Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Fpwin Pro HIGH 7.8
CVE-2020-16236

FPWIN Pro is vulnerable to an out-of-bounds read vulnerability when a user opens a maliciously crafted project file, which may allow an attacker to r…

Fix: 7.5.0.1+
Fix from $1,950 2021-01-26
Android HIGH 7.5
CVE-2020-0236

In A2DP_GetCodecType of a2dp_codec_config, there is a possible out-of-bounds read due to improper input validation. This could lead to remote informa…

Mitigation only
Fix from $1,950 2021-01-26
Apq8009 HIGH 7.0
CVE-2020-11179

Arbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race condition. in Snapdragon Auto, Snapdr…

Mitigation only
Fix from $1,950 2021-01-21
Apq8053 HIGH 7.5
CVE-2020-11200

Buffer over-read while parsing RPS due to lack of check of input validation on values received from user side. in Snapdragon Auto, Snapdragon Compute…

Mitigation only
Fix from $1,950 2021-01-21
Apq8009 CRITICAL 9.8
CVE-2020-11212

Out of bounds reads while parsing NAN beacons attributes and OUIs due to improper length of field check in Snapdragon Auto, Snapdragon Compute, Snapd…

Mitigation only
Fix from $2,300 2021-01-21
Apq8009 CRITICAL 9.8
CVE-2020-11213

Out of bound reads might occur in while processing Service descriptor due to improper validation of length of fields in Snapdragon Auto, Snapdragon C…

Mitigation only
Fix from $2,300 2021-01-21
Aqt1000 HIGH 7.5
CVE-2020-11214

Buffer over-read while processing NDL attribute if attribute length is larger than expected and then FW is treating it as more number of immutable sc…

Mitigation only
Fix from $1,950 2021-01-21
Aqt1000 CRITICAL 9.1
CVE-2020-11215

An out of bounds read can happen when processing VSA attribute due to improper minimum required length check in Snapdragon Auto, Snapdragon Compute, …

Mitigation only
Fix from $2,300 2021-01-21
Apq8009 CRITICAL 9.8
CVE-2020-11216

Buffer over read can happen in video driver when playing clip with atomsize having value UINT32_MAX in Snapdragon Auto, Snapdragon Compute, Snapdrago…

Mitigation only
Fix from $2,300 2021-01-21
Apq8009 CRITICAL 9.8
CVE-2020-11136

Buffer Over-read in audio driver while using malloc management function due to not returning NULL for zero sized memory requirement in Snapdragon Aut…

Mitigation only
Fix from $2,300 2021-01-21
Apq8009 CRITICAL 9.1
CVE-2020-11144

Buffer over-read while UE process invalid DL ROHC packet for decompression due to lack of check of size of compresses packet in Snapdragon Auto, Snap…

Mitigation only
Fix from $2,300 2021-01-21
Apq8009 Firmware HIGH 7.5
CVE-2020-11119

Buffer over-read can happen when the buffer length received from response handlers is more than the size of the payload in Snapdragon Auto, Snapdrago…

Mitigation only
Fix from $1,950 2021-01-21
Shield Experience HIGH 7.8
CVE-2021-1068

NVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the NVDEC component, in which an attacker can read from or write to a memo…

Fix: 8.2.2+
Fix from $1,950 2021-01-20
Debian Linux MEDIUM 5.4
CVE-2020-14410

SDL (Simple DirectMedia Layer) through 2.0.12 has a heap-based buffer over-read in Blit_3or4_to_3or4__inversed_rgb in video/SDL_blit_N.c via a crafte…

Fix: after 2.0.20
Fix from $1,600 2021-01-19
Cloudengine 12800 Firmware MEDIUM 6.5
CVE-2020-1865

There is an out-of-bounds read vulnerability in Huawei CloudEngine products. The software reads data past the end of the intended buffer when parsing…

Mitigation only
Fix from $1,600 2021-01-13
Nip6800 Firmware MEDIUM 6.5
CVE-2020-1866

There is an out-of-bounds read vulnerability in several products. The software reads data past the end of the intended buffer when parsing certain cr…

Mitigation only
Fix from $1,600 2021-01-13
Jt2go HIGH 8.8
CVE-2020-26996

A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack …

Fix: 13.1.0+
Fix from $1,950 2021-01-12
3d Visual Enterprise Viewer HIGH 8.8
CVE-2021-21463

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PCX file received from untrusted sources which results in crashing of…

Mitigation only
Fix from $1,950 2021-01-12
Pillow HIGH 7.1
CVE-2020-35653

In Pillow before 8.1.0, PcxDecode has a buffer over-read when decoding a crafted PCX file because the user-supplied stride value is trusted for buffe…

Fix: 8.1.0+
Fix from $1,950 2021-01-12
Pillow MEDIUM 5.4
CVE-2020-35655

In Pillow before 8.1.0, SGIRleDecode has a 4-byte buffer over-read when decoding crafted SGI RLE image files because offsets and length tables are mi…

Fix: 8.1.0+
Fix from $1,600 2021-01-12
Cncsoft B HIGH 7.8
CVE-2020-27291

Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior is vulnerable to an out-of-bounds read while processing project files, which may allow an atta…

Fix: after 1.0.0.2
Fix from $1,950 2021-01-11
Antivrius MEDIUM 5.5
CVE-2018-11005

A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.

Fix: 14.2.0001 / 16.0.0001+
Fix from $1,600 2021-01-11
Chrome HIGH 8.1
CVE-2020-16041

Out of bounds read in networking in Google Chrome prior to 87.0.4280.88 allowed a remote attacker who had compromised the renderer process to obtain …

Fix: 87.0.4280.88+
Fix from $1,950 2021-01-08
Virtual Gpu Manager HIGH 7.8
CVE-2021-1063

NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which an input offset is not validated, which may lead to a buffer overread, whic…

Fix: 8.6 / 11.3+
Fix from $1,950 2021-01-08
Easysoft HIGH 7.8
CVE-2020-6655

The Eaton's easySoft software v7.xx prior to v7.22 are susceptible to Out-of-bounds remote code execution vulnerability. A malicious entity can execu…

Fix: 7.22+
Fix from $1,950 2021-01-07
Phantompdf HIGH 8.1
CVE-2018-20313

Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyPreviewAction race condition that can cause a stack-based buffer…

Fix: 8.3.10 / 9.5+
Fix from $1,950 2021-01-07
Phantompdf HIGH 8.1
CVE-2018-20314

Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCheckLicence race condition that can cause a stack-based buffer …

Fix: 8.3.10 / 9.5+
Fix from $1,950 2021-01-07
Phantompdf HIGH 8.1
CVE-2018-20316

Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer over…

Fix: 8.3.10 / 9.5+
Fix from $1,950 2021-01-07
Phantompdf HIGH 8.1
CVE-2018-20309

Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyGetAppEdition race condition that can cause a stack-based buffer…

Fix: 8.3.10 / 9.5+
Fix from $1,950 2021-01-07
Phantompdf HIGH 8.1
CVE-2018-20310

Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer over…

Fix: 8.3.10 / 9.5+
Fix from $1,950 2021-01-07