Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Ipados MEDIUM 5.5
CVE-2020-9944

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.0, tvOS 14.0, iOS 14.0 and …

Fix: 7.0 / 10.14.6+
Fix from $1,600 2020-12-08
Ipados HIGH 7.8
CVE-2020-10011

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 14.2 and iPadOS 14.2, macOS Catalina 10.15.7, Security …

Fix: 10.13.6 / 10.14.6+
Fix from $1,950 2020-12-08
Gt2107 Wtbd Firmware HIGH 7.5
CVE-2020-5675

Out-of-bounds read vulnerability in GT21 model of GOT2000 series (GT2107-WTBD V01.39.000 and earlier, GT2107-WTSD V01.39.000 and earlier, GT2104-RTBD…

Fix: after 01.39.000
Fix from $1,950 2020-12-04
Ethereum CRITICAL 10.0
CVE-2017-14451

An exploitable out-of-bounds read vulnerability exists in libevm (Ethereum Virtual Machine) of CPP-Ethereum. A specially crafted smart contract code …

Mitigation only
Fix from $2,300 2020-12-02
Openusd MEDIUM 6.5
CVE-2020-13496

An exploitable vulnerability exists in the way Pixar OpenUSD 20.05 handles parses certain encoded types. A specially crafted malformed file can trigg…

No fix yet
Fix from $1,600 2020-12-02
Openusd MEDIUM 5.5
CVE-2020-13497

An exploitable vulnerability exists in the way Pixar OpenUSD 20.05 handles parses certain encoded types. A specially crafted malformed file can trigg…

No fix yet
Fix from $1,600 2020-12-02
Openusd MEDIUM 5.5
CVE-2020-13498

An exploitable vulnerability exists in the way Pixar OpenUSD 20.05 handles parses certain encoded types. A specially crafted malformed file can trigg…

No fix yet
Fix from $1,600 2020-12-02
Plc Editor HIGH 8.8
CVE-2020-25181

WECON PLC Editor Versions 1.3.8 and prior has a heap-based buffer overflow vulnerabilities have been identified that may allow arbitrary code executi…

Fix: after 1.3.8
Fix from $1,950 2020-12-01
Nova 4 Firmware HIGH 7.8
CVE-2020-9117

HUAWEI nova 4 versions earlier than 10.0.0.165(C01E34R2P4) and SydneyM-AL00 versions earlier than 10.0.0.165(C00E66R1P5) have an out-of-bounds read a…

Fix: 10.0.0.165+
Fix from $1,950 2020-12-01
Debian Linux MEDIUM 5.0
CVE-2020-25624

hw/usb/hcd-ohci.c in QEMU 5.0.0 has a stack-based buffer over-read via values obtained from the host controller driver.

Patch available
Fix from $1,600 2020-11-30
Linux Kernel MEDIUM 5.0
CVE-2020-28974

A slab-out-of-bounds read in fbcon in the Linux kernel before 5.9.7 could be used by local attackers to read privileged information or potentially cr…

Fix: 5.9.7+
Fix from $1,600 2020-11-20
Libsixel MEDIUM 6.5
CVE-2020-19668

Unverified indexs into the array lead to out of bound access in the gif_out_code function in fromgif.c in libsixel 1.8.6.

No fix yet
Fix from $1,600 2020-11-20
Interactive Graphical Scada System HIGH 7.8
CVE-2020-7557

A CWE-125 Out-of-bounds Read vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247 that could cause Remote Code Execution when malic…

Fix: after 14.0.0.20247
Fix from $1,950 2020-11-19
Modicon Tsxety4103 Firmware HIGH 8.1
CVE-2020-7562

A CWE-125: Out-of-Bounds Read vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Com…

Mitigation only
Fix from $1,950 2020-11-18
Linux Kernel MEDIUM 5.8
CVE-2020-28915

A buffer over-read (at the framebuffer layer) in the fbcon code in the Linux kernel before 5.8.15 could be used by local attackers to read kernel mem…

Fix: 5.8.15+
Fix from $1,600 2020-11-18
Csi2 Host Controller MEDIUM 5.5
CVE-2020-0573

Out of bounds read in the Intel CSI2 Host Controller driver may allow an authenticated user to potentially enable information disclosure via local ac…

Mitigation only
Fix from $1,600 2020-11-12
Active Management Technology Firmware MEDIUM 6.7
CVE-2020-8757

Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow a privileged user to pote…

Fix: 11.8.80 / 11.12.80+
Fix from $1,600 2020-11-12
Active Management Technology Firmware CRITICAL 9.1
CVE-2020-8747

Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user t…

Fix: 11.8.80 / 11.12.80+
Fix from $2,300 2020-11-12
Active Management Technology Firmware HIGH 8.8
CVE-2020-8749

Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user t…

Fix: 11.8.80 / 11.12.80+
Fix from $1,950 2020-11-12
Active Management Technology Firmware HIGH 7.5
CVE-2020-8753

Out-of-bounds read in DHCP subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an una…

Fix: 11.8.80 / 11.12.80+
Fix from $1,950 2020-11-12
Active Management Technology Firmware HIGH 7.5
CVE-2020-8754

Out-of-bounds read in subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthen…

Fix: 11.8.80 / 11.12.80+
Fix from $1,950 2020-11-12
Apq8009 Firmware HIGH 7.1
CVE-2020-11132

u'Buffer over read in boot due to size check ignored before copying GUID attribute from request to response' in Snapdragon Auto, Snapdragon Compute, …

Mitigation only
Fix from $1,950 2020-11-12
Apq8009 Firmware CRITICAL 9.8
CVE-2020-11193

u'Buffer over read can happen while parsing mkv clip due to improper typecasting of data returned from atomsize' in Snapdragon Auto, Snapdragon Compu…

Mitigation only
Fix from $2,300 2020-11-12
Windows 10 MEDIUM 5.5
CVE-2020-17113

Windows Camera Codec Information Disclosure Vulnerability

Patch available
Fix from $1,600 2020-11-11
Frame Touch Module MEDIUM 5.5
CVE-2020-12485

The frame touch module does not make validity judgments on parameter lengths when processing specific parameters,which caused out of the boundary whe…

Mitigation only
Fix from $1,600 2020-11-10
Android MEDIUM 6.5
CVE-2020-0450

In rw_i93_sm_format of rw_i93.cc, there is a possible out of bounds read due to uninitialized data. This could lead to remote information disclosure …

Patch available
Fix from $1,600 2020-11-10
Android MEDIUM 5.5
CVE-2020-0424

In send_vc of res_send.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure …

Patch available
Fix from $1,600 2020-11-10
Debian Linux MEDIUM 6.5
CVE-2020-28241

libmaxminddb before 1.4.3 has a heap-based buffer over-read in dump_entry_data_list in maxminddb.c.

Fix: 1.4.3+
Fix from $1,600 2020-11-06
Tcpdump HIGH 7.5
CVE-2020-8036

The tok2strbuf() function in tcpdump 4.10.0-PRE-GIT was used by the SOME/IP dissector in an unsafe way.

Patch available
Fix from $1,950 2020-11-04
Chrome MEDIUM 6.5
CVE-2020-15981

Out of bounds read in audio in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to obtain potentially sensitive information from process…

Fix: 86.0.4240.75+
Fix from $1,600 2020-11-03