Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Xpdfreader MEDIUM 5.5
CVE-2019-14290

An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 2.

No fix yet
Fix from $1,600 2019-07-27
Xpdfreader MEDIUM 5.5
CVE-2019-14291

An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 3.

No fix yet
Fix from $1,600 2019-07-27
Xpdfreader MEDIUM 5.5
CVE-2019-14292

An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 1.

No fix yet
Fix from $1,600 2019-07-27
Xpdfreader MEDIUM 5.5
CVE-2019-14293

An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 2.

No fix yet
Fix from $1,600 2019-07-27
Xpdfreader MEDIUM 5.5
CVE-2019-14294

An issue was discovered in Xpdf 4.01.01. There is a use-after-free in the function JPXStream::fillReadBuf at JPXStream.cc, due to an out of bounds re…

No fix yet
Fix from $1,600 2019-07-27
Linux Kernel MEDIUM 6.8
CVE-2019-14283

In the Linux kernel before 5.2.3, set_geometry in drivers/block/floppy.c does not validate the sect and head fields, as demonstrated by an integer ov…

Fix: 5.2.3+
Fix from $1,600 2019-07-26
Linux Kernel HIGH 7.8
CVE-2018-20854

An issue was discovered in the Linux kernel before 4.20. drivers/phy/mscc/phy-ocelot-serdes.c has an off-by-one error with a resultant ctrl->phys out…

Fix: 4.20+
Fix from $1,950 2019-07-26
FreeBSD CRITICAL 9.6
CVE-2019-5604

In FreeBSD 12.0-STABLE before r350246, 12.0-RELEASE before 12.0-RELEASE-p8, 11.3-STABLE before r350247, 11.3-RELEASE before 11.3-RELEASE-p1, and 11.2…

No fix yet
Fix from $2,300 2019-07-26
Msm8909w Firmware MEDIUM 5.5
CVE-2019-2343

Out of bound read and information disclosure in firmware due to insufficient checking of an embedded structure that can be sent from a kernel driver …

Mitigation only
Fix from $1,600 2019-07-25
Ipq4019 Firmware HIGH 7.8
CVE-2019-2301

Possibility of out-of-bound read if id received from SPI is not in range of FIFO in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Sna…

Patch available
Fix from $1,950 2019-07-25
Mdm9150 Firmware CRITICAL 9.8
CVE-2019-2305

Out of bound access when reason code is extracted from frame data without validating the frame length in Snapdragon Auto, Snapdragon Consumer Electro…

Patch available
Fix from $2,300 2019-07-25
Mdm9150 Firmware HIGH 7.8
CVE-2019-2306

Improper casting of structure while handling the buffer leads to out of bound read in display in Snapdragon Auto, Snapdragon Connectivity, Snapdragon…

Patch available
Fix from $1,950 2019-07-25
Mdm9150 Firmware CRITICAL 9.8
CVE-2019-2307

Possible integer underflow due to lack of validation before calculation of data length in 802.11 Rx management configuration in Snapdragon Auto, Snap…

Patch available
Fix from $2,300 2019-07-25
Mdm9150 Firmware CRITICAL 9.8
CVE-2019-2253

Buffer over-read can occur while parsing an ogg file with a corrupted comment block. in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer…

Mitigation only
Fix from $2,300 2019-07-25
Msm8909w Firmware HIGH 7.5
CVE-2019-2273

IOMMU page fault while playing h265 video file leads to denial of service issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snap…

Mitigation only
Fix from $1,950 2019-07-25
Mdm9607 Firmware CRITICAL 9.8
CVE-2019-2276

Possible out of bound read occurs while processing beaconing request due to lack of check on action frames received from user controlled space in Sna…

Patch available
Fix from $2,300 2019-07-25
Cnssoft Screeneditor MEDIUM 5.5
CVE-2019-10992

Delta Electronics CNCSoft ScreenEditor, Versions 1.00.89 and prior. Multiple out-of-bounds read vulnerabilities may cause information disclosure due …

Fix: after 1.00.89
Fix from $1,600 2019-07-24
Mgetty MEDIUM 5.5
CVE-2019-1010190

mgetty prior to 1.2.1 is affected by: out-of-bounds read. The impact is: DoS, the program may crash if the memory is not mapped. The component is: pu…

Fix: 1.2.1+
Fix from $1,600 2019-07-24
Gdb HIGH 7.8
CVE-2019-1010180

GNU gdb All versions is affected by: Buffer Overflow - Out of bound memory access. The impact is: Deny of Service, Memory Disclosure, and Possible Co…

Fix: 9.1+
Fix from $1,950 2019-07-24
Firefox HIGH 7.5
CVE-2019-11719

When importing a curve25519 private key in PKCS#8format with leading 0x00 bytes, it is possible to trigger an out-of-bounds read in the Network Secur…

Fix: 60.8.0 / 68.0+
Fix from $1,950 2019-07-23
Binutils MEDIUM 5.5
CVE-2019-1010204

GNU binutils gold gold v1.11-v1.16 (GNU binutils v2.21-v2.31.1) is affected by: Improper Input Validation, Signed/Unsigned Comparison, Out-of-bounds …

Fix: after 2.31.1
Fix from $1,600 2019-07-23
Jsish HIGH 7.5
CVE-2019-1010169

Jsish 2.4.77 2.0477 is affected by: Out-of-bounds Read. The impact is: denial of service. The component is: function lexer_getchar (jsiLexer.c:9). Th…

Patch available
Fix from $1,950 2019-07-23
Msm8996au Firmware HIGH 7.8
CVE-2019-2277

Out of bound read can happen due to lack of NULL termination on user controlled data in WLAN in Snapdragon Auto, Snapdragon Compute, Snapdragon Consu…

Patch available
Fix from $1,950 2019-07-22
Bridge Cc MEDIUM 6.5
CVE-2019-7963

Adobe Bridge CC version 9.0.2 and earlier versions have an out of bound read vulnerability. Successful exploitation could lead to Information Disclos…

Fix: after 9.0.2
Fix from $1,600 2019-07-18
Debian Linux CRITICAL 9.8
CVE-2019-13962

lavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VLC media player through 3.0.7 has a heap-based buffer over-read because it does not pr…

Fix: after 3.0.7
Fix from $2,300 2019-07-18
Antivirus MEDIUM 5.5
CVE-2019-3972

Comodo Antivirus versions 12.0.0.6810 and below are vulnerable to Denial of Service affecting CmdAgent.exe via an unprotected section object "<GUID>_…

Fix: after 12.0.0.6810
Fix from $1,600 2019-07-17
Fedora MEDIUM 6.5
CVE-2019-13626

SDL (Simple DirectMedia Layer) 2.x through 2.0.9 has a heap-based buffer over-read in Fill_IMA_ADPCM_block, caused by an integer overflow in IMA_ADPC…

Fix: after 2.0.9
Fix from $1,600 2019-07-17
Debian Linux HIGH 8.1
CVE-2019-13115EPSS 12%

In libssh2 before 1.9.0, kex_method_diffie_hellman_group_exchange_sha256_key_exchange in kex.c has an integer overflow that could lead to an out-of-b…

Fix: 1.9.0+
Fix from $1,950 2019-07-16
Vlc Media Player MEDIUM 5.5
CVE-2019-13615

libebml before 1.3.6, as used in the MKV module in VideoLAN VLC Media Player binaries before 3.0.3, has a heap-based buffer over-read in EbmlElement:…

Fix: 3.0.3+
Fix from $1,600 2019-07-16
Debian Linux HIGH 8.1
CVE-2019-13616

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called f…

No fix yet
Fix from $1,950 2019-07-16