Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Android MEDIUM 6.5
CVE-2019-2156

In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execut…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-2157

In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execut…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-2158

In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execut…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-2079

In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execut…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-2138

In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execut…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-2139

In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execut…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-2142

In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execut…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.5
CVE-2019-2060

In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execut…

Mitigation only
Fix from $1,600 2019-09-27
Suricata CRITICAL 9.1
CVE-2019-15699

An issue was discovered in app-layer-ssl.c in Suricata 4.1.4. Upon receiving a corrupted SSLv3 (TLS 1.2) packet, the parser function TLSDecodeHSHello…

Mitigation only
Fix from $2,300 2019-09-24
Suricata CRITICAL 9.1
CVE-2019-16410

An issue was discovered in Suricata 4.1.4. By sending multiple fragmented IPv4 packets, the function Defrag4Reassemble in defrag.c tries to access a …

Mitigation only
Fix from $2,300 2019-09-24
Suricata CRITICAL 9.8
CVE-2019-16411

An issue was discovered in Suricata 4.1.4. By sending multiple IPv4 packets that have invalid IPv4Options, the function IPV4OptValidateTimestamp in d…

Mitigation only
Fix from $2,300 2019-09-24
Wolfssl CRITICAL 9.8
CVE-2019-16748

In wolfSSL through 4.1.0, there is a missing sanity check of memory accesses in parsing ASN.1 certificate data while handshaking. Specifically, there…

Fix: after 4.1.0
Fix from $2,300 2019-09-24
Libming CRITICAL 9.1
CVE-2019-16705

Ming (aka libming) 0.4.8 has an out of bounds read vulnerability in the function OpCode() in the decompile.c file in libutil.a.

No fix yet
Fix from $2,300 2019-09-23
Fusion CRITICAL 9.6
CVE-2019-5521

VMware ESXi (6.7 before ESXi670-201904101-SG and 6.5 before ESXi650-201903001), Workstation (15.x before 15.0.3 and 14.x before 14.1.6) and Fusion (1…

Fix: 10.1.6 / 11.0.3+
Fix from $2,300 2019-09-20
Debian Linux MEDIUM 6.5
CVE-2018-21016

audio_sample_entry_AddBox() at isomedia/box_code_base.c in GPAC 0.7.1 allows remote attackers to cause a denial of service (heap-based buffer over-re…

No fix yet
Fix from $1,600 2019-09-16
Opencv MEDIUM 5.3
CVE-2019-16249

OpenCV 4.1.1 has an out-of-bounds read in hal_baseline::v_load in core/hal/intrin_sse.hpp when called from computeSSDMeanNorm in modules/video/src/di…

Patch available
Fix from $1,600 2019-09-11
Afterburner HIGH 7.8
CVE-2019-16098EPSS 18%

The driver in Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys) allows any authenticated user to read and write to arbitrary…

No fix yet
Fix from $1,950 2019-09-11
Onigmo HIGH 7.5
CVE-2019-16162

Onigmo through 6.2.0 has an out-of-bounds read in parse_char_class because of missing codepoint validation in regenc.c.

Fix: after 6.2.0
Fix from $1,950 2019-09-09
Cflow MEDIUM 6.5
CVE-2019-16166

GNU cflow through 1.6 has a heap-based buffer over-read in the nexttoken function in parser.c.

Fix: after 1.6
Fix from $1,600 2019-09-09
Compact Arena CRITICAL 9.8
CVE-2019-16139

An issue was discovered in the compact_arena crate before 0.4.0 for Rust. Generativity is mishandled, leading to an out-of-bounds write or read.

Fix: 0.4.0+
Fix from $2,300 2019-09-09
Xpdfreader HIGH 7.8
CVE-2019-16115

In Xpdf 4.01.01, a stack-based buffer under-read could be triggered in IdentityFunction::transform in Function.cc, used by GfxAxialShading::getColor.…

No fix yet
Fix from $1,950 2019-09-08
Ubuntu Linux HIGH 7.5
CVE-2019-16095

Symonics libmysofa 0.7 has an invalid read in getDimension in hrtf/reader.c.

Patch available
Fix from $1,950 2019-09-08
Ubuntu Linux HIGH 7.5
CVE-2019-16091

Symonics libmysofa 0.7 has an out-of-bounds read in directblockRead in hdf/fractalhead.c.

Patch available
Fix from $1,950 2019-09-08
Ubuntu Linux HIGH 7.5
CVE-2019-16094

Symonics libmysofa 0.7 has an invalid read in readOHDRHeaderMessageDataLayout in hdf/dataobject.c.

Patch available
Fix from $1,950 2019-09-08
Hhvm CRITICAL 9.8
CVE-2019-11925

Insufficient boundary checks when processing the JPEG APP12 block marker in the GD extension could allow access to out-of-bounds memory via a malicio…

Fix: after 4.20.1
Fix from $2,300 2019-09-06
Hhvm CRITICAL 9.8
CVE-2019-11926

Insufficient boundary checks when processing M_SOFx markers from JPEG headers in the GD extension could allow access to out-of-bounds memory via a ma…

Fix: after 4.20.1
Fix from $2,300 2019-09-06
Android MEDIUM 5.5
CVE-2019-2179

In NDEF_MsgValidate of ndef_utils in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a possible out of bounds read due to an integer overflow. This co…

Mitigation only
Fix from $1,600 2019-09-05
Android MEDIUM 5.5
CVE-2019-2180

In ippSetValueTag of ipp.c in Android 8.0, 8.1 and 9, there is a possible out of bounds read due to improper input validation. This could lead to loc…

Mitigation only
Fix from $1,600 2019-09-05
Blynk Library MEDIUM 5.3
CVE-2019-5065

An exploitable information disclosure vulnerability exists in the packet-parsing functionality of Blynk-Library v0.6.1. A specially crafted packet ca…

No fix yet
Fix from $1,600 2019-09-05
Linux Kernel CRITICAL 9.1
CVE-2019-15926EPSS 5%

An issue was discovered in the Linux kernel before 5.2.3. Out of bounds access exists in the functions ath6kl_wmi_pstream_timeout_event_rx and ath6kl…

Fix: 3.16.74 / 4.4.187+
Fix from $2,300 2019-09-04