Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Chrome MEDIUM 6.5
CVE-2018-16069

Unintended floating-point error accumulation in SwiftShader in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to leak cross-origin dat…

Fix: 69.0.3497.81+
Fix from $1,600 2019-06-27
Ubuntu Linux MEDIUM 5.5
CVE-2019-12972

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer o…

Patch available
Fix from $1,600 2019-06-26
Fedora HIGH 7.8
CVE-2019-12957

In Xpdf 4.01.01, a buffer over-read could be triggered in FoFiType1C::convertToType1 in fofi/FoFiType1C.cc when the index number is larger than the c…

No fix yet
Fix from $1,950 2019-06-25
Xpdfreader MEDIUM 5.5
CVE-2019-12958

In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in FoFiType1C::convertToType0 in fofi/FoFiType1C.cc when it is trying to access the…

No fix yet
Fix from $1,600 2019-06-25
Automationworx Software Suite HIGH 8.8
CVE-2019-12869

An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Con…

Fix: after 1.86
Fix from $1,950 2019-06-24
Rdkb Ccsppandm HIGH 8.8
CVE-2019-6964

A heap-based buffer over-read in Service_SetParamStringValue in cosa_x_cisco_com_ddns_dml.c of the RDK RDKB-20181217-1 CcspPandM module may allow att…

Mitigation only
Fix from $1,950 2019-06-20
Alternate Pic View HIGH 7.5
CVE-2019-12894

Alternate Pic View 2.600 has a Read Access Violation at the Instruction Pointer after a call from PicViewer!PerfgrapFinalize+0x00000000000a9a1b.

No fix yet
Fix from $1,950 2019-06-19
Edraw Max HIGH 7.5
CVE-2019-12897

Edraw Max 7.9.3 has a Read Access Violation at the Instruction Pointer after a call from ObjectModule!Paint::Clear+0x0000000000000074.

No fix yet
Fix from $1,950 2019-06-19
Android MEDIUM 6.5
CVE-2018-9561

In llcp_util_parse_connect of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information…

Mitigation only
Fix from $1,600 2019-06-19
Android MEDIUM 6.5
CVE-2018-9563

In llcp_util_parse_cc of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disc…

Mitigation only
Fix from $1,600 2019-06-19
Android MEDIUM 6.5
CVE-2018-9564

In llcp_util_parse_link_params of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local informa…

Mitigation only
Fix from $1,600 2019-06-19
Android MEDIUM 6.5
CVE-2019-2019

In ce_t4t_data_cback of ce_t4t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosu…

Mitigation only
Fix from $1,600 2019-06-19
Android MEDIUM 6.5
CVE-2019-2020

In llcp_dlc_proc_rr_rnr_pdu of llcp_dlc.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information…

Mitigation only
Fix from $1,600 2019-06-19
Android MEDIUM 6.5
CVE-2019-2021

In rw_t3t_act_handle_ndef_detect_rsp of rw_t3t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local info…

Mitigation only
Fix from $1,600 2019-06-19
Android MEDIUM 6.5
CVE-2019-2022

In rw_t3t_act_handle_fmt_rsp and rw_t3t_act_handle_sro_rsp of rw_t3t.cc, there is a possible out-of-bound read due to a missing bounds check. This co…

Mitigation only
Fix from $1,600 2019-06-19
PHP CRITICAL 9.1
CVE-2019-11039

Function iconv_mime_decode_headers() in PHP versions 7.1.x below 7.1.30, 7.2.x below 7.2.19 and 7.3.x below 7.3.6 may perform out-of-buffer read due …

Fix: 7.1.30 / 7.2.19+
Fix from $2,300 2019-06-19
PHP CRITICAL 9.1
CVE-2019-11040

When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7.1.x below 7.1.30, 7.2.x belo…

Fix: 7.1.30 / 7.2.19+
Fix from $2,300 2019-06-19
Whatsapp CRITICAL 9.8
CVE-2018-6350

An out-of-bounds read was possible in WhatsApp due to incorrect parsing of RTP extension headers. This issue affects WhatsApp for Android prior to 2.…

Fix: 2.18.99 / 2.18.100.2+
Fix from $2,300 2019-06-14
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-11955

Lack of check on length of reason-code fetched from payload may lead driver access the memory not allocated to the frame and results in out of bound …

Patch available
Fix from $2,300 2019-06-14
Ipq8074 Firmware HIGH 7.8
CVE-2018-13910

Out-of-Bounds access in TZ due to invalid index calculated to check against DDR in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Elec…

Mitigation only
Fix from $1,950 2019-06-14
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-13911

Out of bounds memory read and access may lead to unexpected behavior in GNSS XTRA Parser in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer …

Mitigation only
Fix from $2,300 2019-06-14
Nuc Kit Firmware MEDIUM 6.7
CVE-2019-11124

Out of bound read/write in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of …

Patch available
Fix from $1,600 2019-06-13
Nuc Kit Firmware MEDIUM 6.7
CVE-2019-11129

Out of bound read/write in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of …

Patch available
Fix from $1,600 2019-06-13
Radare2 HIGH 7.8
CVE-2019-12790

In radare2 through 3.5.1, there is a heap-based buffer over-read in the r_egg_lang_parsechar function of egg_lang.c. This allows remote attackers to …

Fix: after 3.5.1
Fix from $1,950 2019-06-10
Remote Mini Control HIGH 7.4
CVE-2019-3956

Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validatin…

Fix: after 12.1.0.34
Fix from $1,950 2019-06-07
Dameware Mini Remote Control HIGH 7.4
CVE-2019-3957EPSS 26%

Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validatin…

Fix: after 12.1.0.34
Fix from $1,950 2019-06-07
Debian Linux MEDIUM 5.5
CVE-2019-2101

In uvc_parse_standard_control of uvc_driver.c, there is a possible out-of-bound read due to improper input validation. This could lead to local infor…

No fix yet
Fix from $1,600 2019-06-07
Tools HIGH 7.1
CVE-2019-5522

VMware Tools for Windows update addresses an out of bounds read vulnerability in vm3dmp driver which is installed with vmtools in Windows guest machi…

Fix: 10.3.10+
Fix from $1,950 2019-06-06
010 Editor HIGH 7.5
CVE-2019-12554

In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the WSubStr function (provided by the scripting en…

No fix yet
Fix from $1,950 2019-06-05
010 Editor HIGH 7.5
CVE-2019-12555

In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the SubStr function (provided by the scripting eng…

No fix yet
Fix from $1,950 2019-06-05