Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Apq8009 Firmware CRITICAL 9.1
CVE-2021-35083

Possible out of bound read due to improper validation of certificate chain in SSL or Internet key exchange in Snapdragon Auto, Snapdragon Compute, Sn…

Mitigation only
Fix from $2,300 2022-06-14
Aqt1000 Firmware HIGH 7.1
CVE-2021-35084

Possible out of bound read due to lack of length check of data length for a DIAG event in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivit…

Patch available
Fix from $1,950 2022-06-14
Aqt1000 Firmware HIGH 7.1
CVE-2021-35085

Possible buffer overflow due to lack of buffer length check during management frame Rx handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Co…

Patch available
Fix from $1,950 2022-06-14
Ar8035 Firmware HIGH 7.5
CVE-2021-35086

Possible buffer over read due to improper validation of SIB type when processing a NR system Information message in Snapdragon Auto, Snapdragon Compu…

Mitigation only
Fix from $1,950 2022-06-14
Apq8009w Firmware HIGH 7.5
CVE-2021-35100

Possible buffer over read due to improper calculation of string length while parsing Id3 tag in Snapdragon Auto, Snapdragon Compute, Snapdragon Conne…

Mitigation only
Fix from $1,950 2022-06-14
Aqt1000 Firmware MEDIUM 5.5
CVE-2021-35071

Possible buffer over read due to lack of size validation while copying data from DBR buffer to RX buffer and can lead to Denial of Service in Snapdra…

Patch available
Fix from $1,600 2022-06-14
V Server HIGH 7.8
CVE-2022-29506

Out-of-bounds read vulnerability exist in the simulator module contained in the graphic editor 'V-SFT' v6.1.3.0 and earlier, which may allow an attac…

Fix: 4.0.12.0 / 4.0.13.0a+
Fix from $1,950 2022-06-14
Emui HIGH 7.5
CVE-2021-46814

The video framework has an out-of-bounds memory read/write vulnerability. Successful exploitation of this vulnerability may affect system availabilit…

Mitigation only
Fix from $1,950 2022-06-13
Security MEDIUM 5.5
CVE-2022-30702

Trend Micro Security 2022 and 2021 (Consumer) is vulnerable to an Out-Of-Bounds Read Information Disclosure vulnerability that could allow an attacke…

Mitigation only
Fix from $1,600 2022-06-09
Istio CRITICAL 9.8
CVE-2022-31045

Istio is an open platform to connect, manage, and secure microservices. In affected versions ill-formed headers sent to Envoy in certain configuratio…

Fix: 1.12.8 / 1.13.5+
Fix from $2,300 2022-06-09
HTTP Server MEDIUM 5.3
CVE-2022-28330

Apache HTTP Server 2.4.53 and earlier on Windows may read beyond bounds when configured to process requests with the mod_isapi module.

Fix: after 2.4.53
Fix from $1,600 2022-06-09
Miui HIGH 7.5
CVE-2020-14125EPSS 7%

A denial of service vulnerability exists in some Xiaomi models of phones. The vulnerability is caused by out-of-bound read/write and can be exploited…

Fix: 2022.01.26+
Fix from $1,950 2022-06-08
Libmobi HIGH 8.1
CVE-2022-1987

Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.

Fix: 0.11+
Fix from $1,950 2022-06-03
Libdwarf HIGH 7.8
CVE-2022-32200

libdwarf 0.4.0 has a heap-based buffer over-read in _dwarf_check_string_valid in dwarf_util.c.

Patch available
Fix from $1,950 2022-06-02
Libjpeg MEDIUM 6.5
CVE-2022-31796

libjpeg 1.63 has a heap-based buffer over-read in HierarchicalBitmapRequester::FetchRegion in hierarchicalbitmaprequester.cpp because the MCU size ca…

Patch available
Fix from $1,600 2022-06-02
Cscape HIGH 7.8
CVE-2022-29488

The affected product is vulnerable to an out-of-bounds read via uninitialized pointer, which may allow an attacker to execute arbitrary code.

Fix: 9.90+
Fix from $1,950 2022-06-02
HTTP Server HIGH 7.5
CVE-2020-26185

Dell BSAFE Micro Edition Suite, versions prior to 4.5.1, contain a Buffer Over-Read Vulnerability.

Fix: 4.5.1+
Fix from $1,950 2022-06-01
Debian Linux HIGH 7.5
CVE-2022-31001

Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, an attacker can send a message with evil s…

Fix: 1.13.8+
Fix from $1,950 2022-05-31
Debian Linux HIGH 7.5
CVE-2022-31002

Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, an attacker can send a message with evil s…

Fix: 1.13.8+
Fix from $1,950 2022-05-31
Fedora HIGH 7.8
CVE-2022-1927

Buffer Over-read in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.5037 / 13.0+
Fix from $1,950 2022-05-29
Libmobi HIGH 8.1
CVE-2022-1907

Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.

Fix: 0.11+
Fix from $1,950 2022-05-27
Libmobi HIGH 8.1
CVE-2022-1908

Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.

Fix: 0.11+
Fix from $1,950 2022-05-27
Mac Os X HIGH 7.8
CVE-2022-26770

An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12…

Fix: 10.15.7 / 11.6.6+
Fix from $1,950 2022-05-26
macOS HIGH 7.8
CVE-2022-26718

An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.4, macOS Big Sur 11.6.6. An applic…

Fix: 11.6.6 / 12.4+
Fix from $1,950 2022-05-26
Mac Os X HIGH 7.1
CVE-2022-26697

An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12…

Fix: 10.15.7 / 11.6.6+
Fix from $1,950 2022-05-26
Mac Os X HIGH 7.1
CVE-2022-26698

An out-of-bounds read issue was addressed with improved bounds checking. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.…

Fix: 10.15.7 / 11.6.6+
Fix from $1,950 2022-05-26
Mac Os X MEDIUM 5.5
CVE-2022-22674 KEV

An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fix…

Fix: 10.15.7 / 11.6.6+
Fix from $1,600 2022-05-26
Radare2 CRITICAL 9.1
CVE-2022-1899

Out-of-bounds Read in GitHub repository radareorg/radare2 prior to 5.7.0.

Fix: 5.7.0+
Fix from $2,300 2022-05-26
Fedora HIGH 7.8
CVE-2022-1851

Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.5013 / 13.0+
Fix from $1,950 2022-05-25
Gpac HIGH 7.1
CVE-2022-30976

GPAC 2.0.0 misuses a certain Unicode utf8_wcslen (renamed gf_utf8_wcslen) function in utils/utf.c, resulting in a heap-based buffer over-read, as dem…

Patch available
Fix from $1,950 2022-05-18