Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Tensorflow HIGH 7.1
CVE-2021-29590

TensorFlow is an end-to-end open source platform for machine learning. The implementations of the `Minimum` and `Maximum` TFLite operators can be use…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29551

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `MatrixTriangularSolve`(https://github.com/tensorflow/te…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Tensorflow HIGH 7.1
CVE-2021-29553

TensorFlow is an end-to-end open source platform for machine learning. An attacker can read data outside of bounds of heap allocated buffer in `tf.ra…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.1
CVE-2021-29559

TensorFlow is an end-to-end open source platform for machine learning. An attacker can access data outside of bounds of heap allocated array in `tf.r…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.1
CVE-2021-29560

TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a heap buffer overflow in `tf.raw_ops.RaggedTensorToTens…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.1
CVE-2021-29569

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.MaxPoolGradWithArgmax` can cause reads outsi…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.1
CVE-2021-29570

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.MaxPoolGradWithArgmax` can cause reads outsi…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.1
CVE-2021-29532

TensorFlow is an end-to-end open source platform for machine learning. An attacker can force accesses outside the bounds of heap allocated arrays by …

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29547

TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a segfault and denial of service via accessing data outs…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Enterprise Linux MEDIUM 6.0
CVE-2021-20221

An out-of-bounds heap buffer access issue was found in the ARM Generic Interrupt Controller emulator of QEMU up to and including qemu 4.2.0on aarch64…

Fix: after 4.2.0
Fix from $1,600 2021-05-13
Fedora MEDIUM 6.5
CVE-2020-25713

A malformed input file can lead to a segfault due to an out of bounds array access in raptor_xml_writer_start_element_common.

Patch available
Fix from $1,600 2021-05-13
Enterprise Linux MEDIUM 5.5
CVE-2020-27824

A flaw was found in OpenJPEG’s encoder in the opj_dwt_calc_explicit_stepsizes() function. This flaw allows an attacker who can supply crafted input t…

Fix: 2.4.0+
Fix from $1,600 2021-05-13
Debian Linux HIGH 7.5
CVE-2020-27840

A flaw was found in samba. Spaces used in a string around a domain name (DN), while supposed to be ignored, can cause invalid DN strings with spaces …

Fix: 4.12.13 / 4.13.6+
Fix from $1,950 2021-05-12
Debian Linux HIGH 7.5
CVE-2021-20277

A flaw was found in Samba's libldb. Multiple, consecutive leading spaces in an LDAP attribute can lead to an out-of-bounds memory write, leading to a…

Fix: 4.12.13 / 4.13.6+
Fix from $1,950 2021-05-12
Hivex MEDIUM 5.4
CVE-2021-3504

A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attack…

Fix: 1.3.20+
Fix from $1,600 2021-05-11
365 Apps MEDIUM 5.5
CVE-2021-31174

Microsoft Excel Information Disclosure Vulnerability

Patch available
Fix from $1,600 2021-05-11
Vport 06ec 2v26m Firmware CRITICAL 9.1
CVE-2021-25847

Improper validation of the length field of LLDP-MED TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows information …

Fix: after 1.1
Fix from $2,300 2021-05-10
Vport 06ec 2v26m Firmware CRITICAL 9.1
CVE-2021-25848

Improper validation of the length field of LLDP-MED TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows information …

Fix: after 1.1
Fix from $2,300 2021-05-10
3d HIGH 7.8
CVE-2021-31466

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.3.37598. User interaction is requ…

Fix: after 10.1.3.37598
Fix from $1,950 2021-05-07
3d HIGH 7.8
CVE-2021-31468

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.3.37598. User interaction is requ…

Fix: after 10.1.3.37598
Fix from $1,950 2021-05-07
3d MEDIUM 5.5
CVE-2021-31471

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Reader 10.1.1.37576. User interaction…

Fix: after 10.0.1.37598
Fix from $1,600 2021-05-07
Apq8017 Firmware MEDIUM 6.0
CVE-2020-11293

Out of bound read can happen in Widevine TA while copying data to buffer from user data due to lack of check of buffer length received in Snapdragon …

Mitigation only
Fix from $1,600 2021-05-07
Apq8009 Firmware CRITICAL 9.1
CVE-2020-11285

Buffer over-read while unpacking the RTCP packet we may read extra byte if wrong length is provided in RTCP packets in Snapdragon Auto, Snapdragon Co…

Mitigation only
Fix from $2,300 2021-05-07
Linux Kernel HIGH 7.8
CVE-2020-35519

An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25.c in the Linux kernel version v5.12-rc5. A bounds check failure all…

Fix: 4.4.248 / 4.9.248+
Fix from $1,950 2021-05-06
Exim HIGH 7.5
CVE-2020-28023

Exim 4 before 4.94.2 allows Out-of-bounds Read. smtp_setup_msg may disclose sensitive information from process memory to an unauthenticated SMTP clie…

Fix: 4.94.2+
Fix from $1,950 2021-05-06
Exim HIGH 7.5
CVE-2020-28025

Exim 4 before 4.94.2 allows Out-of-bounds Read because pdkim_finish_bodyhash does not validate the relationship between sig->bodyhash.len and b->bh.l…

Fix: 4.94.2+
Fix from $1,950 2021-05-06
Mutt CRITICAL 9.1
CVE-2021-32055

Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bound…

Fix: 2.0.7+
Fix from $2,300 2021-05-05
Fedora MEDIUM 6.8
CVE-2021-20254

A flaw was found in samba. The Samba smbd file server must map Windows group identities (SIDs) into unix group ids (gids). The code that performs thi…

Fix: 4.12.15 / 4.13.8+
Fix from $1,600 2021-05-05
Fedora MEDIUM 5.5
CVE-2021-29463

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was …

Fix: 0.27.4+
Fix from $1,600 2021-04-30
Parallels Desktop MEDIUM 6.0
CVE-2021-31430

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309. An attacker …

Mitigation only
Fix from $1,600 2021-04-29