Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Mac Os X HIGH 7.8
CVE-2020-27924

An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Sec…

Fix: 7.1 / 11.0.1+
Fix from $1,950 2021-04-02
Emui HIGH 7.8
CVE-2020-9147

A memory buffer error vulnerability exists in a component interface of Huawei Smartphone. Local attackers may exploit this vulnerability by carefully…

No fix yet
Fix from $1,950 2021-04-01
Uu Od HIGH 7.3
CVE-2021-29934

An issue was discovered in PartialReader in the uu_od crate before 0.0.4 for Rust. Attackers can read the contents of uninitialized memory locations …

Fix: 0.0.4+
Fix from $1,950 2021-04-01
Debian Linux MEDIUM 5.5
CVE-2021-3477

There's a flaw in OpenEXR's deep tile sample size calculations in versions before 3.0.0-beta. An attacker who is able to submit a crafted file to be …

Fix: 2.4.3 / 2.5.4+
Fix from $1,600 2021-03-31
Foxit Reader HIGH 7.8
CVE-2021-27270

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1.0.37527. User interaction is …

Fix: after 10.1.0.37527
Fix from $1,950 2021-03-30
Foxit Reader HIGH 7.8
CVE-2021-27271

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1.0.37527. User interaction is …

Fix: after 10.1.0.37527
Fix from $1,950 2021-03-30
Foxit Reader HIGH 7.8
CVE-2021-27261

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1.0.37527. User interaction is …

Fix: after 10.1.0.37527
Fix from $1,950 2021-03-30
Parallels Desktop MEDIUM 6.5
CVE-2021-27244

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 16.0.1-48919. An attacker …

Mitigation only
Fix from $1,600 2021-03-29
Xplatform CRITICAL 9.8
CVE-2020-7853

An outbound read/write vulnerability exists in XPLATFORM that does not check offset input ranges, allowing out-of-range data to be read. An attacker …

Fix: after 9.2.2.250
Fix from $2,300 2021-03-24
Linux Kernel HIGH 7.8
CVE-2021-3444

The bpf verifier in the Linux kernel did not properly handle mod32 destination register truncation when the source register was known to be 0. A loca…

Fix: 5.4.101 / 5.10.19+
Fix from $1,950 2021-03-23
Pillow HIGH 7.5
CVE-2021-25291

An issue was discovered in Pillow before 8.1.1. In TiffDecode.c, there is an out-of-bounds read in TiffreadRGBATile via invalid tile boundaries.

Fix: 8.1.1+
Fix from $1,950 2021-03-19
Pillow HIGH 7.5
CVE-2021-25293

An issue was discovered in Pillow before 8.1.1. There is an out-of-bounds read in SGIRleDecode.c.

Fix: 8.1.1+
Fix from $1,950 2021-03-19
Apq8009 Firmware HIGH 7.5
CVE-2020-11226

Out of bound memory read in Data modem while unpacking data due to lack of offset length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Con…

Mitigation only
Fix from $1,950 2021-03-17
Apq8009 Firmware CRITICAL 9.1
CVE-2020-11171

Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Snapdragon Compute, Sn…

Mitigation only
Fix from $2,300 2021-03-17
Apq8009 Firmware CRITICAL 9.1
CVE-2020-11188

Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Snapdragon Compute, Sn…

Mitigation only
Fix from $2,300 2021-03-17
Apq8009 Firmware CRITICAL 9.1
CVE-2020-11189

Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Snapdragon Compute, Sn…

Mitigation only
Fix from $2,300 2021-03-17
Apq8009 Firmware CRITICAL 9.1
CVE-2020-11190

Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Snapdragon Compute, Sn…

Mitigation only
Fix from $2,300 2021-03-17
Apq8017 Firmware CRITICAL 9.1
CVE-2020-11222

Buffer over read while processing MT SMS with maximum length due to improper length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connecti…

Mitigation only
Fix from $2,300 2021-03-17
Apq8009 Firmware CRITICAL 9.1
CVE-2020-11166

Potential out of bound read exception when UE receives unusually large number of padding octets in the beginning of ROHC header in Snapdragon Auto, S…

Mitigation only
Fix from $2,300 2021-03-17
Solid Edge HIGH 7.8
CVE-2021-27381

A vulnerability has been identified in Solid Edge SE2020 (All Versions < SE2020MP13), Solid Edge SE2021 (All Versions < SE2021MP3). Affected applicat…

Mitigation only
Fix from $1,950 2021-03-15
Animate HIGH 7.1
CVE-2021-21072

Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulner…

Fix: after 21.0.3
Fix from $1,950 2021-03-12
Animate HIGH 7.1
CVE-2021-21073

Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulner…

Fix: after 21.0.3
Fix from $1,950 2021-03-12
Animate HIGH 7.1
CVE-2021-21074

Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulner…

Fix: after 21.0.3
Fix from $1,950 2021-03-12
Animate HIGH 7.1
CVE-2021-21075

Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulner…

Fix: after 21.0.3
Fix from $1,950 2021-03-12
Animate HIGH 7.1
CVE-2021-21076

Adobe Animate version 21.0.3 (and earlier) is affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulner…

Fix: after 21.0.3
Fix from $1,950 2021-03-12
Framemaker HIGH 7.8
CVE-2021-21056EPSS 21%

Adobe Framemaker version 2020.0.1 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthen…

Fix: 2020.0.2+
Fix from $1,950 2021-03-12
Fltk CRITICAL 9.1
CVE-2021-28308

An issue was discovered in the fltk crate before 0.15.3 for Rust. There is an out-of bounds read because the pixmap constructor lacks pixmap input va…

Fix: 0.15.3+
Fix from $2,300 2021-03-12
Diskstation Manager CRITICAL 9.8
CVE-2021-27647

Out-of-bounds Read vulnerability in iscsi_snapshot_comm_core in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to ex…

Fix: 6.2.3-25426-3+
Fix from $2,300 2021-03-12
Debian Linux HIGH 7.5
CVE-2020-36281

Leptonica before 1.80.0 allows a heap-based buffer over-read in pixFewColorsOctcubeQuantMixed in colorquant1.c.

Fix: 1.80.0+
Fix from $1,950 2021-03-12
Fedora HIGH 7.5
CVE-2020-36278

Leptonica before 1.80.0 allows a heap-based buffer over-read in findNextBorderPixel in ccbord.c.

Fix: 1.80.0+
Fix from $1,950 2021-03-12