Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Wakaama HIGH 7.5
CVE-2021-41040

In Eclipse Wakaama, ever since its inception until 2021-01-14, the CoAP parsing code does not properly sanitize network-received data.

Patch available
Fix from $1,950 2022-02-01
Fedora HIGH 7.1
CVE-2022-0393

Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.4233+
Fix from $1,950 2022-01-28
Enterprise Linux Server Update Services For Sap Solutions HIGH 7.8
CVE-2021-4034 KEVEPSS 95%

A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileg…

Patch available
Fix from $1,950 2022-01-28
Guicon MEDIUM 5.5
CVE-2021-22809

A CWE-125:Out-of-Bounds Read vulnerability exists that could cause unintended data disclosure when a malicious *.gd1 configuration file is loaded int…

Fix: after 2.0
Fix from $1,600 2022-01-28
Debian Linux CRITICAL 9.1
CVE-2022-23096

An issue was discovered in the DNS proxy in Connman through 1.40. The TCP server reply implementation lacks a check for the presence of sufficient He…

Fix: after 1.40
Fix from $2,300 2022-01-28
Debian Linux CRITICAL 9.1
CVE-2022-23097

An issue was discovered in the DNS proxy in Connman through 1.40. forward_dns_reply mishandles a strnlen call, leading to an out-of-bounds read.

Fix: after 1.40
Fix from $2,300 2022-01-28
Debian Linux CRITICAL 9.1
CVE-2022-21722

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, S…

Fix: after 2.11.1
Fix from $2,300 2022-01-27
Debian Linux CRITICAL 9.1
CVE-2022-21723

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, S…

Fix: 16.24.1 / 18.10.1+
Fix from $2,300 2022-01-27
Debian Linux HIGH 7.8
CVE-2022-0368

Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.4217 / 12.6+
Fix from $1,950 2022-01-26
Advance Steel HIGH 7.8
CVE-2021-40158

A maliciously crafted JT file in Autodesk Inventor 2022, 2021, 2020, 2019 and AutoCAD 2022 may be forced to read beyond allocated boundaries when par…

Fix: 2022.1.2+
Fix from $1,950 2022-01-25
Design Review HIGH 7.8
CVE-2021-40167EPSS 8%

A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access …

Mitigation only
Fix from $1,950 2022-01-25
Elfspirit HIGH 7.1
CVE-2022-21711

elfspirit is an ELF static analysis and injection framework that parses, manipulates, and camouflages ELF files. When analyzing the ELF file format i…

Fix: 1.1.0+
Fix from $1,950 2022-01-24
Genesis64 MEDIUM 5.5
CVE-2022-23130

Buffer Over-read vulnerability in Mitsubishi Electric MC Works64 versions 4.00A to 4.04E, Mitsubishi Electric GENESIS64 versions 10.97 and prior, Mit…

Fix: after 10.97
Fix from $1,600 2022-01-21
Ldns HIGH 7.5
CVE-2020-19861

When a zone file in ldns 1.7.1 is parsed, the function ldns_nsec3_salt_data is too trusted for the length value obtained from the zone file. When the…

No fix yet
Fix from $1,950 2022-01-21
Ldns MEDIUM 6.5
CVE-2020-19860

When ldns version 1.7.1 verifies a zone file, the ldns_rr_new_frm_str_internal function has a heap out of bounds read vulnerability. An attacker can …

Patch available
Fix from $1,600 2022-01-21
Debian Linux MEDIUM 5.5
CVE-2022-0319

Out-of-bounds Read in vim/vim prior to 8.2.

Fix: 8.2.4154 / 13.0+
Fix from $1,600 2022-01-21
Onionshare MEDIUM 5.5
CVE-2022-21688

OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network. Aff…

Fix: 2.5+
Fix from $1,600 2022-01-18
Shield Experience MEDIUM 6.7
CVE-2021-34402

NVIDIA Tegra kernel driver contains a vulnerability in NVIDIA NVDEC, where a user with high privileges might be able to read from or write to a memor…

Fix: 9.0+
Fix from $1,600 2022-01-18
Bridge MEDIUM 5.5
CVE-2021-45052

Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to discl…

Fix: 11.1.3+
Fix from $1,600 2022-01-14
Acrobat Dc HIGH 7.8
CVE-2021-45060EPSS 9%

Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an out-of-bounds read…

Fix: after 21.007.20099
Fix from $1,950 2022-01-14
Acrobat Dc MEDIUM 5.5
CVE-2021-44715EPSS 15%

Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an out-of-bounds read…

Fix: after 21.007.20099
Fix from $1,600 2022-01-14
Acrobat Dc MEDIUM 5.5
CVE-2021-44742EPSS 6%

Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an out-of-bounds read…

Fix: after 21.007.20099
Fix from $1,600 2022-01-14
Illustrator MEDIUM 5.5
CVE-2021-44700

Adobe Illustrator versions 25.4.2 (and earlier) and 26.0.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to discl…

Fix: after 25.4.2
Fix from $1,600 2022-01-14
Illustrator MEDIUM 5.5
CVE-2021-43752

Adobe Illustrator versions 25.4.2 (and earlier) and 26.0.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to discl…

Fix: after 25.4.2
Fix from $1,600 2022-01-14
Debian Linux HIGH 7.5
CVE-2022-20698

A vulnerability in the OOXML parsing module in Clam AntiVirus (ClamAV) Software version 0.104.1 and LTS version 0.103.4 and prior versions could allo…

Fix: 0.103.5 / 0.104.2+
Fix from $1,950 2022-01-14
Bentley View HIGH 7.8
CVE-2021-34942

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.75. User interaction is requir…

Fix: 10.16.02+
Fix from $1,950 2022-01-13
Bentley View HIGH 7.8
CVE-2021-34946

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.75. User interaction is requir…

Fix: 10.16.02+
Fix from $1,950 2022-01-13
Contextcapture Viewer MEDIUM 5.5
CVE-2021-34984

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley ContextCapture 10.18.0.232. User in…

Fix: after 10.18.00.236
Fix from $1,600 2022-01-13
Contextcapture Viewer MEDIUM 5.5
CVE-2021-34985

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley ContextCapture 10.18.0.232. User in…

Fix: after 10.18.00.236
Fix from $1,600 2022-01-13
Bentley View HIGH 7.8
CVE-2021-34927

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.75. User interaction is requir…

Fix: 10.16.02+
Fix from $1,950 2022-01-13