Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Indesign MEDIUM 5.5
CVE-2023-44346

Adobe InDesign versions ID18.5 (and earlier) and ID17.4.2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclo…

Fix: 18.5.1+
Fix from $1,600 2024-02-29
Solidworks HIGH 7.8
CVE-2024-1847

Heap-based Buffer Overflow, Memory Corruption, Out-Of-Bounds Read, Out-Of-Bounds Write, Stack-based Buffer Overflow, Type Confusion, Uninitialized Va…

Fix: 2024+
Fix from $1,950 2024-02-28
Linux Kernel HIGH 7.7
CVE-2021-47044

In the Linux kernel, the following vulnerability has been resolved: sched/fair: Fix shift-out-of-bounds in load_balance() Syzbot reported a handful…

Fix: 5.10.37 / 5.11.21+
Fix from $1,950 2024-02-28
Linux Kernel HIGH 7.1
CVE-2021-47039

In the Linux kernel, the following vulnerability has been resolved: ataflop: potential out of bounds in do_format() The function uses "type" as an …

Fix: 5.11.21 / 5.12.4+
Fix from $1,950 2024-02-28
Linux Kernel HIGH 7.1
CVE-2021-46980

In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: Retrieve all the PDOs instead of just the first 4 commit 4dbc…

Fix: 5.10.38 / 5.11.22+
Fix from $1,950 2024-02-28
Linux Kernel HIGH 7.1
CVE-2021-46992

In the Linux kernel, the following vulnerability has been resolved: netfilter: nftables: avoid overflows in nft_hash_buckets() Number of buckets be…

Fix: 4.14.233 / 4.19.191+
Fix from $1,950 2024-02-28
Linux Kernel HIGH 7.1
CVE-2021-46993

In the Linux kernel, the following vulnerability has been resolved: sched: Fix out-of-bound access in uclamp Util-clamp places tasks in different b…

Fix: 5.4.120 / 5.10.38+
Fix from $1,950 2024-02-28
Linux Kernel HIGH 7.1
CVE-2021-46965

In the Linux kernel, the following vulnerability has been resolved: mtd: physmap: physmap-bt1-rom: Fix unintentional stack access Cast &data to (ch…

Fix: 5.10.36 / 5.11.20+
Fix from $1,950 2024-02-27
Linux Kernel HIGH 7.1
CVE-2021-46952

In the Linux kernel, the following vulnerability has been resolved: NFS: fs_context: validate UDP retrans to prevent shift out-of-bounds Fix shift …

Fix: 5.10.36 / 5.11.20+
Fix from $1,950 2024-02-27
Linux Kernel HIGH 7.1
CVE-2021-46954

In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_frag: fix stack OOB read while fragmenting IPv4 packets when 'ac…

Fix: 5.11.20 / 5.12.3+
Fix from $1,950 2024-02-27
Linux Kernel HIGH 7.1
CVE-2021-46955

In the Linux kernel, the following vulnerability has been resolved: openvswitch: fix stack OOB read while fragmenting IPv4 packets running openvswi…

Fix: 4.4.269 / 4.9.269+
Fix from $1,950 2024-02-27
Vyper MEDIUM 5.3
CVE-2024-24564

Vyper is a pythonic Smart Contract Language for the ethereum virtual machine. When using the built-in `extract32(b, start)`, if the `start` index pro…

Fix: 0.4.0+
Fix from $1,600 2024-02-26
Linux Kernel HIGH 7.1
CVE-2019-25160

In the Linux kernel, the following vulnerability has been resolved: netlabel: fix out-of-bounds memory accesses There are two array out-of-bounds m…

Fix: 3.16.66 / 3.18.137+
Fix from $1,950 2024-02-26
Fedora CRITICAL 9.1
CVE-2024-27319

Versions of the package onnx before and including 1.15.0 are vulnerable to Out-of-bounds Read as the ONNX_ASSERT and ONNX_ASSERTM functions have an o…

Fix: 1.16.0+
Fix from $2,300 2024-02-23
Fedora MEDIUM 5.5
CVE-2024-25629

c-ares is a C library for asynchronous DNS requests. `ares__read_line()` is used to parse local configuration files such as `/etc/resolv.conf`, `/etc…

Fix: 1.27.0+
Fix from $1,600 2024-02-23
Linux Kernel HIGH 7.1
CVE-2024-26597

In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: fix global oob in rmnet_policy The variable rmnet_link_op…

Fix: 4.19.306 / 5.4.268+
Fix from $1,950 2024-02-23
Linux Kernel HIGH 7.1
CVE-2024-26594EPSS 51%

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate mech token in session setup If client send invalid mech token i…

Fix: 5.15.149 / 6.1.75+
Fix from $1,950 2024-02-23
Linux Kernel HIGH 7.1
CVE-2024-26593

In the Linux kernel, the following vulnerability has been resolved: i2c: i801: Fix block process call transactions According to the Intel datasheet…

Fix: 5.4.269 / 5.10.210+
Fix from $1,950 2024-02-23
Linux Kernel HIGH 7.8
CVE-2024-26588

In the Linux kernel, the following vulnerability has been resolved: LoongArch: BPF: Prevent out-of-bounds memory access The test_tag test triggers …

Fix: 6.1.75 / 6.6.14+
Fix from $1,950 2024-02-22
Chrome HIGH 8.8
CVE-2024-1669

Out of bounds memory access in Blink in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to perform out of bounds memory access via a c…

Fix: 122.0.6261.57+
Fix from $1,950 2024-02-21
Wolfssl CRITICAL 9.1
CVE-2023-6936

In wolfSSL prior to 5.6.6, if callback functions are enabled (via the WOLFSSL_CALLBACKS flag), then a malicious TLS client or network attacker can tr…

Fix: 5.6.6+
Fix from $2,300 2024-02-20
Unclassified CRITICAL 9.8
CVE-2024-0794

Certain HP LaserJet Pro, HP Enterprise LaserJet, and HP LaserJet Managed Printers are potentially vulnerable to Remote Code Execution due to buffer o…

Mitigation only
Fix from $2,300 2024-02-20
Uc Tcp Ip MEDIUM 5.9
CVE-2023-39540

A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted netw…

No fix yet
Fix from $1,600 2024-02-20
Uc Tcp Ip MEDIUM 5.9
CVE-2023-39541

A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted netw…

No fix yet
Fix from $1,600 2024-02-20
Firefox HIGH 7.5
CVE-2024-1546

When storing and re-accessing data on a networking channel, the length of buffers may have been confused, resulting in an out-of-bounds memory read. …

Fix: 115.8.0 / 123.0+
Fix from $1,950 2024-02-20
Emui HIGH 7.4
CVE-2023-52377

Vulnerability of input data not being verified in the cellular data module.Successful exploitation of this vulnerability may cause out-of-bounds acce…

No fix yet
Fix from $1,950 2024-02-18
Emui MEDIUM 5.3
CVE-2023-52365

Out-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of this vulnerability may cause features to perform…

No fix yet
Fix from $1,600 2024-02-18
Customer Interaction History MEDIUM 6.1
CVE-2024-20949

Vulnerability in the Oracle Customer Interaction History product of Oracle E-Business Suite (component: Outcome-Result). Supported versions that are…

Fix: after 12.2.13
Fix from $1,600 2024-02-17
Installed Base MEDIUM 6.1
CVE-2024-20941

Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: HTML UI). Supported versions that are affected are 12.2.3-…

Fix: after 12.2.13
Fix from $1,600 2024-02-17
Android MEDIUM 5.3
CVE-2024-0016

In multiple locations, there is a possible out of bounds read due to a missing bounds check. This could lead to paired device information disclosure …

Patch available
Fix from $1,600 2024-02-16