Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Debian Linux MEDIUM 5.0
CVE-2020-0093

In exif_data_save_data_entry of exif-data.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local informati…

Fix: 0.6.22+
Fix from $1,600 2020-05-14
Libreswan HIGH 7.5
CVE-2020-1763

An out-of-bounds buffer read flaw was found in the pluto daemon of libreswan from versions 3.27 till 3.31 where, an unauthenticated attacker could us…

Fix: after 3.31
Fix from $1,950 2020-05-12
Fedora HIGH 7.5
CVE-2020-12783

Exim through 4.93 has an out-of-bounds read in the SPA authenticator that could result in SPA/NTLM authentication bypass in auths/spa.c and auths/aut…

Fix: after 4.93
Fix from $1,950 2020-05-11
Imlib2 CRITICAL 9.1
CVE-2020-12761

modules/loaders/loader_ico.c in imlib2 1.6.0 has an integer overflow (with resultant invalid memory allocations and out-of-bounds reads) via an icon …

Patch available
Fix from $2,300 2020-05-09
Fedora CRITICAL 9.1
CVE-2020-12740

tcprewrite in Tcpreplay through 4.3.2 has a heap-based buffer over-read during a get_c operation. The issue is being triggered in the function get_ip…

Fix: after 4.3.2
Fix from $2,300 2020-05-08
Webaccess HIGH 7.5
CVE-2020-12018

Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. An out-of-bounds vulnerability exists that may allow access to unauthorized data.

Fix: after 8.4.4
Fix from $1,950 2020-05-08
Ubuntu Linux MEDIUM 5.9
CVE-2020-11047

In FreeRDP after 1.1 and before 2.0.0, there is an out-of-bounds read in autodetect_recv_bandwidth_measure_results. A malicious server can extract up…

Fix: 2.0.0+
Fix from $1,600 2020-05-07
Debian Linux MEDIUM 5.9
CVE-2020-11042

In FreeRDP greater than 1.1 and before 2.0.0, there is an out-of-bounds read in update_read_icon_info. It allows reading a attacker-defined amount of…

Fix: 2.0.0+
Fix from $1,600 2020-05-07
Secure Firewall Threat Defense HIGH 7.5
CVE-2020-3298

A vulnerability in the Open Shortest Path First (OSPF) implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat …

Fix: 6.2.3.16 / 6.3.0.6+
Fix from $1,950 2020-05-06
Tensorflow MEDIUM 6.5
CVE-2018-21233

TensorFlow before 1.7.0 has an integer overflow that causes an out-of-bounds read, possibly causing disclosure of the contents of process memory. Thi…

Fix: 1.7.0+
Fix from $1,600 2020-05-04
Router Manager HIGH 7.5
CVE-2019-11823

CRLF injection vulnerability in Network Center in Synology Router Manager (SRM) before 1.2.3-8017-2 allows remote attackers to cause a denial of serv…

Fix: 1.2.3-8017-2+
Fix from $1,950 2020-05-04
PHP HIGH 7.5
CVE-2020-7067

In PHP versions 7.2.x below 7.2.30, 7.3.x below 7.3.17 and 7.4.x below 7.4.5, if PHP is compiled with EBCDIC support (uncommon), urldecode() function…

Fix: 5.19.0 / 7.2.30+
Fix from $1,950 2020-04-27
Honor V10 Firmware HIGH 7.1
CVE-2020-1806

Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities. Certain driver program does …

Fix: 10.0.0.156+
Fix from $1,950 2020-04-27
Honor V10 Firmware HIGH 7.1
CVE-2020-1804

Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities. Certain driver program does …

Fix: 10.0.0.156+
Fix from $1,950 2020-04-27
Honor V10 Firmware HIGH 7.1
CVE-2020-1805

Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities. Certain driver program does …

Fix: 10.0.0.156+
Fix from $1,950 2020-04-27
Ndpi HIGH 7.5
CVE-2020-11940

In nDPI through 3.2 Stable, an out-of-bounds read in concat_hash_string in ssh.c can be exploited by a network-positioned attacker that can send malf…

Fix: after 3.2
Fix from $1,950 2020-04-23
Phantompdf HIGH 7.8
CVE-2020-10902

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.1.29511. User interaction is r…

Fix: after 9.7.1.29511
Fix from $1,950 2020-04-22
Phantompdf HIGH 7.8
CVE-2020-10895

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.1.29511. User interaction is r…

Fix: after 9.7.1.29511
Fix from $1,950 2020-04-22
Phantompdf HIGH 7.8
CVE-2020-10898

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.1.29511. User interaction is r…

Fix: after 9.7.1.29511
Fix from $1,950 2020-04-22
Libming CRITICAL 9.1
CVE-2020-11894

Ming (aka libming) 0.4.8 has a heap-based buffer over-read (8 bytes) in the function decompileIF() in decompile.c.

No fix yet
Fix from $2,300 2020-04-19
Libming CRITICAL 9.1
CVE-2020-11895

Ming (aka libming) 0.4.8 has a heap-based buffer over-read (2 bytes) in the function decompileIF() in decompile.c.

No fix yet
Fix from $2,300 2020-04-19
Ipq8074 Firmware CRITICAL 9.8
CVE-2019-14134

Possible out of bound access in WLAN handler when the received value of length in rx path is shorter than the expected value of country IE in Snapdra…

Mitigation only
Fix from $2,300 2020-04-16
Msm8998 Firmware CRITICAL 9.1
CVE-2020-3652

Possible buffer over-read issue in windows x86 wlan driver function while processing beacon or request frame due to lack of check of length of variab…

Mitigation only
Fix from $2,300 2020-04-16
Msm8998 Firmware CRITICAL 9.1
CVE-2020-3653

Possible buffer over-read in windows wlan driver function due to lack of check of length of variable received from userspace in Snapdragon Compute, S…

Mitigation only
Fix from $2,300 2020-04-16
Apq8009 Firmware HIGH 7.1
CVE-2019-10625

Out of bound access in diag services when DCI command buffer reallocation is not done properly with required capacity in Snapdragon Auto, Snapdragon …

Patch available
Fix from $1,950 2020-04-16
Apq8009 Firmware CRITICAL 9.1
CVE-2019-14011

Multiple Read overflows issue due to improper length check while decoding 3G attach accept/ SMS/ pdn connection reject/ esm data transport/ bearer mo…

No fix yet
Fix from $2,300 2020-04-16
Apq8009 Firmware CRITICAL 9.1
CVE-2019-14019

Multiple Read overflows issue due to improper length check while decoding RAU accept/PDN disconnect Rej/Modify EPS ctxt req/bearer resource alloc Rej…

Mitigation only
Fix from $2,300 2020-04-16
Apq8053 Firmware CRITICAL 9.1
CVE-2019-14020

Multiple Read overflows issue due to improper length check while decoding dedicated_eps_bearer_req/ act_def_context_req/ cs_serv_notification/ emm_in…

Mitigation only
Fix from $2,300 2020-04-16
Apq8053 Firmware CRITICAL 9.1
CVE-2019-14033

Multiple Read overflows issue due to improper length check while decoding tau reject/tau accept/detach request/attach reject/attach accept in Snapdra…

No fix yet
Fix from $2,300 2020-04-16
Apq8053 Firmware HIGH 7.1
CVE-2019-14104

Slab-out-of-bounds access can occur if the context pointer is invalid due to lack of null check on pointer before accessing it in Snapdragon Compute,…

Patch available
Fix from $1,950 2020-04-16