Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Windows 10 1507 HIGH 8.8
CVE-2023-24872

Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability

Fix: 10.0.10240.19805 / 10.0.14393.5786+
Fix from $1,950 2023-03-14
Windows 10 1507 MEDIUM 5.5
CVE-2023-24862

Windows Secure Channel Denial of Service Vulnerability

Fix: 10.0.10240.19805 / 10.0.14393.5786+
Fix from $1,600 2023-03-14
Windows 11 22h2 HIGH 7.8
CVE-2023-23418

Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

Fix: 10.0.22000.1413+
Fix from $1,950 2023-03-14
365 Apps HIGH 7.8
CVE-2023-23399

Microsoft Excel Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2023-03-14
Tecnomatix Plant Simulation HIGH 7.8
CVE-2023-27401

A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected applications contain an out of bounds re…

Fix: 2201.0006+
Fix from $1,950 2023-03-14
Tecnomatix Plant Simulation HIGH 7.8
CVE-2023-27402

A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected applications contain an out of bounds re…

Fix: 2201.0006+
Fix from $1,950 2023-03-14
Tecnomatix Plant Simulation HIGH 7.8
CVE-2023-27405

A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected applications contain an out of bounds re…

Fix: 2201.0006+
Fix from $1,950 2023-03-14
Android MEDIUM 5.5
CVE-2022-47455

In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2023-03-10
Android MEDIUM 5.5
CVE-2022-47456

In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.

Mitigation only
Fix from $1,600 2023-03-10
Android MEDIUM 5.5
CVE-2022-47458

In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2023-03-10
Csr8811 Firmware HIGH 7.5
CVE-2022-33309

Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes.

Mitigation only
Fix from $1,950 2023-03-10
Csr8811 Firmware HIGH 7.5
CVE-2022-40535

Transient DOS due to buffer over-read in WLAN while sending a packet to device.

Mitigation only
Fix from $1,950 2023-03-10
Cscape Envision Rv HIGH 7.8
CVE-2023-0621

Cscape Envision RV version 4.60 is vulnerable to an out-of-bounds read vulnerability when parsing project (i.e. HMI) files. The product lacks proper …

Mitigation only
Fix from $1,950 2023-03-09
Cranelift Codegen CRITICAL 9.9
CVE-2023-26489

wasmtime is a fast and secure runtime for WebAssembly. In affected versions wasmtime's code generator, Cranelift, has a bug on x86_64 targets where a…

Fix: 0.91.1 / 4.0.1+
Fix from $2,300 2023-03-08
Kostac Plc Programming Software HIGH 7.8
CVE-2023-22419

Out-of-bounds read vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.9.0 and earlier. …

Fix: after 1.6.9.0
Fix from $1,950 2023-03-06
Kostac Plc Programming Software HIGH 7.8
CVE-2023-22421

Out-of-bounds read vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.9.0 and earlier. …

Fix: after 1.6.9.0
Fix from $1,950 2023-03-06
Fedora MEDIUM 5.5
CVE-2022-4645

LibTIFF 4.4.0 has an out-of-bounds read in tiffcp in tools/tiffcp.c:948, allowing attackers to cause a denial-of-service via a crafted tiff file. For…

Fix: after 4.4.0
Fix from $1,600 2023-03-03
Libmicrohttpd MEDIUM 5.9
CVE-2023-27371

GNU libmicrohttpd before 0.9.76 allows remote DoS (Denial of Service) due to improper parsing of a multipart/form-data boundary in the postprocessor.…

Fix: 0.9.76+
Fix from $1,600 2023-02-28
Trusted Platform Module MEDIUM 5.5
CVE-2023-1018EPSS 6%

An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 command in the CryptParameterDe…

Fix: 10.0.10240.19805 / 10.0.14393.5786+
Fix from $1,600 2023-02-28
Android HIGH 7.5
CVE-2023-20948

In dropFramesUntilIframe of AAVCAssembler.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote inform…

Patch available
Fix from $1,950 2023-02-28
Ipados MEDIUM 5.5
CVE-2023-23502

An information disclosure issue was addressed by removing the vulnerable code. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, iOS …

Fix: 9.3 / 12.6.3+
Fix from $1,600 2023-02-27
macOS HIGH 7.8
CVE-2022-42833

An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13. An app may be able to execute arbitrary …

Fix: 13.0+
Fix from $1,950 2023-02-27
Ipados HIGH 7.5
CVE-2022-32830

An out-of-bounds read issue was addressed with improved bounds checking. This issue is fixed in tvOS 15.6, iOS 15.6 and iPadOS 15.6. Processing a mal…

Fix: 15.6+
Fix from $1,950 2023-02-27
Linux Kernel HIGH 7.1
CVE-2023-26607

In the Linux kernel 6.0.8, there is an out-of-bounds read in ntfs_attr_find in fs/ntfs/attrib.c.

Fix: 4.9.334 / 4.14.300+
Fix from $1,950 2023-02-26
Imcat MEDIUM 6.5
CVE-2021-35369

Arbitrary File Read vulnerability found in Peacexie ImCat v.5.2 fixed in v.5.4 allows attackers to obtain sensitive information via the filtering_get…

Patch available
Fix from $1,600 2023-02-24
Swftools MEDIUM 5.5
CVE-2022-46440

ttftool v0.9.2 was discovered to contain a segmentation violation via the readU16 function at ttf.c.

No fix yet
Fix from $1,600 2023-02-24
Freeimage MEDIUM 5.5
CVE-2021-33367

Buffer Overflow vulnerability in Freeimage v3.18.0 allows attacker to cause a denial of service via a crafted JXR file.

Mitigation only
Fix from $1,600 2023-02-22
Glusterfs HIGH 7.5
CVE-2023-26253

In Gluster GlusterFS 11.0, there is an xlators/mount/fuse/src/fuse-bridge.c notify stack-based buffer over-read.

Patch available
Fix from $1,950 2023-02-21
Hyperkit MEDIUM 6.5
CVE-2021-32847

HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107 and prior, a malicious guest can trigger a vuln…

Fix: after 0.20210107
Fix from $1,600 2023-02-20
Bridge MEDIUM 5.5
CVE-2023-22231

Adobe Bridge versions 12.0.3 (and earlier) and 13.0.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure…

Fix: 12.0.4 / 13.0.2+
Fix from $1,600 2023-02-17