Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Jt Open Toolkit HIGH 7.8
CVE-2023-30796

A vulnerability has been identified in JT Open (All versions < V11.4), JT Utilities (All versions < V13.4). The affected applications contain an out …

Fix: 11.4 / 13.4+
Fix from $1,950 2023-08-08
Parasolid HIGH 7.8
CVE-2023-38525

A vulnerability has been identified in Parasolid V34.1 (All versions < V34.1.258), Parasolid V35.0 (All versions < V35.0.254), Parasolid V35.1 (All v…

Fix: 14.1.0.11 / 14.2.0.6+
Fix from $1,950 2023-08-08
Parasolid HIGH 7.8
CVE-2023-38526

A vulnerability has been identified in Parasolid V34.1 (All versions < V34.1.258), Parasolid V35.0 (All versions < V35.0.254), Parasolid V35.1 (All v…

Fix: 14.1.0.11 / 14.2.0.6+
Fix from $1,950 2023-08-08
Parasolid HIGH 7.8
CVE-2023-38527

A vulnerability has been identified in Parasolid V34.1 (All versions < V34.1.258), Parasolid V35.0 (All versions < V35.0.254), Teamcenter Visualizati…

Fix: 14.1.0.11 / 14.2.0.6+
Fix from $1,950 2023-08-08
Ar8035 Firmware HIGH 7.5
CVE-2023-28555

Transient DOS in Audio while remapping channel buffer in media codec decoding.

No fix yet
Fix from $1,950 2023-08-08
Apq8009 Firmware HIGH 7.5
CVE-2023-21625

Information disclosure in Network Services due to buffer over-read while the device receives DNS response.

Mitigation only
Fix from $1,950 2023-08-08
Fedora MEDIUM 6.5
CVE-2023-4135

A heap out-of-bounds memory read flaw was found in the virtual nvme device in QEMU. The QEMU process does not validate an offset provided by the gues…

Fix: 8.1.0+
Fix from $1,600 2023-08-04
Insydecrpkg HIGH 7.1
CVE-2023-25600

An issue was discovered in InsydeH2O. A malicious operating system can tamper with a runtime-writable EFI variable, leading to out-of-bounds memory r…

Fix: 01.01.04.0016+
Fix from $1,950 2023-08-03
Cx Programmer HIGH 7.8
CVE-2023-38746

Out-of-bounds read vulnerability/issue exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By having a user open a special…

Fix: after 9.80
Fix from $1,950 2023-08-03
Chrome HIGH 8.8
CVE-2023-4072

Out of bounds read and write in WebGL in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a…

Fix: 115.0.5790.170+
Fix from $1,950 2023-08-03
Pro 4pm Firmware MEDIUM 5.3
CVE-2023-33383

Shelly 4PM Pro four-channel smart switch 0.11.0 allows an attacker to trigger a BLE out of bounds read fault condition that results in a device reloa…

No fix yet
Fix from $1,600 2023-08-02
Enterprise Linux MEDIUM 5.5
CVE-2023-38559

A buffer overflow flaw was found in base/gdevdevn.c:1973 in devn_pcx_write_rle() in ghostscript. This issue may allow a local attacker to cause a den…

Fix: 10.02.0+
Fix from $1,600 2023-08-01
Firefox HIGH 7.5
CVE-2023-4048

An out-of-bounds read could have led to an exploitable crash when parsing HTML with DOMParser in low memory situations. This vulnerability affects Fi…

Fix: 102.14 / 115.1+
Fix from $1,950 2023-08-01
Rt Ax88u Firmware HIGH 7.5
CVE-2023-34358

ASUS RT-AX88U's httpd is subject to an unauthenticated DoS condition. A remote attacker can send a specially crafted request to a device which contai…

Fix: 3.0.0.4.388.23748+
Fix from $1,950 2023-07-31
Rt Ax88u Firmware HIGH 7.5
CVE-2023-34359

ASUS RT-AX88U's httpd is subject to an unauthenticated DoS condition. A remote attacker can send a specially crafted request to the device which caus…

Fix: 3.0.0.4.388.23748+
Fix from $1,950 2023-07-31
Ipados CRITICAL 9.8
CVE-2023-37285

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 15.7.8 and iPadOS 15.7.8, macOS Big Sur 11.7.9, macOS M…

Fix: 11.7.9 / 12.6.8+
Fix from $2,300 2023-07-28
macOS HIGH 8.1
CVE-2023-32443

An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Monterey 12.6.8, macOS Ventura 13.5, macOS Big Sur 1…

Fix: 11.7.9 / 12.6.8+
Fix from $1,950 2023-07-27
Imagemagick MEDIUM 5.5
CVE-2023-3745

A heap-based buffer overflow issue was found in ImageMagick's PushCharPixel() function in quantum-private.h. This issue may allow a local attacker to…

Fix: 6.9-11-0 / 7.0.10-0+
Fix from $1,600 2023-07-24
Enterprise Linux MEDIUM 5.9
CVE-2022-2127

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentica…

Fix: 4.16.10 / 4.17.9+
Fix from $1,600 2023-07-20
Advancemame HIGH 7.1
CVE-2020-23909

Heap-based buffer over-read in function png_convert_4 in file pngex.cc in AdvanceMAME through 2.1.

Fix: after 2.1
Fix from $1,950 2023-07-18
Htmldoc HIGH 7.8
CVE-2021-34121

An Out of Bounds flaw was discovered in htmodoc 1.9.12 in function parse_tree() in toc.cxx, this possibly leads to memory layout information leaking …

Patch available
Fix from $1,950 2023-07-18
Linux Kernel CRITICAL 9.1
CVE-2023-38426

An issue was discovered in the Linux kernel before 6.3.4. ksmbd has an out-of-bounds read in smb2_find_context_vals when create_context's name_len is…

Fix: 5.15.113 / 6.1.30+
Fix from $2,300 2023-07-18
Linux Kernel CRITICAL 9.8
CVE-2023-38427

An issue was discovered in the Linux kernel before 6.3.8. fs/smb/server/smb2pdu.c in ksmbd has an integer underflow and out-of-bounds read in deassem…

Fix: 5.15.145 / 6.1.34+
Fix from $2,300 2023-07-18
Linux Kernel CRITICAL 9.1
CVE-2023-38428

An issue was discovered in the Linux kernel before 6.3.4. fs/ksmbd/smb2pdu.c in ksmbd does not properly check the UserName value because it does not …

Fix: 5.15.113 / 6.1.30+
Fix from $2,300 2023-07-18
Linux Kernel CRITICAL 9.1
CVE-2023-38430

An issue was discovered in the Linux kernel before 6.3.9. ksmbd does not validate the SMB request protocol ID, leading to an out-of-bounds read.

Fix: 5.15.145 / 6.1.35+
Fix from $2,300 2023-07-18
Linux Kernel CRITICAL 9.1
CVE-2023-38431

An issue was discovered in the Linux kernel before 6.3.8. fs/smb/server/connection.c in ksmbd does not validate the relationship between the NetBIOS …

Fix: 5.15.145 / 6.1.34+
Fix from $2,300 2023-07-18
Linux Kernel CRITICAL 9.1
CVE-2023-38432

An issue was discovered in the Linux kernel before 6.3.10. fs/smb/server/smb2misc.c in ksmbd does not validate the relationship between the command p…

Fix: 5.15.121 / 6.1.36+
Fix from $2,300 2023-07-18
Fedora MEDIUM 5.5
CVE-2023-38253

An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str function in indep.c. This issue may allow an attacker to cause a denial of service…

No fix yet
Fix from $1,600 2023-07-14
Fedora MEDIUM 5.5
CVE-2023-38252

An out-of-bounds read flaw was found in w3m, in the Strnew_size function in Str.c. This issue may allow an attacker to cause a denial of service thro…

No fix yet
Fix from $1,600 2023-07-14
Junos MEDIUM 5.5
CVE-2023-36838

An Out-of-bounds Read vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX Series allows a local, authenticated at…

Fix: 20.2+
Fix from $1,600 2023-07-14