Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Arena CRITICAL 9.8
CVE-2023-29460

An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a ma…

Mitigation only
Fix from $2,300 2023-05-09
Arena CRITICAL 9.8
CVE-2023-29461

An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a ma…

Mitigation only
Fix from $2,300 2023-05-09
Solid Edge Se2023 MEDIUM 5.5
CVE-2023-30985

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 3), Solid Edge SE2023 (All versions < V223.0 Update 2). Affect…

Mitigation only
Fix from $1,600 2023-05-09
SQLite HIGH 7.5
CVE-2021-31239

An issue found in SQLite SQLite3 v.3.35.4 that allows a remote attacker to cause a denial of service via the appendvfs.c function.

Patch available
Fix from $1,950 2023-05-09
Ipados HIGH 7.8
CVE-2023-27949

An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, macOS Monterey 12.6.4, iOS 15.7.4 and …

Fix: 12.6.4 / 13.3+
Fix from $1,950 2023-05-08
Ipados MEDIUM 5.5
CVE-2023-27929

An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, tvOS 16.4, iOS 16.4 and iPadOS 16.4, w…

Fix: 9.4 / 13.3+
Fix from $1,600 2023-05-08
macOS HIGH 7.8
CVE-2023-27938

An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in GarageBand for macOS 10.4.8. Parsing a maliciously c…

Fix: 10.4.8+
Fix from $1,950 2023-05-08
Xcode MEDIUM 6.3
CVE-2023-27945

This issue was addressed with improved entitlements. This issue is fixed in Xcode 14.3, macOS Big Sur 11.7.7, macOS Monterey 12.6.6. A sandboxed app …

Fix: 14.3+
Fix from $1,600 2023-05-08
Ipados HIGH 7.8
CVE-2023-27946

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Ventura 13.3, iOS 15.7.4 and iPadOS 15.7.4, macOS Mon…

Fix: 11.7.5 / 12.6.4+
Fix from $1,950 2023-05-08
Ipados MEDIUM 6.5
CVE-2023-23528

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in tvOS 16.4, iOS 16.4 and iPadOS 16.4. Processing a malicious…

Fix: 16.4+
Fix from $1,600 2023-05-08
Llvm MEDIUM 5.5
CVE-2023-29933

llvm-project commit bd456297 was discovered to contain a segmentation fault via the component mlir::Block::getArgument.

Patch available
Fix from $1,600 2023-05-05
Llvm MEDIUM 5.5
CVE-2023-29934

llvm-project commit 6c01b5c was discovered to contain a segmentation fault via the component mlir::Type::getDialect().

Patch available
Fix from $1,600 2023-05-05
Llvm MEDIUM 5.5
CVE-2023-29939

llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::spirv::TargetEnv::TargetEnv(mlir::spirv::TargetEn…

Patch available
Fix from $1,600 2023-05-05
Llvm MEDIUM 5.5
CVE-2023-29941

llvm-project commit a0138390 was discovered to contain a segmentation fault via the component matchAndRewriteSortOp<mlir::sparse_tensor::SortOp>(mlir…

Patch available
Fix from $1,600 2023-05-05
Llvm MEDIUM 5.5
CVE-2023-29942

llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::Type::isa<mlir::LLVM::LLVMVoidType.

Patch available
Fix from $1,600 2023-05-05
Samsung Blockchain Keystore MEDIUM 5.5
CVE-2023-21507

Out-of-bounds Read vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA_ARRAY command in bc_tui trustlet from Samsung Blockchain Keystore pri…

Fix: 1.3.12.1+
Fix from $1,600 2023-05-04
Samsung Blockchain Keystore MEDIUM 5.5
CVE-2023-21510

Out-of-bounds Read vulnerability while processing BC_TUI_CMD_UPDATE_SCREEN in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.1…

Fix: 1.3.12.1+
Fix from $1,600 2023-05-04
Samsung Blockchain Keystore MEDIUM 5.5
CVE-2023-21511

Out-of-bounds Read vulnerability while processing CMD_COLDWALLET_BTC_SET_PRV_UTXO in bc_core trustlet from Samsung Blockchain Keystore prior to versi…

Fix: 1.3.12.1+
Fix from $1,600 2023-05-04
Debian Linux MEDIUM 6.5
CVE-2022-43681

An out-of-bounds read exists in the BGP daemon of FRRouting FRR through 8.4. When sending a malformed BGP OPEN message that ends with the option leng…

Fix: after 8.4
Fix from $1,600 2023-05-03
Debian Linux MEDIUM 6.5
CVE-2022-40302

An issue was discovered in bgpd in FRRouting (FRR) through 8.4. By crafting a BGP OPEN message with an option of type 0xff (Extended Length from RFC …

Fix: after 8.4
Fix from $1,600 2023-05-03
Debian Linux MEDIUM 6.5
CVE-2022-40318

An issue was discovered in bgpd in FRRouting (FRR) through 8.4. By crafting a BGP OPEN message with an option of type 0xff (Extended Length from RFC …

Fix: after 8.4
Fix from $1,600 2023-05-03
Keepkey Firmware MEDIUM 5.7
CVE-2023-27892

Insufficient length checks in the ShapeShift KeepKey hardware wallet firmware before 7.7.0 allow a global buffer overflow via crafted messages. Flaws…

Fix: 7.7.0+
Fix from $1,600 2023-05-02
Aqt1000 Firmware MEDIUM 5.5
CVE-2022-33273

Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation.

Mitigation only
Fix from $1,600 2023-05-02
9205 Lte Modem Firmware HIGH 7.5
CVE-2022-40505

Information disclosure due to buffer over-read in Modem while parsing DNS hostname.

Mitigation only
Fix from $1,950 2023-05-02
Contiki Ng HIGH 7.5
CVE-2023-30546

Contiki-NG is an operating system for Internet of Things devices. An off-by-one error can be triggered in the Antelope database management system in …

Fix: after 4.8
Fix from $1,950 2023-04-26
Fusion MEDIUM 6.0
CVE-2023-20870

VMware Workstation and Fusion contain an out-of-bounds read vulnerability that exists in the functionality for sharing host Bluetooth devices with th…

Fix: 13.0.2 / 17.0.2+
Fix from $1,600 2023-04-25
Cuda Toolkit MEDIUM 6.6
CVE-2023-25512

NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in cuobjdump, where an attacker may cause an out-of-bounds memory read by running …

Fix: 12.1.0+
Fix from $1,600 2023-04-22
Cuda Toolkit MEDIUM 6.6
CVE-2023-25513

NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in cuobjdump, where an attacker may cause an out-of-bounds read by tricking a user…

Fix: 12.0.1+
Fix from $1,600 2023-04-22
Cuda Toolkit MEDIUM 6.6
CVE-2023-25514

NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in cuobjdump, where an attacker may cause an out-of-bounds read by tricking a user…

Fix: 12.1.1+
Fix from $1,600 2023-04-22
Velociraptor MEDIUM 5.3
CVE-2023-2226

Due to insufficient validation in the PE and OLE parsers in Rapid7's Velociraptor versions earlier than 0.6.8 allows attacker to crash Velociraptor d…

Fix: 0.6.8+
Fix from $1,600 2023-04-21