Vulnerability index

Browse CVEs

8,440 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Linux Kernel HIGH 7.1
CVE-2026-52942

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_log: validate MAC header was set before dumping it The fallback p…

Fix: 5.15.210 / 6.1.176+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52927

In the Linux kernel, the following vulnerability has been resolved: netfilter: ebtables: fix OOB read in compat_mtw_from_user Luxiao Xu says: The…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.1
CVE-2026-52917

In the Linux kernel, the following vulnerability has been resolved: sctp: diag: reject stale associations in dump_one path The SCTP exact sock_diag…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-24
Unclassified MEDIUM 6.5
CVE-2026-9539

An out-of-bounds heap read and integer underflow in the TCP urgent data handling (sosendoob) in freedesktop.org libslirp version before v4.9.2 on hyp…

Mitigation only
Fix from $1,600 2026-06-24
Acrobat Dc MEDIUM 5.5
CVE-2020-9711

Acrobat Reader versions 2020.009.20074, 2020.001.30002, 2017.011.30171, 2015.006.30523 and earlier are affected by an out-of-bounds read vulnerabilit…

Fix: after 20.009.20074
Fix from $1,600 2026-06-23
Acrobat Dc MEDIUM 5.5
CVE-2020-9713

Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier are affected…

Fix: after 20.009.20074
Fix from $1,600 2026-06-23
Enterprise Linux MEDIUM 5.3
CVE-2026-12969

An out-of-bounds read vulnerability exists in dnsmasq's find_soa() function in src/rfc1035.c. When parsing NS section records, extract_name() is call…

Fix: 2.93+
Fix from $1,600 2026-06-23
Zephyr MEDIUM 5.5
CVE-2026-10645

The Zephyr ext2 filesystem driver (subsys/fs/ext2) trusted the on-disk directory entry fields de_rec_len and de_name_len when walking a directory blo…

Fix: after 4.4.1
Fix from $1,600 2026-06-23
Zephyr HIGH 7.1
CVE-2026-10658

bt_iso_recv() in subsys/bluetooth/host/iso.c pulled the ISO SDU header (4 bytes) or, when the timestamp flag is set, the timestamped SDU header (8 by…

Fix: after 4.4.1
Fix from $1,950 2026-06-23
Messagepack HIGH 7.5
CVE-2026-48502

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePackReader.ReadDateTime() can allocate stack memory based o…

Fix: 2.5.301 / 3.1.7+
Fix from $1,950 2026-06-22
Imagemagick CRITICAL 9.1
CVE-2026-56367

ImageMagick before 7.1.2-15 and 6.9.x before 6.9.13-40 contains an integer overflow in the PSB (PSD v2) RLE decoding path (ReadPSDChannelRLE in coder…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-06-21
Imagemagick HIGH 8.2
CVE-2026-56378

ImageMagick before 7.1.2-15 (and 6.x before 6.9.13-40) contains a heap out-of-bounds read in the PCD coder's DecodeImage loop. A crafted PCD file can…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,950 2026-06-21
Unclassified CRITICAL 9.1
CVE-2026-9265

Crypt::OpenSSL::PKCS12 versions before 1.96 for Perl permits a heap OOB read in print_attribute UTF8STRING path. print_attribute() copies a UTF8STRI…

Patch available
Fix from $2,300 2026-06-20
Libheif MEDIUM 6.5
CVE-2026-49271

libheif is a HEIF and AVIF file format decoder and encoder. Prior to version 1.22.1, the uncompressed HEIF decoder validates explicit icef compressed…

Fix: 1.22.1+
Fix from $1,600 2026-06-19
Unclassified HIGH 7.1
CVE-2026-56210

A heap-buffer-overflow read vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds check in the SVC (Scalable Vi…

Mitigation only
Fix from $1,950 2026-06-19
Linux Kernel HIGH 7.8
CVE-2026-52910

In the Linux kernel, the following vulnerability has been resolved: bpf: Free reuseport cBPF prog after RCU grace period. Eulgyu Kim reported the s…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-19
Instrumentstudio HIGH 7.5
CVE-2026-48138

There is an out-of-bounds read vulnerability in the NI grpc-device streaming API due to a missing bounds check that may result in a denial of service…

Fix: 2.18.0+
Fix from $1,950 2026-06-19
Heif Image Extension CRITICAL 9.1
CVE-2025-62821

Microsoft HEIF Image Extensions 1.2.22.0 has an out-of-bounds read because CHEIFItemInfoEntry_GetDataSize can return success while leaving the report…

No fix yet
Fix from $2,300 2026-06-19
Openexr MEDIUM 6.5
CVE-2026-45696

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions 3.4.0 thr…

Fix: 3.4.12+
Fix from $1,600 2026-06-18
Libssh2 MEDIUM 6.5
CVE-2025-15661

libssh2 through 1.11.1, fixed in commit 2dae302, contains an out-of-bounds heap read vulnerability in the sftp_symlink() function in src/sftp.c that …

Fix: after 1.11.1
Fix from $1,600 2026-06-18
OpenBSD MEDIUM 5.3
CVE-2026-56099

OpenBSD before commit 6a23123 (2026-06-18) contains an out-of-bounds read vulnerability in the mpls_do_error function within sys/netmpls/mpls_input.c…

Fix: 2026-06-18+
Fix from $1,600 2026-06-18
Unclassified MEDIUM 5.1
CVE-2026-50643

8cc is vulnerable to an Out‑of‑Bounds Read due to improper handling of #line directives and GNU linemarkers. The compiler accepts attacker-controlled…

Mitigation only
Fix from $1,600 2026-06-18
Connext Professional CRITICAL 9.1
CVE-2026-3894

Out-of-bounds Read vulnerability in RTI Connext Professional (Core Libraries) allows Overread Buffers.This issue affects Connext Professional: from 7…

Fix: 7.7.0+
Fix from $2,300 2026-06-17
Connext Micro HIGH 8.2
CVE-2026-30802

Out-of-bounds Read vulnerability in RTI Connext Micro (Core Libraries) allows Overread Buffers.This issue affects Connext Micro: from 4.0.0 before 4.…

Fix: 4.3.0+
Fix from $1,950 2026-06-17
Chrome MEDIUM 6.5
CVE-2026-12461

Out of bounds read in WebRTC in Google Chrome on Windows prior to 149.0.7827.155 allowed a remote attacker to obtain potentially sensitive informatio…

Fix: 149.0.7827.155+
Fix from $1,600 2026-06-17
Chrome MEDIUM 5.5
CVE-2026-12444

Out of bounds read in Chromoting in Google Chrome on Windows prior to 149.0.7827.155 allowed a local attacker to obtain potentially sensitive informa…

Fix: 149.0.7827.155+
Fix from $1,600 2026-06-17
Android MEDIUM 5.7
CVE-2026-0165

In several functions of the RTCP packet decoder, there is a possible out-of-bounds read due to a missing bounds check. This could lead to remote info…

Mitigation only
Fix from $1,600 2026-06-16
Android HIGH 7.8
CVE-2026-0135

In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote code execution with no additional execution…

Mitigation only
Fix from $1,950 2026-06-16
Android MEDIUM 6.5
CVE-2026-0136

In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service with no additional execut…

Mitigation only
Fix from $1,600 2026-06-16
Android MEDIUM 6.5
CVE-2026-0127

In NrmmMsgCodec::DecodeUPUTransparentContext of cn_NrmmDecoder.cpp, there is a possible out-of-bounds read due to memory corruption. This could lead …

No fix yet
Fix from $1,600 2026-06-16