fault in the handling of mesh packets containing invalid protobuf data can result in an atta… Meshtastic Firmware 2.6.2+ Fix from $2,3002025-04-15 CRITICAL 9.8 CVE-2025-3277 An integer overflow can be triggered in SQLite’s `concat_ws()` function. The resulting, truncated integer is then used to allocate a buffer. When SQL… SQLite 3.49.1+ Fix from $2,3002025-04-14 HIGH 7.3 CVE-2025-31344 Heap-based Buffer Overflow vulnerability in openEuler giflib on Linux. This vulnerability is associated with program files gif2rgb.C. This issue aff… Mitigation only Fix from $1,9502025-04-14 HIGH 8.4 CVE-2024-56406 A heap buffer overflow vulnerability was discovered in Perl. Release branches 5.34, 5.36, 5.38 and 5.40 are affected, including development version… Perl 5.38.4 / 5.40.2+ Fix from $1,9502025-04-13 HIGH 7.5 CVE-2025-30644 A Heap-based Buffer Overflow vulnerability in the flexible PIC concentrator (FPC) of Juniper Networks Junos OS on EX2300, EX3400, EX4100, EX4300, EX4… Junos 21.4+ Fix from $1,9502025-04-09 HIGH 7.8 CVE-2025-30299 Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code e… Framemaker 2020.8 / 2022.6+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-30295 Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code e… Framemaker 2020.8 / 2022.6+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-29811 Improper input validation in Windows Mobile Broadband allows an authorized attacker to elevate privileges locally. Windows 11 22h2 10.0.22621.5189 / 10.0.22631.5189+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-27752 Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502025-04-08 HIGH 8.0 CVE-2025-27487 Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network. Remote Desktop Client 1.2.6081 / 2.0.379.0+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-27490 Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally. Windows 10 21h2 10.0.19044.5737 / 10.0.19045.5737+ Fix from $1,9502025-04-08 HIGH 7.0 CVE-2025-27478 Heap-based buffer overflow in Windows Local Security Authority (LSA) allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.20978 / 10.0.14393.7969+ Fix from $1,9502025-04-08 HIGH 8.8 CVE-2025-27477 Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network. Windows 10 1507 10.0.10240.20978 / 10.0.14393.7969+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-27195 Media Encoder versions 25.1, 24.6.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execut… Media Encoder 24.6.5 / 25.2+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-27196 Premiere Pro versions 25.1, 24.6.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code executi… Premiere Pro 24.6.5 / 25.2+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-27198 Photoshop Desktop versions 25.12.1, 26.4.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code… Photoshop 25.12.2 / 26.5+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-27199 Animate versions 24.0.7, 23.0.10 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution… Animate 23.0.11 / 24.0.8+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-27193 Bridge versions 14.1.5, 15.0.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution i… Bridge 14.1.6 / 15.0.3+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-26674 Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally. Windows 10 1809 10.0.17763.7136 / 10.0.19044.5737+ Fix from $1,9502025-04-08 HIGH 7.5 CVE-2025-26668 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network. Windows 10 1507 10.0.10240.20978 / 10.0.14393.7969+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-26666 Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally. Windows 10 1809 10.0.17763.7136 / 10.0.19044.5737+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-26639 Integer overflow or wraparound in Windows USB Print Driver allows an authorized attacker to elevate privileges locally. Windows 10 21h2 10.0.19044.5737 / 10.0.19045.5737+ Fix from $1,9502025-04-08 HIGH 8.8 CVE-2025-21205 Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network. Windows 10 1507 10.0.10240.20978 / 10.0.14393.7969+ Fix from $1,9502025-04-08 HIGH 8.8 CVE-2025-21221 Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network. Windows 10 1507 10.0.10240.20978 / 10.0.14393.7969+ Fix from $1,9502025-04-08 HIGH 8.8 CVE-2025-21222 Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network. Windows 10 1507 10.0.10240.20978 / 10.0.14393.7969+ Fix from $1,9502025-04-08 MEDIUM 5.5 CVE-2025-29769 libvips is a demand-driven, horizontally threaded image processing library. The heifsave operation could incorrectly determine the presence of an al… Debian Linux 8.16.1+ Fix from $1,6002025-04-07 HIGH 7.8 CVE-2025-3158 A vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp 5.4.3. Affected by this issue is the function A… Assimp No fix yet Fix from $1,9502025-04-03 HIGH 7.8 CVE-2025-3159 A vulnerability, which was classified as critical, was found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::ASE::Parser… Assimp Patch available Fix from $1,9502025-04-03 HIGH 7.5 CVE-2025-29070 A heap buffer overflow vulnerability has been identified in thesmooth2() in cmsgamma.c in lcms2-2.16 which allows a remote attacker to cause a denial… Mitigation only Fix from $1,9502025-04-01 HIGH 7.3 CVE-2025-29069 A heap buffer overflow vulnerability has been identified in the lcms2-2.16. The vulnerability exists in the UnrollChunkyBytes function in cmspack.c, … Mitigation only Fix from $1,9502025-04-01