Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Debian Linux MEDIUM 5.5
CVE-2020-35532

In LibRaw, an out-of-bounds read vulnerability exists within the "simple_decode_row()" function (libraw\src\x3f\x3f_utils_patched.cpp) which can be t…

Patch available
Fix from $1,600 2022-09-01
Debian Linux MEDIUM 5.5
CVE-2020-35533

In LibRaw, an out-of-bounds read vulnerability exists within the "LibRaw::adobe_copy_pixel()" function (libraw\src\decoders\dng.cpp) when reading dat…

Patch available
Fix from $1,600 2022-09-01
Contiki Ng HIGH 8.8
CVE-2022-36052

Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. The 6LoWPAN implementation in Contiki-NG may cast a UD…

Fix: 4.8+
Fix from $1,950 2022-09-01
Contiki Ng HIGH 8.8
CVE-2022-36053

Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. The low-power IPv6 network stack of Contiki-NG has a b…

Fix: 4.8+
Fix from $1,950 2022-09-01
Fedora MEDIUM 5.5
CVE-2022-1354

A heap buffer overflow flaw was found in Libtiffs' tiffinfo.c in TIFFReadRawDataStriped() function. This flaw allows an attacker to pass a crafted TI…

Fix: 4.4.0+
Fix from $1,600 2022-08-31
Cncsoft HIGH 7.1
CVE-2022-1404

Delta Electronics CNCSoft (All versions prior to 1.01.32) does not properly sanitize input while processing a specific project file, allowing a possi…

Fix: 1.01.32+
Fix from $1,950 2022-08-31
Linux Kernel MEDIUM 6.1
CVE-2022-1508

An out-of-bounds read flaw was found in the Linux kernel’s io_uring module in the way a user triggers the io_read() function with some special parame…

Fix: 5.15+
Fix from $1,600 2022-08-31
Debian Linux MEDIUM 5.5
CVE-2022-2953

LibTIFF 4.4.0 has an out-of-bounds read in extractImageSection in tools/tiffcrop.c:6905, allowing attackers to cause a denial-of-service via a crafte…

Fix: after 4.4.0
Fix from $1,600 2022-08-29
Imagemagick HIGH 7.1
CVE-2022-0284

A heap-based-buffer-over-read flaw was found in ImageMagick's GetPixelAlpha() function of 'pixel-accessor.h'. This vulnerability is triggered when an…

Fix: 7.1.0-20+
Fix from $1,950 2022-08-29
Linux Kernel HIGH 7.5
CVE-2022-0400

An out-of-bounds read vulnerability was discovered in linux kernel in the smc protocol stack, causing remote dos.

Mitigation only
Fix from $1,950 2022-08-29
Openscad MEDIUM 5.5
CVE-2022-0496

A vulnerbiility was found in Openscad, where a DXF-format drawing with particular (not necessarily malformed!) properties may cause an out-of-bounds …

Fix: 2022-02-04+
Fix from $1,600 2022-08-29
Openscad HIGH 7.1
CVE-2022-0497

A vulnerbiility was found in Openscad, where a .scad file with no trailing newline could cause an out-of-bounds read during parsing of annotations.

Fix: 2022-01-09+
Fix from $1,950 2022-08-29
Tcpdump CRITICAL 9.1
CVE-2019-15167

The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 3, a different vulnerability than CVE-20…

Fix: 4.9.3+
Fix from $2,300 2022-08-27
Upx HIGH 7.8
CVE-2020-27796

A heap-based buffer over-read was discovered in the invert_pt_dynamic function in p_lx_elf.cpp in UPX 4.0.0 via a crafted Mach-O file.

No fix yet
Fix from $1,950 2022-08-25
Upx HIGH 7.8
CVE-2020-27799

A heap-based buffer over-read was discovered in the acc_ua_get_be32 function in miniacc.h in UPX 4.0.0 via a crafted Mach-O file.

No fix yet
Fix from $1,950 2022-08-25
Upx HIGH 7.8
CVE-2020-27800

A heap-based buffer over-read was discovered in the get_le32 function in bele.h in UPX 4.0.0 via a crafted Mach-O file.

No fix yet
Fix from $1,950 2022-08-25
Upx HIGH 7.8
CVE-2020-27801

A heap-based buffer over-read was discovered in the get_le64 function in bele.h in UPX 4.0.0 via a crafted Mach-O file.

No fix yet
Fix from $1,950 2022-08-25
Nexus 3016 Firmware HIGH 8.6
CVE-2022-20823

A vulnerability in the OSPF version 3 (OSPFv3) feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of s…

Mitigation only
Fix from $1,950 2022-08-25
Samba HIGH 8.1
CVE-2022-32745

A flaw was found in Samba. Samba AD users can cause the server to access uninitialized data with an LDAP add or modify the request, usually resulting…

Fix: 4.14.14 / 4.15.9+
Fix from $1,950 2022-08-25
Glibc HIGH 7.5
CVE-2021-3998

A flaw was found in glibc. The realpath() function can mistakenly return an unexpected value, potentially leading to information leakage and disclosu…

Fix: 2.35+
Fix from $1,950 2022-08-24
Fedora HIGH 7.5
CVE-2021-3839

A flaw was found in the vhost library in DPDK. Function vhost_user_set_inflight_fd() does not validate `msg->payload.inflight.num_queues`, possibly c…

Fix: 22.03+
Fix from $1,950 2022-08-23
Hdf5 HIGH 7.8
CVE-2022-25942

An out-of-bounds read vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code ex…

No fix yet
Fix from $1,950 2022-08-22
Qt HIGH 7.1
CVE-2021-3481

A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadialFetchSimd in qt/qtbase/src/gui/painting/qdrawhelper_p.h in Qt/Qtbase.…

No fix yet
Fix from $1,950 2022-08-22
Wireless Ac 9560 Firmware MEDIUM 6.5
CVE-2021-23168

Out of bounds read for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi products may allow an unauthenticated user to potentially enable denial…

Fix: 3.1122.1105 / 22.120+
Fix from $1,600 2022-08-18
Wi Fi 6 Ax411 Firmware HIGH 7.1
CVE-2021-23179

Out of bounds read in firmware for some Intel(R) Wireless Bluetooth(R) and Killer(TM) Bluetooth(R) products before version 22.120 may allow a privile…

Fix: 22.120+
Fix from $1,950 2022-08-18
Killer Ac 1550 Firmware MEDIUM 5.5
CVE-2021-26254

Out of bounds read for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi products may allow a privileged user to potentially enable denial of se…

Fix: 3.1122.1105 / 22.120+
Fix from $1,600 2022-08-18
Wi Fi 6 Ax411 Firmware MEDIUM 5.5
CVE-2021-26950

Out of bounds read in firmware for some Intel(R) Wireless Bluetooth(R) and Killer(TM) Bluetooth(R) products before version 22.120 may allow an authen…

Fix: 22.120+
Fix from $1,600 2022-08-18
Upx MEDIUM 5.5
CVE-2020-27788

An out-of-bounds read access vulnerability was discovered in UPX in PackLinuxElf64::canPack() function of p_lx_elf.cpp file. An attacker with a craft…

Fix: 3.96+
Fix from $1,600 2022-08-18
Fedora MEDIUM 5.5
CVE-2022-2867

libtiff's tiffcrop utility has a uint32_t underflow that can lead to out of bounds read and write. An attacker who supplies a crafted file to tiffcro…

Fix: 4.4.0+
Fix from $1,600 2022-08-17
Fedora MEDIUM 5.5
CVE-2022-2869

libtiff's tiffcrop tool has a uint32_t underflow which leads to out of bounds read and write in the extractContigSamples8bits routine. An attacker wh…

Fix: 4.4.0+
Fix from $1,600 2022-08-17