Vulnerability index

Browse CVEs

8,423 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Chrome HIGH 8.8
CVE-2026-13033

Out of bounds read and write in Blink>InterestGroups in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code via…

Fix: 149.0.7827.197+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.1
CVE-2026-53076

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix OOB in pcpu_init_value An out-of-bounds read occurs when copying eleme…

Fix: 5.5 / 5.10+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-53078

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix same-register dst/src OOB read and pointer leak in sock_ops When a BPF…

Fix: 5.5 / 5.8+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.1
CVE-2026-53044

In the Linux kernel, the following vulnerability has been resolved: soc/tegra: cbb: Fix incorrect ARRAY_SIZE in fabric lookup tables Fix incorrect …

Fix: 6.18.33 / 7.0.10+
Fix from $1,950 2026-06-24
Linux Kernel MEDIUM 5.5
CVE-2026-53038

In the Linux kernel, the following vulnerability has been resolved: ima_fs: Correctly create securityfs files for unsupported hash algos ima_tpm_ch…

Fix: 6.12.91 / 6.18.33+
Fix from $1,600 2026-06-24
Linux Kernel CRITICAL 9.1
CVE-2026-52999

In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix out-of-bounds read on option matching In nf_osf_m…

Fix: 4.20 / 5.0+
Fix from $2,300 2026-06-24
Linux Kernel HIGH 8.1
CVE-2026-52967

In the Linux kernel, the following vulnerability has been resolved: smb/client: fix possible infinite loop and oob read in symlink_data() On 32-bit…

Fix: 6.1.175 / 6.6.141+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.1
CVE-2026-52968

In the Linux kernel, the following vulnerability has been resolved: KVM: s390: pci: fix GAIT table indexing due to double-scaling pointer arithmetic…

Fix: 6.1.175 / 6.6.141+
Fix from $1,950 2026-06-24
Linux Kernel CRITICAL 9.1
CVE-2026-52958

In the Linux kernel, the following vulnerability has been resolved: libceph: Fix potential out-of-bounds access in osdmap_decode() When decoding os…

Fix: 5.10.258 / 5.15.209+
Fix from $2,300 2026-06-24
Linux Kernel HIGH 7.1
CVE-2026-52953

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix oops due to out of scope access Below oops triggers when kill Q…

Fix: 6.18.33 / 7.0.10+
Fix from $1,950 2026-06-24
Linux Kernel CRITICAL 9.8
CVE-2026-52955

In the Linux kernel, the following vulnerability has been resolved: libceph: Fix potential out-of-bounds access in crush_decode() A message of type…

Fix: 5.10.258 / 5.15.209+
Fix from $2,300 2026-06-24
Linux Kernel HIGH 7.5
CVE-2026-52956

In the Linux kernel, the following vulnerability has been resolved: libceph: Fix potential out-of-bounds access in __ceph_x_decrypt() In __ceph_x_d…

Fix: 4.10 / 7.0.10+
Fix from $1,950 2026-06-24
Imagemagick HIGH 7.8
CVE-2026-56370

ImageMagick before 7.1.2-19 contains an out-of-bounds access vulnerability in ConnectedComponentsImage() when processing connected-components artifac…

Fix: 6.9.13-44 / 7.1.2-19+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.1
CVE-2026-52942

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_log: validate MAC header was set before dumping it The fallback p…

Fix: 5.15.210 / 6.1.176+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52927

In the Linux kernel, the following vulnerability has been resolved: netfilter: ebtables: fix OOB read in compat_mtw_from_user Luxiao Xu says: The…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.1
CVE-2026-52917

In the Linux kernel, the following vulnerability has been resolved: sctp: diag: reject stale associations in dump_one path The SCTP exact sock_diag…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-24
Unclassified MEDIUM 6.5
CVE-2026-9539

An out-of-bounds heap read and integer underflow in the TCP urgent data handling (sosendoob) in freedesktop.org libslirp version before v4.9.2 on hyp…

Mitigation only
Fix from $1,600 2026-06-24
Acrobat Dc MEDIUM 5.5
CVE-2020-9711

Acrobat Reader versions 2020.009.20074, 2020.001.30002, 2017.011.30171, 2015.006.30523 and earlier are affected by an out-of-bounds read vulnerabilit…

Fix: after 20.009.20074
Fix from $1,600 2026-06-23
Acrobat Dc MEDIUM 5.5
CVE-2020-9713

Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier are affected…

Fix: after 20.009.20074
Fix from $1,600 2026-06-23
Enterprise Linux MEDIUM 5.3
CVE-2026-12969

An out-of-bounds read vulnerability exists in dnsmasq's find_soa() function in src/rfc1035.c. When parsing NS section records, extract_name() is call…

Fix: 2.93+
Fix from $1,600 2026-06-23
Zephyr MEDIUM 5.5
CVE-2026-10645

The Zephyr ext2 filesystem driver (subsys/fs/ext2) trusted the on-disk directory entry fields de_rec_len and de_name_len when walking a directory blo…

Fix: after 4.4.1
Fix from $1,600 2026-06-23
Zephyr HIGH 7.1
CVE-2026-10658

bt_iso_recv() in subsys/bluetooth/host/iso.c pulled the ISO SDU header (4 bytes) or, when the timestamp flag is set, the timestamped SDU header (8 by…

Fix: after 4.4.1
Fix from $1,950 2026-06-23
Messagepack HIGH 7.5
CVE-2026-48502

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePackReader.ReadDateTime() can allocate stack memory based o…

Fix: 2.5.301 / 3.1.7+
Fix from $1,950 2026-06-22
Imagemagick CRITICAL 9.1
CVE-2026-56367

ImageMagick before 7.1.2-15 and 6.9.x before 6.9.13-40 contains an integer overflow in the PSB (PSD v2) RLE decoding path (ReadPSDChannelRLE in coder…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-06-21
Imagemagick HIGH 8.2
CVE-2026-56378

ImageMagick before 7.1.2-15 (and 6.x before 6.9.13-40) contains a heap out-of-bounds read in the PCD coder's DecodeImage loop. A crafted PCD file can…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,950 2026-06-21
Unclassified CRITICAL 9.1
CVE-2026-9265

Crypt::OpenSSL::PKCS12 versions before 1.96 for Perl permits a heap OOB read in print_attribute UTF8STRING path. print_attribute() copies a UTF8STRI…

Patch available
Fix from $2,300 2026-06-20
Libheif MEDIUM 6.5
CVE-2026-49271

libheif is a HEIF and AVIF file format decoder and encoder. Prior to version 1.22.1, the uncompressed HEIF decoder validates explicit icef compressed…

Fix: 1.22.1+
Fix from $1,600 2026-06-19
Unclassified HIGH 7.1
CVE-2026-56210

A heap-buffer-overflow read vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds check in the SVC (Scalable Vi…

Mitigation only
Fix from $1,950 2026-06-19
Linux Kernel HIGH 7.8
CVE-2026-52910

In the Linux kernel, the following vulnerability has been resolved: bpf: Free reuseport cBPF prog after RCU grace period. Eulgyu Kim reported the s…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-19
Instrumentstudio HIGH 7.5
CVE-2026-48138

There is an out-of-bounds read vulnerability in the NI grpc-device streaming API due to a missing bounds check that may result in a denial of service…

Fix: 2.18.0+
Fix from $1,950 2026-06-19