Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Parallels Desktop MEDIUM 6.0
CVE-2021-31431

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309. An attacker …

Mitigation only
Fix from $1,600 2021-04-29
Parallels Desktop MEDIUM 6.0
CVE-2021-31432

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309. An attacker …

Mitigation only
Fix from $1,600 2021-04-29
Debian Linux CRITICAL 9.8
CVE-2021-25216EPSS 82%

In BIND 9.5.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.11.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND Supported Preview Edition,…

Fix: 1.0.1.1 / 9.11.31+
Fix from $2,300 2021-04-29
Vm Virtualbox MEDIUM 6.0
CVE-2021-2321

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.…

Fix: 6.1.20+
Fix from $1,600 2021-04-28
Cncsoft B HIGH 7.8
CVE-2021-22660

CNCSoft-B Versions 1.0.0.3 and prior is vulnerable to an out-of-bounds read, which may allow an attacker to execute arbitrary code.

Fix: after 1.0.0.3
Fix from $1,950 2021-04-27
Jansson HIGH 7.5
CVE-2020-36325

An issue was discovered in Jansson through 2.13.1. Due to a parsing error in json_loads, there's an out-of-bounds read-access bug. NOTE: the vendor r…

Fix: after 2.13.1
Fix from $1,950 2021-04-26
Fedora MEDIUM 6.5
CVE-2021-29470

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was …

Fix: after 0.27.3
Fix from $1,600 2021-04-23
Nucleus Net MEDIUM 6.5
CVE-2020-27736

A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20)…

Fix: 0.5.0.0 / 4.1.0+
Fix from $1,600 2021-04-22
Simotics Connect 400 Firmware MEDIUM 6.5
CVE-2020-27737

A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20)…

Fix: 0.5.0.0 / 4.1.0+
Fix from $1,600 2021-04-22
Junos HIGH 7.5
CVE-2021-0261

A vulnerability in the HTTP/HTTPS service used by J-Web, Web Authentication, Dynamic-VPN (DVPN), Firewall Authentication Pass-Through with Web-Redire…

Mitigation only
Fix from $1,950 2021-04-22
Cpp Peglib MEDIUM 5.5
CVE-2020-23915

An issue was discovered in cpp-peglib through v0.1.12. peg::resolve_escape_sequence() in peglib.h has a heap-based buffer over-read.

Fix: after 0.1.12
Fix from $1,600 2021-04-21
Fast Ber HIGH 7.1
CVE-2020-23921

An issue was discovered in fast_ber through v0.4. yy::yylex() in asn_compiler.hpp has a heap-based buffer over-read.

Fix: after 0.4
Fix from $1,950 2021-04-21
Bookkeeper HIGH 7.1
CVE-2020-23922

An issue was discovered in giflib through 5.1.4. DumpScreen2RGB in gif2rgb.c has a heap-based buffer over-read.

Fix: after 5.1.4
Fix from $1,950 2021-04-21
Gpac HIGH 7.1
CVE-2020-23928

An issue was discovered in gpac before 1.0.1. The abst_box_read function in box_code_adobe.c has a heap-based buffer over-read.

Fix: 1.0.1+
Fix from $1,950 2021-04-21
Gpac HIGH 7.1
CVE-2020-23931

An issue was discovered in gpac before 1.0.1. The abst_box_read function in box_code_adobe.c has a heap-based buffer over-read.

Fix: 1.0.1+
Fix from $1,950 2021-04-21
Apk Tools HIGH 7.5
CVE-2021-30139

In Alpine Linux apk-tools before 2.12.5, the tarball parser allows a buffer overflow and crash.

Fix: 2.10.6 / 2.12.5+
Fix from $1,950 2021-04-21
Linux Kernel MEDIUM 5.5
CVE-2021-29155

An issue was discovered in the Linux kernel through 5.11.x. kernel/bpf/verifier.c performs undesirable out-of-bounds speculation on pointer arithmeti…

Fix: 5.11.16+
Fix from $1,600 2021-04-20
Linux Kernel HIGH 7.1
CVE-2021-3506

An out-of-bounds (OOB) memory access flaw was found in fs/f2fs/node.c in the f2fs module in the Linux kernel in versions before 5.12.0-rc4. A bounds …

Fix: 5.12+
Fix from $1,950 2021-04-19
Fedora MEDIUM 5.5
CVE-2021-29458

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was …

Fix: 0.27.4+
Fix from $1,600 2021-04-19
Fbx Review HIGH 7.8
CVE-2021-27027

An Out-Of-Bounds Read Vulnerability in Autodesk FBX Review version 1.5.0 and prior may lead to code execution through maliciously crafted DLL files o…

Fix: after 1.5.0
Fix from $1,950 2021-04-19
Debian Linux MEDIUM 6.5
CVE-2021-31348

An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_parse_str() performs incorrect memory handling while parsing crafted XML fil…

Patch available
Fix from $1,600 2021-04-16
Wechat MEDIUM 6.5
CVE-2021-27247EPSS 6%

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tencent WeChat 2.9.5 desktop version. User …

Mitigation only
Fix from $1,600 2021-04-14
Android MEDIUM 5.5
CVE-2021-0471

In decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosur…

Patch available
Fix from $1,600 2021-04-13
Libslic3r MEDIUM 6.5
CVE-2020-28590

An out-of-bounds read vulnerability exists in the Obj File TriangleMesh::TriangleMesh() functionality of Slic3r libslic3r 1.3.0 and Master Commit 92a…

No fix yet
Fix from $1,600 2021-04-13
Android HIGH 7.5
CVE-2021-0431

In avrc_msg_cback of avrc_api.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclos…

Patch available
Fix from $1,950 2021-04-13
Vxworks MEDIUM 5.3
CVE-2021-29997

An issue was discovered in Wind River VxWorks 7 before 21.03. A specially crafted packet may lead to buffer over-read on IKE.

Fix: 21.03+
Fix from $1,600 2021-04-13
Chrome HIGH 7.4
CVE-2021-21198

Out of bounds read in IPC in Google Chrome prior to 89.0.4389.114 allowed a remote attacker who had compromised the renderer process to potentially p…

Fix: 89.0.4389.114+
Fix from $1,950 2021-04-09
Abyss Web Server X1 HIGH 7.5
CVE-2021-3328

An issue was discovered in Aprelium Abyss Web Server X1 2.12.1 and 2.14. A crafted HTTP request can lead to an out-of-bounds read that crashes the ap…

No fix yet
Fix from $1,950 2021-04-08
Clamav HIGH 7.5
CVE-2021-1404

A vulnerability in the PDF parsing module in Clam AntiVirus (ClamAV) Software versions 0.103.0 and 0.103.1 could allow an unauthenticated, remote att…

Mitigation only
Fix from $1,950 2021-04-08
Apq8017 Firmware CRITICAL 9.1
CVE-2020-11247

Out of bound memory read while unpacking data due to lack of offset length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Sna…

Mitigation only
Fix from $2,300 2021-04-07