Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Phantompdf HIGH 8.1
CVE-2018-20311

Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCPDFAction race condition that can cause a stack-based buffer ov…

Fix: 8.3.10 / 9.5+
Fix from $1,950 2021-01-07
Phantompdf HIGH 8.1
CVE-2018-20312

Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer over…

Fix: 8.3.10 / 9.5+
Fix from $1,950 2021-01-07
Fedora MEDIUM 5.5
CVE-2020-27842

There's a flaw in openjpeg's t2 encoder in versions prior to 2.4.0. An attacker who is able to provide crafted input to be processed by openjpeg coul…

Patch available
Fix from $1,600 2021-01-05
Fedora MEDIUM 5.5
CVE-2020-27843

A flaw was found in OpenJPEG in versions prior to 2.4.0. This flaw allows an attacker to provide specially crafted input to the conversion or encodin…

Fix: 2.4.0+
Fix from $1,600 2021-01-05
Fedora MEDIUM 5.5
CVE-2020-27845

There's a flaw in src/lib/openjp2/pi.c of openjpeg in versions prior to 2.4.0. If an attacker is able to provide untrusted input to openjpeg's conver…

Fix: 2.4.0+
Fix from $1,600 2021-01-05
Fedora MEDIUM 5.9
CVE-2019-25013

The iconv feature in the GNU C Library (aka glibc or libc6) through 2.32, when processing invalid multi-byte input sequences in the EUC-KR encoding, …

Fix: after 2.32
Fix from $1,600 2021-01-04
Ordnung HIGH 7.5
CVE-2020-35890

An issue was discovered in the ordnung crate through 2020-09-03 for Rust. compact::Vec violates memory safety via out-of-bounds access for large capa…

Fix: after 2020-09-03
Fix from $1,950 2020-12-31
Simple Slab CRITICAL 9.1
CVE-2020-35892

An issue was discovered in the simple-slab crate before 0.3.3 for Rust. index() allows an out-of-bounds read.

Fix: 0.3.3+
Fix from $2,300 2020-12-31
Lucet Runtime Internals CRITICAL 9.1
CVE-2020-35859

An issue was discovered in the lucet-runtime-internals crate before 0.5.1 for Rust. It mishandles sigstack allocation. Guest programs may be able to …

Fix: 0.5.1+
Fix from $2,300 2020-12-31
Bumpalo HIGH 7.5
CVE-2020-35861

An issue was discovered in the bumpalo crate before 3.2.1 for Rust. The realloc feature allows the reading of unknown memory. Attackers can potential…

Fix: 3.2.1+
Fix from $1,950 2020-12-31
Qemu MEDIUM 6.5
CVE-2019-20808

In QEMU 4.1.0, an out-of-bounds read flaw was found in the ATI VGA implementation. It occurs in the ati_cursor_define() routine while handling MMIO w…

Mitigation only
Fix from $1,600 2020-12-31
Cloudengine 12800 Firmware HIGH 7.5
CVE-2020-9094

There is an out of bound read vulnerability in some verisons of Huawei CloudEngine product. A module does not deal with specific message properly. At…

Mitigation only
Fix from $1,950 2020-12-29
Mate 30 Firmware MEDIUM 6.7
CVE-2020-9125

There is an out-of-bound read vulnerability in huawei smartphone Mate 30 versions earlier than 10.1.0.156 (C00E155R7P2). An attacker with specific pe…

Fix: 10.1.0.156+
Fix from $1,600 2020-12-29
Nip6800 Firmware MEDIUM 6.5
CVE-2020-9201

There is an out-of-bounds read vulnerability in some versions of NIP6800, Secospace USG6600 and USG9500. The software reads data past the end of the …

Mitigation only
Fix from $1,600 2020-12-24
Ipv6 HIGH 7.1
CVE-2020-27338

An issue was discovered in Treck IPv6 before 6.0.1.68. Improper Input Validation in the DHCPv6 client component allows an unauthenticated remote atta…

Fix: 6.0.1.68+
Fix from $1,950 2020-12-22
Ipv6 MEDIUM 5.3
CVE-2020-27336

An issue was discovered in Treck IPv6 before 6.0.1.68. Improper input validation in the IPv6 component when handling a packet sent by an unauthentica…

Fix: 6.0.1.68+
Fix from $1,600 2020-12-22
HTTP Server HIGH 7.5
CVE-2020-5360

Dell BSAFE Micro Edition Suite, versions prior to 4.5, are vulnerable to a Buffer Under-Read Vulnerability. An unauthenticated remote attacker could …

Fix: 4.5+
Fix from $1,950 2020-12-16
P11 Kit MEDIUM 5.3
CVE-2020-29362

An issue was discovered in p11-kit 0.21.1 through 0.23.21. A heap-based buffer over-read has been discovered in the RPC protocol used by thep11-kit s…

Fix: 0.23.22+
Fix from $1,600 2020-12-16
Android MEDIUM 5.5
CVE-2020-27047

In ce_t4t_update_binary of ce_t4t.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc…

Patch available
Fix from $1,600 2020-12-15
Android MEDIUM 6.7
CVE-2020-27036

In phNxpNciHal_send_ext_cmd of phNxpNciHal_ext.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local es…

Patch available
Fix from $1,600 2020-12-15
Android HIGH 7.5
CVE-2020-27024

In smp_br_state_machine_event of smp_br_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote info…

Mitigation only
Fix from $1,950 2020-12-15
Android MEDIUM 5.5
CVE-2020-27027

In nfc_ncif_proc_get_routing of nfc_ncif.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local informati…

Mitigation only
Fix from $1,600 2020-12-15
Android MEDIUM 6.5
CVE-2020-0490

In floor1_info_unpack of floor1.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclo…

Patch available
Fix from $1,600 2020-12-15
Android MEDIUM 6.5
CVE-2020-0492

In BitstreamFillCache of bitstream.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information d…

Mitigation only
Fix from $1,600 2020-12-15
Android MEDIUM 5.5
CVE-2020-0493

In CPDF_SampledFunc::v_Call of cpdf_sampledfunc.cpp, there is a possible out of bounds read due to improper input validation. This could lead to loca…

Mitigation only
Fix from $1,600 2020-12-15
Android MEDIUM 6.5
CVE-2020-0494

In ih264d_parse_ave of ih264d_sei.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disc…

Mitigation only
Fix from $1,600 2020-12-15
Android MEDIUM 5.5
CVE-2020-0498

In decode_packed_entry_number of codebook.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote informat…

Mitigation only
Fix from $1,600 2020-12-15
Android MEDIUM 5.5
CVE-2020-0244

In writeBurstBufferBytes of SPDIFEncoder.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local infor…

Patch available
Fix from $1,600 2020-12-15
Android MEDIUM 5.5
CVE-2020-0280

In nci_proc_ee_management_rsp of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local informat…

Patch available
Fix from $1,600 2020-12-15
Asylo MEDIUM 5.5
CVE-2020-8936

An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allows an attacker to make a host call to UntrustedCall. UntrustedCall fail…

Fix: after 0.6.0
Fix from $1,600 2020-12-15