Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Android MEDIUM 5.5
CVE-2022-20523

In IncFs_GetFilledRangesStartingFrom of incfs.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local inf…

Patch available
Fix from $1,600 2022-12-16
Android MEDIUM 5.5
CVE-2022-20527

In HalCoreCallback of halcore.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosu…

Mitigation only
Fix from $1,600 2022-12-16
Android MEDIUM 5.5
CVE-2022-20513

In decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclo…

Patch available
Fix from $1,600 2022-12-16
Fedora CRITICAL 9.8
CVE-2022-46393

An issue was discovered in Mbed TLS before 2.28.2 and 3.x before 3.3.0. There is a potential heap-based buffer overflow and heap-based buffer over-re…

Fix: 2.28.2 / 3.3.0+
Fix from $2,300 2022-12-15
Ipados MEDIUM 5.5
CVE-2022-42851

The issue was addressed with improved memory handling. This issue is fixed in iOS 16.2 and iPadOS 16.2, tvOS 16.2. Parsing a maliciously crafted TIFF…

Fix: 16.2+
Fix from $1,600 2022-12-15
macOS HIGH 7.8
CVE-2022-32942

The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6.2, macOS Ventura 13.1, macOS Big Sur 11.7.2. An app…

Fix: 11.7.2 / 12.6.2+
Fix from $1,950 2022-12-15
Ipados MEDIUM 5.3
CVE-2022-32943

The issue was addressed with improved bounds checks. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1. Shake-to-undo may allow a d…

Fix: 16.2+
Fix from $1,600 2022-12-15
Ipados HIGH 7.8
CVE-2022-32948

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5. An app may b…

Fix: 12.5 / 15.6+
Fix from $1,950 2022-12-15
Iphone Os MEDIUM 5.5
CVE-2022-32916

An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fix…

Fix: 16.0+
Fix from $1,600 2022-12-15
Fedora HIGH 8.8
CVE-2022-46344

A vulnerability was found in X.Org. This security flaw occurs because the handler for the XIChangeProperty request has a length-validation issues, re…

Mitigation only
Fix from $1,950 2022-12-14
Parasolid HIGH 7.8
CVE-2022-46349

A vulnerability has been identified in Parasolid V33.1 (All versions < V33.1.264), Parasolid V34.0 (All versions < V34.0.252), Parasolid V34.1 (All v…

Fix: 33.1.264 / 34.0.252+
Fix from $1,950 2022-12-13
Jt2go HIGH 7.8
CVE-2022-41281

A vulnerability has been identified in JT2Go (All versions < V14.1.0.6), Teamcenter Visualization V13.2 (All versions < V13.2.0.12), Teamcenter Visua…

Fix: 13.2.0.12 / 13.3.0.8+
Fix from $1,950 2022-12-13
Jt2go HIGH 7.8
CVE-2022-41282

A vulnerability has been identified in JT2Go (All versions < V14.1.0.6), Teamcenter Visualization V13.2 (All versions < V13.2.0.12), Teamcenter Visua…

Fix: 13.2.0.12 / 13.3.0.8+
Fix from $1,950 2022-12-13
Jt2go HIGH 7.8
CVE-2022-41284

A vulnerability has been identified in JT2Go (All versions < V14.1.0.6), Teamcenter Visualization V13.2 (All versions < V13.2.0.12), Teamcenter Visua…

Fix: 13.2.0.12 / 13.3.0.8+
Fix from $1,950 2022-12-13
Jt2go HIGH 7.8
CVE-2022-41286

A vulnerability has been identified in JT2Go (All versions < V14.1.0.6), Teamcenter Visualization V13.2 (All versions < V13.2.0.12), Teamcenter Visua…

Fix: 13.2.0.12 / 13.3.0.8+
Fix from $1,950 2022-12-13
Apq8009 Firmware HIGH 7.5
CVE-2022-33235

Information disclosure due to buffer over-read in WLAN firmware while parsing security context info attributes. in Snapdragon Auto, Snapdragon Comput…

Mitigation only
Fix from $1,950 2022-12-13
Apq8009 Firmware HIGH 8.1
CVE-2022-33268

Information disclosure due to buffer over-read in Bluetooth HOST while pairing and connecting A2DP. in Snapdragon Auto, Snapdragon Compute, Snapdrago…

Patch available
Fix from $1,950 2022-12-13
Android CRITICAL 9.8
CVE-2022-20473EPSS 9%

In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote code exec…

Patch available
Fix from $2,300 2022-12-13
Android MEDIUM 6.5
CVE-2022-20468

In BNEP_ConnectResp of bnep_api.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information dis…

Mitigation only
Fix from $1,600 2022-12-13
Android MEDIUM 5.5
CVE-2022-20471

In SendIncDecRestoreCmdPart2 of NxpMfcReader.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local infor…

Mitigation only
Fix from $1,600 2022-12-13
Android CRITICAL 9.8
CVE-2022-20472EPSS 7%

In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote code exec…

Patch available
Fix from $2,300 2022-12-13
Linux Loader MEDIUM 5.5
CVE-2022-23523

In versions prior to 0.8.1, the linux-loader crate uses the offsets and sizes provided in the ELF headers to determine the offsets to read from. If t…

Fix: 0.8.1+
Fix from $1,600 2022-12-13
Apex One MEDIUM 5.5
CVE-2022-44647

An Out-of-bounds read vulnerability in Trend Micro Apex One and Apex One as a Service could allow a local attacker to disclose sensitive information …

Fix: 14.0.11789+
Fix from $1,600 2022-12-12
Apex One MEDIUM 5.5
CVE-2022-44648

An Out-of-bounds read vulnerability in Trend Micro Apex One and Apex One as a Service could allow a local attacker to disclose sensitive information …

Fix: 14.0.11789+
Fix from $1,600 2022-12-12
Ata 190 Firmware MEDIUM 5.3
CVE-2022-20688

A vulnerability in the Cisco Discovery Protocol functionality of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an unauthenticate…

Fix: 11.2.2 / 12.0.1+
Fix from $1,600 2022-12-12
Debian Linux CRITICAL 9.1
CVE-2022-23493

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.1
CVE-2022-23481

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.1
CVE-2022-23482

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.1
CVE-2022-23483

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Paddlepaddle CRITICAL 9.1
CVE-2022-46741

Out-of-bounds read in gather_tree in PaddlePaddle before 2.4. 

Fix: 2.4+
Fix from $2,300 2022-12-07