Vulnerability index

Browse CVEs

2,665 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
HIGH 7.8 CVE-2020-28595 An out-of-bounds write vulnerability exists in the Obj.cpp load_obj() functionality of Prusa Research PrusaSlicer 2.2.0 and Master (commit 4b040b856)… Prusaslicer No fix yet Fix from $1,9502021-02-10 HIGH 7.8 CVE-2020-17423 This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is r… Foxit Studio Photo Mitigation only Fix from $1,9502021-02-09 HIGH 7.8 CVE-2020-13586 A memory corruption vulnerability exists in the Excel Document SST Record 0x00fc functionality of SoftMaker Software GmbH SoftMaker Office PlanMaker … Planmaker 2021 No fix yet Fix from $1,9502021-02-04 HIGH 7.8 CVE-2020-27247 A specially crafted document can cause the document parser to copy data from a particular record type into a static-sized buffer within an object tha… Planmaker 2021 Mitigation only Fix from $1,9502021-02-04 HIGH 7.8 CVE-2020-27248 A specially crafted document can cause the document parser to copy data from a particular record type into a static-sized buffer within an object tha… Planmaker 2021 Mitigation only Fix from $1,9502021-02-04 HIGH 7.8 CVE-2020-27249 A specially crafted document can cause the document parser to copy data from a particular record type into a static-sized buffer within an object tha… Planmaker 2021 Mitigation only Fix from $1,9502021-02-04 HIGH 7.8 CVE-2021-22641 A heap-based buffer overflow issue has been identified in the way the application processes project files, allowing an attacker to craft a special pr… V Server 4.0.10.0+ Fix from $1,9502021-01-27 CRITICAL 9.8 CVE-2020-27297 The affected product is vulnerable to a heap-based buffer overflow, which may allow an attacker to manipulate memory with controlled values and remot… Opc Ua Tunneller 6.3.0.8233+ Fix from $2,3002021-01-26 HIGH 7.8 CVE-2020-27814 A heap-buffer overflow was found in the way openjpeg2 handled certain PNG format files. An attacker could use this flaw to cause an application crash… Debian Linux 2.4.0+ Fix from $1,9502021-01-26 MEDIUM 5.9 CVE-2020-25687EPSS 87% A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in dnsmasq when DNSSEC is enabled and before it validate… Fedora 2.83+ Fix from $1,6002021-01-20 HIGH 8.1 CVE-2020-25681EPSS 81% A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in the way RRSets are sorted before validating with DNSS… Fedora 2.83+ Fix from $1,9502021-01-20 HIGH 8.1 CVE-2020-25682EPSS 71% A flaw was found in dnsmasq before 2.83. A buffer overflow vulnerability was discovered in the way dnsmasq extract names from DNS packets before vali… Fedora 2.83+ Fix from $1,9502021-01-20 MEDIUM 5.9 CVE-2020-25683EPSS 86% A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in dnsmasq when DNSSEC is enabled and before it validate… Fedora 2.83+ Fix from $1,6002021-01-20 CRITICAL 9.1 CVE-2020-27263 KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All versions, Ro… Industrial Gateway Server after 6.9 Fix from $2,3002021-01-14 HIGH 8.6 CVE-2021-21006EPSS 6% Adobe Photoshop version 22.1 (and earlier) is affected by a heap buffer overflow vulnerability when handling a specially crafted font file. Successfu… Photoshop after 22.1 Fix from $1,9502021-01-13 HIGH 8.8 CVE-2020-26987 A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack … Jt2go 13.1.0+ Fix from $1,9502021-01-12 HIGH 8.8 CVE-2020-26994 A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack … Jt2go 13.1.0+ Fix from $1,9502021-01-12 CRITICAL 9.8 CVE-2020-15800 A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE X-200IRT switch fam… Scalance X200 4pirt Firmware 5.5.0+ Fix from $2,3002021-01-12 CRITICAL 9.8 CVE-2020-25226 A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE X-200IRT switch fam… Scalance X200 4pirt Firmware 5.5.0+ Fix from $2,3002021-01-12 HIGH 8.8 CVE-2020-26985 A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack … Jt2go 13.1.0+ Fix from $1,9502021-01-12 HIGH 8.8 CVE-2020-26986 A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack … Jt2go 13.1.0+ Fix from $1,9502021-01-12 MEDIUM 5.5 CVE-2020-27841 There's a flaw in openjpeg in versions prior to 2.4.0 in src/lib/openjp2/pi.c. When an attacker is able to provide crafted input to be processed by t… Fedora 2.4.0+ Fix from $1,6002021-01-05 CRITICAL 9.8 CVE-2020-25843 NHIServiSignAdapter fails to verify the length of digital credential files’ path which leads to a heap overflow loophole. Remote attackers can use th… Nhiservisignadapter Mitigation only Fix from $2,3002020-12-31 HIGH 7.8 CVE-2020-25712 A flaw was found in xorg-x11-server before 1.20.10. A heap-buffer overflow in XkbSetDeviceInfo may lead to a privilege escalation vulnerability. The … Enterprise Linux 1.20.10+ Fix from $1,9502020-12-15 CRITICAL 9.8 CVE-2020-25187 Medtronic MyCareLink Smart 25000 is  vulnerable when an authenticated attacker runs a debug command, which can be sent to the patient reader and ca… Mycarelink Smart Model 25000 Firmware Mitigation only Fix from $2,3002020-12-14 HIGH 7.8 CVE-2020-25199 A heap-based buffer overflow vulnerability exists within the WECON LeviStudioU Release Build 2019-09-21 and prior when processing project files. Open… Levistudiou after 2019-09-21 Fix from $1,9502020-12-09 HIGH 7.1 CVE-2020-27752 A flaw was found in ImageMagick in MagickCore/quantum-private.h. An attacker who submits a crafted file that is processed by ImageMagick could trigge… Imagemagick 6.9.11-47 / 7.0.9-0+ Fix from $1,9502020-12-08 MEDIUM 5.5 CVE-2020-25674 WriteOnePNGImage() from coders/png.c (the PNG coder) has a for loop with an improper exit condition that can allow an out-of-bounds READ via heap-buf… Debian Linux 6.9.10-68 / 7.0.8-68+ Fix from $1,6002020-12-08 MEDIUM 6.1 CVE-2020-25664 In WriteOnePNGImage() of the PNG coder at coders/png.c, an improper call to AcquireVirtualMemory() and memset() allows for an out-of-bounds write lat… Fedora 6.9.10-68 / 7.0.8-68+ Fix from $1,6002020-12-08 MEDIUM 5.5 CVE-2020-25665 The PALM image coder at coders/palm.c makes an improper call to AcquireQuantumMemory() in routine WritePALMImage() because it needs to be offset by 2… Debian Linux 6.9.10-68 / 7.0.8-68+ Fix from $1,6002020-12-08