Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Linux Kernel MEDIUM 6.0
CVE-2019-19927

In the Linux kernel 5.0.0-rc7 (as distributed in ubuntu/linux.git on kernel.ubuntu.com), mounting a crafted f2fs filesystem image and performing some…

Patch available
Fix from $1,600 2019-12-31
Clickhouse CRITICAL 9.8
CVE-2019-16535

In all versions of ClickHouse before 19.14, an OOB read, OOB write and integer underflow in decompression algorithms can be used to achieve RCE or Do…

Fix: 19.14+
Fix from $2,300 2019-12-30
Gpmf Parser HIGH 8.8
CVE-2019-20086

GoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GPMF_Next in GPMF_parser.c.

No fix yet
Fix from $1,950 2019-12-30
Gpmf Parser HIGH 8.8
CVE-2019-20087

GoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GPMF_seekToSamples in GPMF-parse.c for the "matching tags" feature.

No fix yet
Fix from $1,950 2019-12-30
Gpmf Parser HIGH 7.8
CVE-2019-20088

GoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GetPayload in GPMF_mp4reader.c.

No fix yet
Fix from $1,950 2019-12-30
Gpmf Parser HIGH 7.8
CVE-2019-20089

GoPro GPMF-parser 1.2.3 has an heap-based buffer over-read in GPMF_SeekToSamples in GPMF_parse.c for the size calculation.

No fix yet
Fix from $1,950 2019-12-30
Matio MEDIUM 6.5
CVE-2019-20017

A stack-based buffer over-read was discovered in Mat_VarReadNextInfo5 in mat5.c in matio 1.5.17.

No fix yet
Fix from $1,600 2019-12-27
Matio MEDIUM 6.5
CVE-2019-20018

A stack-based buffer over-read was discovered in ReadNextCell in mat5.c in matio 1.5.17.

No fix yet
Fix from $1,600 2019-12-27
Matio MEDIUM 6.5
CVE-2019-20020

A stack-based buffer over-read was discovered in ReadNextStructField in mat5.c in matio 1.5.17.

No fix yet
Fix from $1,600 2019-12-27
Fedora MEDIUM 5.5
CVE-2019-20021

A heap-based buffer over-read was discovered in canUnpack in p_mach.cpp in UPX 3.95 via a crafted Mach-O file.

No fix yet
Fix from $1,600 2019-12-27
Libredwg HIGH 8.8
CVE-2019-20011

An issue was discovered in GNU LibreDWG 0.92. There is a heap-based buffer over-read in decode_R13_R2000 in decode.c.

No fix yet
Fix from $1,950 2019-12-27
Ezxml MEDIUM 6.5
CVE-2019-20005

An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_decode, while parsing a crafted XML file, performs incorrect memory handling…

Fix: after 0.8.6
Fix from $1,600 2019-12-26
Libesmtp CRITICAL 9.8
CVE-2019-19977

libESMTP through 1.0.6 mishandles domain copying into a fixed-size buffer in ntlm_build_type_2 in ntlm/ntlmstruct.c, as demonstrated by a stack-based…

Fix: after 1.0.6
Fix from $2,300 2019-12-26
Libiec61850 MEDIUM 6.5
CVE-2019-19957

In libIEC61850 1.4.0, getNumberOfElements in mms/iso_mms/server/mms_access_result.c has an out-of-bounds read vulnerability, related to bufPos and el…

No fix yet
Fix from $1,600 2019-12-24
Debian Linux CRITICAL 9.1
CVE-2019-19949

In ImageMagick 7.0.8-43 Q16, there is a heap-based buffer over-read in the function WritePNGImage of coders/png.c, related to Magick_png_write_raw_pr…

Fix: 6.9.10-43 / 7.0.8-43+
Fix from $2,300 2019-12-24
Debian Linux CRITICAL 9.1
CVE-2019-19953

In GraphicsMagick 1.4 snapshot-20191208 Q8, there is a heap-based buffer over-read in the function EncodeImage of coders/pict.c.

Patch available
Fix from $2,300 2019-12-24
Libiec61850 MEDIUM 6.5
CVE-2019-19944

In libIEC61850 1.4.0, BerDecoder_decodeUint32 in mms/asn1/ber_decode.c has an out-of-bounds read, related to intLen and bufPos.

No fix yet
Fix from $1,600 2019-12-23
Enterprise Linux HIGH 7.1
CVE-2019-18390

An out-of-bounds read in the vrend_blit_need_swizzle function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a den…

Fix: after 0.8.0
Fix from $1,950 2019-12-23
PHP MEDIUM 5.3
CVE-2019-11046

In PHP versions 7.2.x below 7.2.26, 7.3.x below 7.3.13 and 7.4.0, PHP bcmath extension functions on some systems, including Windows, can be tricked i…

Fix: 5.19.0+
Fix from $1,600 2019-12-23
PHP MEDIUM 6.5
CVE-2019-11047EPSS 7%

When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7.2.x below 7.2.26, 7.3.x belo…

Fix: 7.2.26 / 7.3.13+
Fix from $1,600 2019-12-23
PHP MEDIUM 6.5
CVE-2019-11050EPSS 8%

When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7.2.x below 7.2.26, 7.3.x belo…

Fix: 5.19.0+
Fix from $1,600 2019-12-23
Acrobat Dc HIGH 7.5
CVE-2019-16465

Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier version, 2017.011.30152 and ea…

Fix: 15.006.30508 / 17.011.30156+
Fix from $1,950 2019-12-19
Acrobat Dc HIGH 7.5
CVE-2019-16456

Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier version, 2017.011.30152 and ea…

Fix: 15.006.30508 / 17.011.30156+
Fix from $1,950 2019-12-19
Acrobat Dc HIGH 7.5
CVE-2019-16457

Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier version, 2017.011.30152 and ea…

Fix: 15.006.30508 / 17.011.30156+
Fix from $1,950 2019-12-19
Acrobat Dc HIGH 7.5
CVE-2019-16458

Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier version, 2017.011.30152 and ea…

Fix: 15.006.30508 / 17.011.30156+
Fix from $1,950 2019-12-19
Acrobat Dc HIGH 7.5
CVE-2019-16461

Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier version, 2017.011.30152 and ea…

Fix: 15.006.30508 / 17.011.30156+
Fix from $1,950 2019-12-19
Acrobat Dc HIGH 7.5
CVE-2019-16449

Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier version, 2017.011.30152 and ea…

Fix: 15.006.30508 / 17.011.30156+
Fix from $1,950 2019-12-19
Ipados HIGH 7.5
CVE-2019-8787

An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1, tvOS 13.…

Fix: 6.1 / 10.15.1+
Fix from $1,950 2019-12-18
Mac Os X MEDIUM 5.5
CVE-2019-8692

A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Mojave 10.14.6. An application may be able to read re…

Fix: 10.14.6+
Fix from $1,600 2019-12-18
Mac Os X MEDIUM 5.5
CVE-2019-8693

A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Mojave 10.14.6. An application may be able to read re…

Fix: 10.14.6+
Fix from $1,600 2019-12-18