Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Tensorflow CRITICAL 9.1
CVE-2022-41902

TensorFlow is an open source platform for machine learning. The function MakeGrapplerFunctionItem takes arguments that determine the sizes of inputs …

Fix: 2.8.4 / 2.9.3+
Fix from $2,300 2022-12-06
Tensorflow CRITICAL 9.1
CVE-2022-41910

TensorFlow is an open source platform for machine learning. The function MakeGrapplerFunctionItem takes arguments that determine the sizes of inputs …

Fix: 2.8.4 / 2.9.3+
Fix from $2,300 2022-12-06
Android MEDIUM 5.5
CVE-2022-42779

In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2022-12-06
Android MEDIUM 5.5
CVE-2022-42780

In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2022-12-06
Android MEDIUM 5.5
CVE-2022-42781

In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

Mitigation only
Fix from $1,600 2022-12-06
Android MEDIUM 5.5
CVE-2022-42773

In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2022-12-06
Android MEDIUM 5.5
CVE-2022-42774

In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2022-12-06
Android MEDIUM 5.5
CVE-2022-42761

In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2022-12-06
Android MEDIUM 5.5
CVE-2022-42762

In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

Mitigation only
Fix from $1,600 2022-12-06
Android MEDIUM 5.5
CVE-2022-42759

In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2022-12-06
Android MEDIUM 5.5
CVE-2022-39130

In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.

Mitigation only
Fix from $1,600 2022-12-06
Curl MEDIUM 6.5
CVE-2022-35260

curl can be told to parse a `.netrc` file for credentials. If that file endsin a line with 4095 consecutive non-white space letters and no newline, c…

Fix: 7.86.0 / 8.2.12+
Fix from $1,600 2022-12-05
Routeros CRITICAL 9.8
CVE-2022-45315

Mikrotik RouterOs before stable v7.6 was discovered to contain an out-of-bounds read in the snmp process. This vulnerability allows authenticated att…

Fix: 7.6+
Fix from $2,300 2022-12-05
Routeros HIGH 8.8
CVE-2022-45313

Mikrotik RouterOs before stable v7.5 was discovered to contain an out-of-bounds read in the hotspot process. This vulnerability allows attackers to e…

Fix: 7.5+
Fix from $1,950 2022-12-05
Capnp MEDIUM 5.4
CVE-2022-46149

Cap'n Proto is a data interchange format and remote procedure call (RPC) system. Cap'n Proro prior to versions 0.7.1, 0.8.1, 0.9.2, and 0.10.3, as we…

Fix: 0.7.1 / 0.9.2+
Fix from $1,600 2022-11-30
Fedora MEDIUM 6.5
CVE-2022-4144

An out-of-bounds read flaw was found in the QXL display device emulation in QEMU. The qxl_phys2virt() function does not check the size of the structu…

Fix: after 7.1.0
Fix from $1,600 2022-11-29
Drachtio Server CRITICAL 9.1
CVE-2022-45909

drachtio-server before 0.8.19 has a heap-based buffer over-read via a long Request-URI in an INVITE request.

Fix: 0.8.19+
Fix from $2,300 2022-11-26
Gpu Display Driver HIGH 7.8
CVE-2022-31617

NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where a local user with basic capabilities ca…

Fix: 11.8 / 13.3+
Fix from $1,950 2022-11-19
Gpu Display Driver HIGH 7.1
CVE-2022-31616

NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where a local user …

Fix: 11.8 / 13.3+
Fix from $1,950 2022-11-19
Gpu Display Driver HIGH 7.1
CVE-2022-31612

NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where a local user …

Fix: 11.8 / 13.3+
Fix from $1,950 2022-11-19
Tensorflow CRITICAL 9.8
CVE-2022-41900

TensorFlow is an open source platform for machine learning. The security vulnerability results in FractionalMax(AVG)Pool with illegal pooling_ratio. …

Fix: 2.8.4 / 2.9.3+
Fix from $2,300 2022-11-18
Tensorflow HIGH 7.5
CVE-2022-41897

TensorFlow is an open source platform for machine learning. If `FractionMaxPoolGrad` is given outsize inputs `row_pooling_sequence` and `col_pooling_…

Fix: 2.8.4 / 2.9.3+
Fix from $1,950 2022-11-18
Tensorflow HIGH 7.5
CVE-2022-41895

TensorFlow is an open source platform for machine learning. If `MirrorPadGrad` is given outsize input `paddings`, TensorFlow will give a heap OOB err…

Fix: 2.8.4 / 2.9.3+
Fix from $1,950 2022-11-18
Tensorflow CRITICAL 9.1
CVE-2022-41880

TensorFlow is an open source platform for machine learning. When the `BaseCandidateSamplerOp` function receives a value in `true_classes` larger than…

Fix: 2.8.4 / 2.9.3+
Fix from $2,300 2022-11-18
Tensorflow HIGH 7.5
CVE-2022-41883

TensorFlow is an open source platform for machine learning. When ops that have specified input sizes receive a differing number of inputs, the execut…

Patch available
Fix from $1,950 2022-11-18
Fedora MEDIUM 5.7
CVE-2022-39316

FreeRDP is a free remote desktop protocol library and clients. In affected versions there is an out of bound read in ZGFX decoder component of FreeRD…

Fix: 2.9.0+
Fix from $1,600 2022-11-16
Automationworx Software Suite HIGH 7.8
CVE-2022-3737

In PHOENIX CONTACT Automationworx Software Suite up to version 1.89 memory can be read beyond the intended scope due to insufficient validation of in…

Mitigation only
Fix from $1,950 2022-11-15
Ar8035 Firmware HIGH 7.5
CVE-2022-33236

Transient DOS due to buffer over-read in WLAN firmware while parsing cipher suite info attributes. in Snapdragon Compute, Snapdragon Connectivity, Sn…

Mitigation only
Fix from $1,950 2022-11-15
Aqt1000 Firmware HIGH 7.5
CVE-2022-33237

Transient DOS due to buffer over-read in WLAN firmware while processing PPE threshold. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivit…

Mitigation only
Fix from $1,950 2022-11-15
Aqt1000 Firmware MEDIUM 5.5
CVE-2022-25676

Information disclosure in video due to buffer over-read while parsing avi files in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snap…

Mitigation only
Fix from $1,600 2022-11-15