Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Fedora MEDIUM 6.5
CVE-2020-4030

In FreeRDP before version 2.1.2, there is an out of bounds read in TrioParse. Logging might bypass string length checks due to an integer overflow. T…

Fix: 2.1.2+
Fix from $1,600 2020-06-22
Fedora MEDIUM 6.5
CVE-2020-4033

In FreeRDP before version 2.1.2, there is an out of bounds read in RLEDECOMPRESS. All FreeRDP based clients with sessions with color depth < 32 are a…

Fix: 2.1.2+
Fix from $1,600 2020-06-22
Fedora MEDIUM 6.5
CVE-2020-11096

In FreeRDP before version 2.1.2, there is a global OOB read in update_read_cache_bitmap_v3_order. As a workaround, one can disable bitmap cache with …

Fix: 2.1.2+
Fix from $1,600 2020-06-22
Fedora MEDIUM 5.4
CVE-2020-11097

In FreeRDP before version 2.1.2, an out of bounds read occurs resulting in accessing a memory location that is outside of the boundaries of the stati…

Fix: 2.1.2+
Fix from $1,600 2020-06-22
Fedora MEDIUM 6.5
CVE-2020-11098

In FreeRDP before version 2.1.2, there is an out-of-bound read in glyph_cache_put. This affects all FreeRDP clients with `+glyph-cache` option enable…

Fix: 2.1.2+
Fix from $1,600 2020-06-22
Fedora MEDIUM 6.5
CVE-2020-11099

In FreeRDP before version 2.1.2, there is an out of bounds read in license_read_new_or_upgrade_license_packet. A manipulated license packet can lead …

Fix: 2.1.2+
Fix from $1,600 2020-06-22
Fedora MEDIUM 5.4
CVE-2020-11095

In FreeRDP before version 2.1.2, an out of bound reads occurs resulting in accessing a memory location that is outside of the boundaries of the stati…

Fix: 2.1.2+
Fix from $1,600 2020-06-22
Apq8009 Firmware CRITICAL 9.1
CVE-2020-3658

Possible null-pointer dereference can occur while parsing mp4 clip with corrupted sample table atoms in Snapdragon Auto, Snapdragon Compute, Snapdrag…

Mitigation only
Fix from $2,300 2020-06-22
Mbed Os CRITICAL 9.1
CVE-2020-12886

A buffer over-read was discovered in the CoAP library in Arm Mbed OS 5.15.3. The CoAP parser is responsible for parsing received CoAP packets. The fu…

Patch available
Fix from $2,300 2020-06-18
Mbed Os CRITICAL 9.1
CVE-2020-12883

Buffer over-reads were discovered in the CoAP library in Arm Mbed OS 5.15.3. The CoAP parser is responsible for parsing received CoAP packets. The fu…

Patch available
Fix from $2,300 2020-06-18
Mbed Os CRITICAL 9.1
CVE-2020-12884

A buffer over-read was discovered in the CoAP library in Arm Mbed OS 5.15.3. The CoAP parser is responsible for parsing received CoAP packets. The fu…

Patch available
Fix from $2,300 2020-06-18
Tcp\/ip MEDIUM 5.3
CVE-2020-11910EPSS 11%

The Treck TCP/IP stack before 6.0.1.66 has an ICMPv4 Out-of-bounds Read.

Fix: 6.0.1.66+
Fix from $1,600 2020-06-17
Tcp\/ip MEDIUM 5.3
CVE-2020-11912

The Treck TCP/IP stack before 6.0.1.66 has a TCP Out-of-bounds Read.

Fix: 6.0.1.66+
Fix from $1,600 2020-06-17
Tcp\/ip MEDIUM 5.3
CVE-2020-11913

The Treck TCP/IP stack before 6.0.1.66 has an IPv6 Out-of-bounds Read.

Fix: 6.0.1.66+
Fix from $1,600 2020-06-17
Tcp\/ip MEDIUM 5.4
CVE-2020-11899 KEVEPSS 19%

The Treck TCP/IP stack before 6.0.1.66 has an IPv6 Out-of-bounds Read.

Fix: 6.0.1.66+
Fix from $1,600 2020-06-17
Tcp\/ip CRITICAL 9.0
CVE-2020-11901EPSS 21%

The Treck TCP/IP stack before 6.0.1.66 allows Remote Code execution via a single invalid DNS response.

Fix: 6.0.1.66+
Fix from $2,300 2020-06-17
Tcp\/ip HIGH 7.3
CVE-2020-11902EPSS 9%

The Treck TCP/IP stack before 6.0.1.66 has an IPv6OverIPv4 tunneling Out-of-bounds Read.

Fix: 6.0.1.66+
Fix from $1,950 2020-06-17
Tcp\/ip MEDIUM 6.5
CVE-2020-11903

The Treck TCP/IP stack before 6.0.1.28 has a DHCP Out-of-bounds Read.

Fix: 6.0.1.28+
Fix from $1,600 2020-06-17
Tcp\/ip MEDIUM 6.5
CVE-2020-11905

The Treck TCP/IP stack before 6.0.1.66 has a DHCPv6 Out-of-bounds Read.

Fix: 6.0.1.66+
Fix from $1,600 2020-06-17
Jerryscript HIGH 7.5
CVE-2020-14163

An issue was discovered in ecma/operations/ecma-container-object.c in JerryScript 2.2.0. Operations with key/value pairs did not consider the case wh…

Patch available
Fix from $1,950 2020-06-15
Debian Linux HIGH 7.5
CVE-2020-14148

The Server-Server protocol implementation in ngIRCd before 26~rc2 allows an out-of-bounds access, as demonstrated by the IRC_NJOIN() function.

Fix: after 25.0
Fix from $1,950 2020-06-15
Libjpeg HIGH 7.1
CVE-2020-14153

In IJG JPEG (aka libjpeg) from version 8 through 9c, jdhuff.c has an out-of-bounds array read for certain table pointers.

Fix: after 9c
Fix from $1,950 2020-06-15
Pcre HIGH 7.5
CVE-2019-20838

libpcre in PCRE before 8.43 allows a subject buffer over-read in JIT when UTF is disabled, and \X or \R has more than one fixed quantifier, a related…

Fix: 8.2.12 / 8.43+
Fix from $1,950 2020-06-15
Active Management Technology Firmware MEDIUM 5.3
CVE-2020-8674

Out-of-bounds read in DHCPv6 subsystem in Intel(R) AMT and Intel(R)ISM versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64 and 14.0.33 may allow an …

Fix: 11.8.77 / 11.12.77+
Fix from $1,600 2020-06-15
Active Management Technology Firmware CRITICAL 9.8
CVE-2020-0594

Out-of-bounds read in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenti…

Fix: 11.8.77 / 11.12.77+
Fix from $2,300 2020-06-15
Software Manager HIGH 7.5
CVE-2020-0597

Out-of-bounds read in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 14.0.33 may allow an unauthenticated user to potentially enable…

Fix: after 14.0.32
Fix from $1,950 2020-06-15
Hobbes CRITICAL 9.8
CVE-2020-13656

In Morgan Stanley Hobbes through 2020-05-21, the array implementation lacks bounds checking, allowing exploitation of an out-of-bounds (OOB) read/wri…

Fix: after 2020-05-21
Fix from $2,300 2020-06-12
Android HIGH 7.5
CVE-2020-0214

In ce_t4t_process_select_file_cmd of ce_t4t.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote in…

Patch available
Fix from $1,950 2020-06-11
Android MEDIUM 6.5
CVE-2020-0200

In ReadLittleEndian of raw_bit_reader.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information…

Patch available
Fix from $1,600 2020-06-11
Android MEDIUM 6.5
CVE-2020-0205

In the DaalaBitReader constructor of entropy_decoder.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to rem…

Patch available
Fix from $1,600 2020-06-11